×

Real time searching and reporting

  • US 8,589,375 B2
  • Filed: 01/31/2012
  • Issued: 11/19/2013
  • Est. Priority Date: 01/31/2011
  • Status: Active Grant
First Claim
Patent Images

1. A computer-implemented method, comprising:

  • receiving raw event data, wherein the raw event data is received on a computing device;

    dividing the raw event data into one or more events, wherein dividing includes analyzing the raw event data and generating one or more rules for establishing boundaries between events;

    associating a time stamp with each event;

    indexing each event using the time stamps;

    storing the indexed events in an event data store;

    receiving a search query;

    generating a data structure, wherein the data structure is generated on the computing device, and wherein the data structure is populated by evaluating the search query against both events in the data store and raw event data being received in real-time;

    generating search results by draining the data structure using the search query; and

    generating a report using the search results.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×