Log summarization and diff
First Claim
Patent Images
1. A computing system comprising:
- one or more processors; and
one or more computer-readable media having stored thereon instructions that are executable by the one or more processors to configure the computer system to analyze log data, including instructions that are executable to configure the computer system to perform at least the following;
obtain a first bucket of a log data, the first bucket of log data comprising a plurality of log lines;
analyze the first bucket of log data to identify a first plurality of different sets of similar log lines, wherein identifying the first plurality of different sets comprises grouping log lines into different sets based on a similarity of log lines in a given set;
obtain a second bucket of log data;
analyze the log data in the second bucket to identify a second plurality of different sets of similar log lines;
cause a user interface to provide a comparison, to the user, of the first plurality of different sets from the first bucket to the second plurality of different sets from the second bucket including at least one graphical indication that indicates;
which sets occur in both the buckets, which sets occur in only one of the buckets, or changes in the size of sets between the buckets, wherein a size for a given set defines the number of log lines in the given set.
1 Assignment
0 Petitions
Accused Products
Abstract
Analyzing log data. The method includes obtaining a first bucket of a log data. The first bucket of log data includes a plurality of log lines. The method further includes analyzing the first bucket of log data to identify different sets of similar log lines. The method further includes providing to a user in a user interface one or more summaries of the different sets of similar lines. The summary comprises at least one user selectable indicator representing differences in log lines in a set of similar log lines that when selected by a user in the user interface reveals specific differences in the log lines in the set of similar log lines.
-
Citations
22 Claims
-
1. A computing system comprising:
-
one or more processors; and one or more computer-readable media having stored thereon instructions that are executable by the one or more processors to configure the computer system to analyze log data, including instructions that are executable to configure the computer system to perform at least the following; obtain a first bucket of a log data, the first bucket of log data comprising a plurality of log lines; analyze the first bucket of log data to identify a first plurality of different sets of similar log lines, wherein identifying the first plurality of different sets comprises grouping log lines into different sets based on a similarity of log lines in a given set; obtain a second bucket of log data; analyze the log data in the second bucket to identify a second plurality of different sets of similar log lines; cause a user interface to provide a comparison, to the user, of the first plurality of different sets from the first bucket to the second plurality of different sets from the second bucket including at least one graphical indication that indicates;
which sets occur in both the buckets, which sets occur in only one of the buckets, or changes in the size of sets between the buckets, wherein a size for a given set defines the number of log lines in the given set. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10)
-
-
11. In a computing environment, a method of analyzing log data, the method comprising:
-
obtaining a first bucket of a log data, the first bucket of log data comprising a plurality of log lines; analyzing the first bucket of log data to identify a first plurality of different sets of similar log lines, wherein identifying the first plurality of different sets comprises grouping log lines into different sets based on a similarity of log lines in a given set; obtain a second bucket of log data; analyze the log data in the second bucket to identify a second plurality of different sets of similar log lines; cause a user interface to provide a comparison, to the user, of the first plurality of different sets from the first bucket to the second plurality of different sets from the second bucket including at least one graphical indication that indicates;
which sets occur in both the buckets, which sets occur in only one of the buckets, or changes in the size of sets between buckets, wherein a size for a given set defines the number of log lines in the given set. - View Dependent Claims (12, 13, 14, 15, 16, 17, 18)
-
-
19. A computing system comprising:
-
one or more processors; a user interface, wherein the user interface is configured to; obtain a first bucket of a log data, the first bucket of log data comprising a plurality of log lines; analyze the first bucket of log data to identify a first plurality of different sets of similar log lines, wherein identifying the first plurality of different sets comprises grouping log lines into different sets based on a similarity of log lines in a given set; and obtain a second bucket of log data; analyze the log data in the second bucket to identify a second plurality of different sets of similar log lines; cause a user interface to provide a comparison, to the user, of the first plurality of different sets from the first bucket to the second plurality of different sets from the second bucket including at least one graphical indication that indicates;
which sets occur in both the buckets, which sets occur in only one of the buckets, or changes in the size of sets between buckets, wherein a size for a given set defines the number of log lines in the given set. - View Dependent Claims (20, 21, 22)
-
Specification