Please download the dossier by clicking on the dossier button x
×

GENERATING EVENTS FROM HOST BASED LOGGING FOR CONSUMPTION BY A NETWORK LOGGING HOST

  • US 20200136938A1
  • Filed: 10/31/2018
  • Published: 04/30/2020
  • Est. Priority Date: 10/31/2018
  • Status: Active Grant
First Claim
Patent Images

1. A network traffic analysis system including a network based logging host, the system comprising:

  • a processing system; and

    a memory device coupled to the processing system and including instructions stored thereon that, in response to execution by the processing system, are operable to perform operations including;

    collecting, using a log transport module, one or more messages including one or more host event logs from the one or more remote hosts, respectively; and

    inputting the collected messages into an event parser, the event parser to generate normalized events consumable by the network logging host from the collected messages, the event parser configured to;

    classify each message based on one of a plurality of predetermined event types;

    apply a rule of a plurality of predetermined rules to each event based on the classified event types to select content from the message; and

    extract the selected content and generate an event based on the extracted content and the corresponding rule; and

    exposing the generated events to one or more consumer modules of the network logging host.

View all claims
  • 2 Assignments
Timeline View
Assignment View
    ×
    ×