-
公开(公告)号:US08386409B2
公开(公告)日:2013-02-26
申请号:US12495698
申请日:2009-06-30
Applicant: Daniel Spaugh Sanders , John Paul Gassner , David Gordon Corlette
Inventor: Daniel Spaugh Sanders , John Paul Gassner , David Gordon Corlette
IPC: G06N5/02 , G06F15/173
CPC classification number: H04L67/22 , H04L41/0893 , H04L63/1425 , H04L67/327
Abstract: A syslog message routing system can include multiple syslog sources, a syslog message routing module, and multiple syslog parsers. The syslog message routing module can receive a syslog message from one of the syslog sources, identify a particular syslog parser to handle the syslog message, and send the syslog message to the selected syslog parser. The syslog message routing module can identify the syslog parser by applying at least one of an application ID-based policy, a unique pattern matching rule policy, and a universal syslog parser policy.
Abstract translation: 系统日志消息路由系统可以包括多个系统日志源,系统日志消息路由模块和多个系统日志解析器。 syslog消息路由模块可以从其中一个syslog源接收syslog消息,识别一个特定的syslog解析器来处理syslog消息,并将syslog消息发送到所选的syslog解析器。 系统日志消息路由模块可以通过应用基于应用程序ID的策略,唯一模式匹配规则策略和通用的syslog解析器策略中的至少一个来识别系统日志解析器。
-
公开(公告)号:US20100293128A1
公开(公告)日:2010-11-18
申请号:US12495698
申请日:2009-06-30
Applicant: Daniel Spaugh Sanders , John Paul Gassner , David Gordon Corlette
Inventor: Daniel Spaugh Sanders , John Paul Gassner , David Gordon Corlette
IPC: G06N5/02 , G06F15/173
CPC classification number: H04L67/22 , H04L41/0893 , H04L63/1425 , H04L67/327
Abstract: A syslog message routing system can include multiple syslog sources, a syslog message routing module, and multiple syslog parsers. The syslog message routing module can receive a syslog message from one of the syslog sources, identify a particular syslog parser to handle the syslog message, and send the syslog message to the selected syslog parser. The syslog message routing module can identify the syslog parser by applying at least one of an application ID-based policy, a unique pattern matching rule policy, and a universal syslog parser policy.
Abstract translation: 系统日志消息路由系统可以包括多个系统日志源,系统日志消息路由模块和多个系统日志解析器。 syslog消息路由模块可以从其中一个syslog源接收syslog消息,识别一个特定的syslog解析器来处理syslog消息,并将syslog消息发送到所选的syslog解析器。 系统日志消息路由模块可以通过应用基于应用程序ID的策略,唯一模式匹配规则策略和通用的syslog解析器策略中的至少一个来识别系统日志解析器。
-