Method and Apparatus For Retrieving and Combining Summarized Log Data In a Distributed Log Data Processing System

作者: Thomas Hunt Schabo Grabowski , Tomasz Mariusz Mojsa , Jason Michael DeStefano

DOI:

关键词:

摘要: A system can receive raw log data from log-producing devices. The parse the to generate parsed data, including extracting fields generating structured query language (SQL) statements extracted fields, and inserting SQL in a database. summarize identifying one or more based on of commonality uniqueness, creating summarized that include new statement condensed identified statements. then report data.

参考文章(45)
Şükran Asarcıklı, Firewall monitoring using intrusion detection systems İzmir Institute of Technology. ,(2005)
Scott Matsumoto, Robert Adams, Diane Downie, Transactional monitoring system and method ,(2001)
Timothy David McCreery, Mahboud Zabetian, Apparatus and method of analyzing internet activity ,(1996)
Andrew Ginter, Kegan Kawano, Brad McMillan, Tom Hutchinson, Andy G. Mah, Adam Muegge, Rui Manuel Martins Lopes, Erik P. Hope, Brett Jensen, Method and computer program product for monitoring an industrial network ,(2004)
Andrew P. Sherman, Scott E. McCargar, Method for deallocating a log in database systems ,(1996)
Bryan Douglas Williams, Timothy P. Farley, Philip Charles Brass, Derek John Mezack, George C. Young, John M. Hammer, Method and System for Managing Computer Security Information ,(2001)