Information security – Monitoring or scanning of software or data including attack...
Reexamination Certificate
2008-06-27
2011-12-13
Barron, Jr., Gilberto (Department: 2432)
Information security
Monitoring or scanning of software or data including attack...
C709S223000
Reexamination Certificate
active
08079081
ABSTRACT:
Methods and systems for normalizing log messages. Some methods include obtaining a freeform log message from one of many disparate programs. The methods can include determining which program originated the message and, based on that, determining a signature which matches the message. Using the signature, a parsing expression may be determined with which to extract information from a portion of the message. The time from obtaining the message to extracting the information can be about the same for all messages and can be about 1/40,000thof a second. In some embodiments, a generic signature of the message may be output. A version of the message may be reconstructed based on the generic signature and information. When more than one message signatures matches the reconstructed message, one of the matching signatures can be adjusted. The parsing expression can be the first of an ordered list of expressions which successfully evaluates the log message.
REFERENCES:
patent: 7599939 (2009-10-01), DeStefano et al.
patent: 2004/0230798 (2004-11-01), Bleumer
patent: 2007/0179986 (2007-08-01), Adam
patent: 2007/0240217 (2007-10-01), Tuvell et al.
patent: 2007/0283194 (2007-12-01), Villella et al.
patent: 2009/0089252 (2009-04-01), Galitsky et al.
Fisher Paul
Golovinsky Eugene
Lavrik Anton
Trakhtman Pavel
Alert Logic, Inc.
Barron Jr. Gilberto
Cribbs Malcolm
Sprinkle IP Law Group
LandOfFree
Systems and methods for automated log event normalization... does not yet have a rating. At this time, there are no reviews or comments for this patent.
If you have personal experience with Systems and methods for automated log event normalization..., we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Systems and methods for automated log event normalization... will most certainly appreciate the feedback.
Profile ID: LFUS-PAI-O-4310961