Invention Grant
- Patent Title: Anomaly detection based on events composed through unsupervised clustering of log messages
-
Application No.: US15985253Application Date: 2018-05-21
-
Publication No.: US10721256B2Publication Date: 2020-07-21
- Inventor: Aleksey M. Urmanov , Alan Paul Wood
- Applicant: Oracle International Corporation
- Applicant Address: US CA Redwood Shores
- Assignee: Oracle International Corporation
- Current Assignee: Oracle International Corporation
- Current Assignee Address: US CA Redwood Shores
- Agency: Park, Vaughan, Fleming & Dowler LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F11/30 ; G06F11/07 ; G06F21/60 ; G06F11/34 ; G06F16/35 ; G06F21/55

Abstract:
The disclosed embodiments provide a system that detects an anomaly in a computer system based on log messages. During operation, the system receives log messages generated by the computer system during operation of the computer system. Next, the system maps each received log message to a cluster in a set of clusters of log messages, wherein each cluster is associated with a specific event. The system then forms events for consecutive log messages into sequences of events. Finally, the system performs anomaly detection based on the sequences of events, wherein if an anomaly is detected, the system triggers an alert.
Public/Granted literature
- US20190354457A1 ANOMALY DETECTION BASED ON EVENTS COMPOSED THROUGH UNSUPERVISED CLUSTERING OF LOG MESSAGES Public/Granted day:2019-11-21
Information query