×

Managing datasets produced by alert-triggering search queries

  • US 10,585,851 B2
  • Filed: 03/16/2017
  • Issued: 03/10/2020
  • Est. Priority Date: 07/09/2014
  • Status: Active Grant
First Claim
Patent Images

1. A method, comprising:

  • executing, by one or more processing devices, a search query on a portion of searchable data associated with a time window to produce a dataset comprising one or more results, wherein the time window is defined relative to a current time;

    responsive to determining that a throttling condition is satisfied and at least a portion of the dataset satisfies a triggering condition defining an alert associated with the search query, generating an instance of the alert, wherein the triggering condition indicates whether a secondary conditional search performed on the dataset has produced at least one result, and wherein the throttling condition suppresses triggering alert instances for a certain period of time for one or more data items identified by respective name-value pairs in the dataset;

    associating, using a memory data structure, the instance of the alert with an identifier of the search query and a time parameter specifying a time of execution of the search query that has triggered the instance of the alert;

    receiving, from a client computing device, a request for the portion of the dataset;

    determining that the portion of the dataset is not stored in a memory in a manner associating the portion of the dataset with the instance of the alert;

    substituting, in a definition of the time window utilized by the search query, the current time with the time parameter; and

    reproducing the portion of the dataset by re-executing the search query in view of the time window.

View all claims
  • 2 Assignments
Timeline View
Assignment View
    ×
    ×