Log Event Summarization for Distributed Server System
First Claim
Patent Images
1. A method for monitoring log event data, comprising:
- collecting log event data by one or more agents installed on one or more machines that perform a distributed business transaction;
grouping the log event data into groups by data format; and
generating clusters for the log event data within each group.
3 Assignments
0 Petitions
Accused Products
Abstract
Clusters of log lines are identified based on log line templates. The log line templates are based on a punctuality pattern for a log line. Clusters of log lines that match each punctuality pattern can be identified based on comparisons between the log lines. The comparison may determine the similarity of the log lines and ultimately identify whether the log lines are close enough to be clustered. The comparison may be based on generated n-grams for the log lines and performing a hash on the n-grams. The resulting cluster information may be communicated to a user in an interface.
13 Citations
26 Claims
-
1. A method for monitoring log event data, comprising:
-
collecting log event data by one or more agents installed on one or more machines that perform a distributed business transaction; grouping the log event data into groups by data format; and generating clusters for the log event data within each group. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9)
-
-
10. A non-transitory computer readable storage medium having embodied thereon a program, the program being executable by a processor to perform a method for monitoring log event data, the method comprising:
-
collecting log event data by one or more agents installed on one or more machines that perform a distributed business transaction; grouping the log event data into groups by data format; generating clusters for the log event data within each group; and reporting the clusters of log event data from multiple machines in a user interface. - View Dependent Claims (11, 12, 13, 14, 15, 16, 17, 18)
-
-
19. A system for monitoring log event data, the system comprising:
-
a plurality of machines, each machine including a processor and memory, one or more modules stored on each of the plurality machines, the one or more modules stored in memory and executable by a corresponding processor to receive log event data from a plurality of agents installed on the plurality of machines that perform a distributed business transaction, the log event data received by a particular machine of the plurality of machines grouped by data format, and generate clusters for the log event data within each group. - View Dependent Claims (20, 21, 22, 23, 24, 25, 26)
-
Specification