Invention Grant
- Patent Title: Automated event ID field analysis on heterogeneous logs
-
Application No.: US15429849Application Date: 2017-02-10
-
Publication No.: US10237295B2Publication Date: 2019-03-19
- Inventor: Hui Zhang , Guofei Jiang
- Applicant: NEC Laboratories America, Inc.
- Applicant Address: JP
- Assignee: NEC Corporation
- Current Assignee: NEC Corporation
- Current Assignee Address: JP
- Agent Joseph Kolodka
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
A system, program, and method for anomaly detection in heterogeneous logs. The system having a processor configured to identify pattern fields comprised of a plurality of event identifiers. The processor is further configured to generate an automata model by profiling event behaviors of the plurality of event sequences, the plurality of event sequences grouped in the automata model by combinations of one or more pattern fields and one or more event identifiers from among the plurality of event identifiers, wherein for a given combination, the one or more event identifiers therein must be respectively comprised in a same one of the one or more pattern fields with which it is combined. The processor is additionally configured to detect an anomaly in one of the plurality of event sequences using the automata model. The processor is also configured to control an anomaly-initiating one of the network devices based on the anomaly.
Public/Granted literature
- US20170279840A1 AUTOMATED EVENT ID FIELD ANALYSIS ON HETEROGENEOUS LOGS Public/Granted day:2017-09-28
Information query