首页> 外国专利> SYSLOG PARSER

SYSLOG PARSER

机译:系统日志解析器

摘要

A computerized method performed in a computer operatively connected to storage. Parsing rules are determined for parsing logs output as text and/or symbols from multiple devices in a computer network. The logs are stored in the storage. Multiple log samples are sampled from the logs. The log samples are input into an application running on the computer. The log samples are each sectioned into multiple sections which include variable information separated by static structural text. Each of the log samples is processed by: comparing the sections to a list of regular expressions. The list is maintained in the storage, and upon matching a matched section of the sections to a matched regular expression from the list of the regular expressions, the matched section is tagged with a tag associated with the matched regular expression. The tag associated to the matched regular expression is stored and combined with any unmatched sections and with the static structural text to create a log pattern. The log pattern is stored in a table only if the log pattern is distinct from all log patterns previously stored in the table.
机译:在可操作地连接到存储器的计算机中执行的计算机化方法。确定解析规则,以解析从计算机网络中的多个设备输出为文本和/或符号的日志。日志存储在存储器中。从日志中采样了多个日志样本。日志样本被输入到计算机上运行的应用程序中。每个日志样本都分为多个部分,其中包括以静态结构文本分隔的变量信息。通过以下方式处理每个日志样本:将各节与正则表达式列表进行比较。该列表被维护在存储器中,并且在将这些部分的匹配的部分与来自正则表达式的列表中的匹配的正则表达式进行匹配之后,利用与匹配的正则表达式相关联的标签来对匹配的部分进行标记。存储与匹配的正则表达式关联的标签,并将其与任何不匹配的部分以及静态结构文本组合在一起,以创建日志模式。仅当日志模式不同于先前存储在表中的所有日志模式时,日志模式才存储在表中。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号