System and method for the collection and transmission of log data over a wide area network
First Claim
1. A method for processing log data from a log-producing device comprising:
- receiving in a log data analyzer raw log data from a log-producing device;
collecting the raw log data into sets of raw log data;
sending a set of raw log data from the log data analyzer to a remote raw log server over a wide area network; and
, storing the raw log data in a database maintained by the raw log server.
3 Assignments
0 Petitions
Accused Products
Abstract
A system and method is disclosed for collecting, storing and reporting raw log data from log-producing devices such as firewalls and routers. The log-producing devices may be both local and remote—i.e., linked to a raw log server via a LAN and/or a WAN. A log data analyzer at a remote location gathers log data from devices at that remote location into time-defined sets and then sends those sets over a WAN (which may be the Internet) to a raw log server using a first protocol. Local log-producing devices may send their log data to the log data analyzer via a LAN using a second protocol. The log data analyzer forwards the raw log data local devices to an appropriate log data analyzer for parsing, summarizing and storage in one or more databases. The raw log server combines local and remote sets of raw log data for a given time period and stores them in a storage area of raw log data. A central management station is used to query the various databases in the system and to merge database reports into a single report for display.
-
Citations
22 Claims
-
1. A method for processing log data from a log-producing device comprising:
-
receiving in a log data analyzer raw log data from a log-producing device;
collecting the raw log data into sets of raw log data;
sending a set of raw log data from the log data analyzer to a remote raw log server over a wide area network; and
,storing the raw log data in a database maintained by the raw log server. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10, 11, 12, 13)
-
-
14. A data processing system for providing raw log data to a raw log server located on a remote local area network, the system comprising:
-
a first local area network;
a gateway connected to the first local area network for communicating data from the first local area network to the remote local area network;
a log-producing device connected to the first local area network;
a log data analyzer connected to the first local area network and in data communication with the log-producing device over the first local area network and for data communication with the raw log server via the first local area network and the gateway. - View Dependent Claims (15, 16, 17, 18, 19, 20, 21, 22)
-
Specification