×

Systems and method for event parsing

  • US 10,719,375 B2
  • Filed: 03/13/2018
  • Issued: 07/21/2020
  • Est. Priority Date: 03/13/2018
  • Status: Active Grant
First Claim
Patent Images

1. A system, comprising:

  • a non-transitory memory; and

    one or more hardware processors configured to read instructions from the non-transitory memory to perform operations comprising;

    receiving a plurality of events from one or more network monitoring systems, wherein each event of the plurality of events comprises a message output by a network monitoring system of the one or more network monitoring systems that communicates a status of a network resource connected to a network;

    normalizing the plurality of events comprising removing punctuation, unnecessary words or characters, or both, from the plurality of events to generate a plurality of normalized events;

    clustering similar events of the plurality of normalized events into one or more normalized event clusters;

    after clustering the similar events into the one or more normalized event clusters;

    extracting an event template for each of the one or more normalized event clusters, wherein the event template comprises boiler plate language included in the message of one or more of the similar events and a placeholder for a character string; and

    extracting a regular expression (regex) for each of the one or more normalized event clusters that, when searched, returns the character string;

    automatically grouping the plurality of events into one or more groups of events, wherein each group of events comprises one or more events of the plurality of events having identical extracted regexes or similar extracted regexes; and

    outputting the one or more groups of events.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×