Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Method and system for analyzing large log

A technology for logging and analyzing results, applied in the field of large log analysis, it can solve the problems of the log collection and analysis system crashing, the overall efficiency of collection and analysis is not very high, and the processing speed of massive logs is slow, so as to reduce the resource consumption of the log center and ensure log collection. Quality, efficiency and real-time effects

Inactive Publication Date: 2013-07-31
BLUEDON INFORMATION SECURITY TECH CO LTD
View PDF3 Cites 5 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0003] However, how to analyze such a large amount of log data better and faster is a difficult problem faced by administrators. Currently, there are log management products such as SIME\SOC\SIM\SEM in the industry, all of which involve log collection and analysis modules. Most of the log bottlenecks of these products are on the analysis server IO. The processing speed of massive logs is very slow, resulting in low overall efficiency of collection and analysis. This will undoubtedly affect the upstream system (front-end application) that uses logs, and the user experience is not good. to timeliness
At the same time, the long-term massive log processing and the IO peak for a long time may even lead to the collapse of the log collection and analysis system, and the crash of the log collection and analysis server, which seriously affects the use of the system.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method and system for analyzing large log
  • Method and system for analyzing large log

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0013] The following will clearly and completely describe the technical solutions in the embodiments of the present invention with reference to the accompanying drawings in the embodiments of the present invention. Obviously, the described embodiments are only some, not all, embodiments of the present invention. Based on the embodiments of the present invention, all other embodiments obtained by persons of ordinary skill in the art without creative efforts fall within the protection scope of the present invention.

[0014] The invention discloses a large log analysis method. First, the log center divides the large log file into n modules and transmits them to each node through encryption; secondly, the node host analyzes the log, and encrypts and transmits the analysis result to the data center ; Finally, the data center organizes and merges the log analysis results of each node and stores them in the database. Among them, n depends on the number of nodes you have. Such as f...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses a method for analyzing a large log, which comprises the steps that a log center divides a large log file into n modules to transmit to various nodes through encryption; a node host analyzes and processes the log, and sends an analysis result to a data center through the encryption; and log analysis results of various nodes are stored in a database by the data center after collated and merged. In addition, the invention further discloses a system for analyzing the large log. According to the method and the system, the resource consumption of the log center can be reduced; log collection is prevented from being influenced; the quality of the log collection is ensured; the log analysis efficiency and the real-time performance can be improved; and the analysis results in the database can be updated timely.

Description

technical field [0001] The invention relates to the field of computer information security, in particular to a method and system for analyzing large logs. Background technique [0002] With the development of information technology, the amount of data is increasing rapidly, and the accumulation of data is also increasing. Security is an important consideration in data transmission, exchange and processing. For this reason, many devices related to information processing (such as firewalls, intrusion detection systems, routers and servers, etc.) will generate logs, which record Various things happen on the device and in the network every day, and the status of each device and the entire network can be understood through the query and statistics of the logs. [0003] However, how to analyze such a large amount of log data better and faster is a difficult problem faced by administrators. Currently, there are log management products such as SIME\SOC\SIM\SEM in the industry, all ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Applications(China)
IPC IPC(8): H04L12/24H04L29/06
Inventor 柯宗贵柯宗庆杨育斌沈志亮
Owner BLUEDON INFORMATION SECURITY TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products