-
公开(公告)号:US20140237297A1
公开(公告)日:2014-08-21
申请号:US13639132
申请日:2012-03-23
申请人: Masataka Nagura , Takayuki Nagai , Kaori Murase
发明人: Masataka Nagura , Takayuki Nagai , Kaori Murase
IPC分类号: G06F11/07
CPC分类号: G06F11/079 , G06F11/0727
摘要: A computer analyzes the root cause of an event, which has occurred in any of multiple management-target apparatuses, based on one or more rules in a storage device, that denote an association between one or more condition events corresponding to one or more events capable of occurring in any of the multiple management-target apparatuses and a conclusion event, which is the cause in a case where the one or more condition events have occurred. The computer, based on an event occurrence log including contents and an occurrence date and time of an event, determines a first event group, which is multiple events presumed to occur as a result of the same cause, creates a new rule in which the multiple events of the first event group are the condition events and one event of the first event group is the conclusion event, and stores the created new rule.
摘要翻译: 计算机基于存储设备中的一个或多个规则来分析在多个管理目标设备中的任何一个中发生的事件的根本原因,其表示与一个或多个事件有关的一个或多个条件事件之间的关联 发生在多个管理目标装置中的任何一个中,以及结束事件,这是在发生一个或多个条件事件的情况下的原因。 计算机基于包括内容的事件发生日志和事件的发生日期和时间,确定作为相同原因推测出现的多个事件的第一事件组创建新规则,其中多个 第一个事件组的事件是条件事件,第一个事件组的一个事件是结束事件,并存储创建的新规则。
-
公开(公告)号:US20130212257A1
公开(公告)日:2013-08-15
申请号:US13634779
申请日:2012-02-14
IPC分类号: H04L12/26
CPC分类号: H04L43/00 , H04L41/0631 , H04L41/065
摘要: To analyze the cause if an event occurred to a plurality of monitoring targets. A monitoring computer 101 includes a general rule storing part 136 configured to store a general rule, wherein the general rule previously associates a first event which can occur in any of the plurality of monitoring targets and a second event which can cause the first event, an correlation rule generating part 129 configured to generate an correlation rule, wherein the correlation rule is created based on the general rule and configuration information, and in the case where a predetermined number or more of events corresponding to the second events are detected, the correlation rule indicates that an event corresponding to the first event will occur, and an analyzing part 125 configured to analyze a cause of an event indicated by the event information based on received event information and the correlation rule.
摘要翻译: 分析多个监控对象发生事件的原因。 监视计算机101包括被配置为存储一般规则的一般规则存储部分136,其中所述通用规则先前关联可以在多个监视目标中的任何一个中发生的第一事件和可以导致第一事件的第二事件, 相关规则生成部129,其被配置为生成相关规则,其中,基于一般规则和配置信息创建所述相关规则,并且在检测到与所述第二事件相对应的事件的预定数量或更多个的情况下,所述相关规则 指示将发生与第一事件相对应的事件,分析部分125被配置为基于接收的事件信息和相关规则来分析由事件信息指示的事件的原因。
-
公开(公告)号:US09354961B2
公开(公告)日:2016-05-31
申请号:US13639132
申请日:2012-03-23
申请人: Masataka Nagura , Takayuki Nagai , Kaori Murase
发明人: Masataka Nagura , Takayuki Nagai , Kaori Murase
CPC分类号: G06F11/079 , G06F11/0727
摘要: A computer analyzes the root cause of an event, which has occurred in any of multiple management-target apparatuses, based on one or more rules in a storage device, that denote an association between one or more condition events corresponding to one or more events capable of occurring in any of the multiple management-target apparatuses and a conclusion event, which is the cause in a case where the one or more condition events have occurred. The computer, based on an event occurrence log including contents and an occurrence date and time of an event, determines a first event group, which is multiple events presumed to occur as a result of the same cause, creates a new rule in which the multiple events of the first event group are the condition events and one event of the first event group is the conclusion event, and stores the created new rule.
摘要翻译: 计算机基于存储设备中的一个或多个规则来分析在多个管理目标设备中的任何一个中发生的事件的根本原因,其表示与一个或多个事件有关的一个或多个条件事件之间的关联 发生在多个管理目标装置中的任何一个中,以及结束事件,这是在发生一个或多个条件事件的情况下的原因。 计算机基于包括内容的事件发生日志和事件的发生日期和时间,确定作为相同原因推测出现的多个事件的第一事件组创建新规则,其中多个 第一个事件组的事件是条件事件,第一个事件组的一个事件是结束事件,并存储创建的新规则。
-
公开(公告)号:US09246777B2
公开(公告)日:2016-01-26
申请号:US13634779
申请日:2012-02-14
IPC分类号: G06F15/173 , H04L12/26 , H04L12/24
CPC分类号: H04L43/00 , H04L41/0631 , H04L41/065
摘要: To analyze the cause if an event occurred to a plurality of monitoring targets. A monitoring computer 101 includes a general rule storing part 136 configured to store a general rule, wherein the general rule previously associates a first event which can occur in any of the plurality of monitoring targets and a second event which can cause the first event, an correlation rule generating part 129 configured to generate an correlation rule, wherein the correlation rule is created based on the general rule and configuration information, and in the case where a predetermined number or more of events corresponding to the second events are detected, the correlation rule indicates that an event corresponding to the first event will occur, and an analyzing part 125 configured to analyze a cause of an event indicated by the event information based on received event information and the correlation rule.
摘要翻译: 分析多个监控对象发生事件的原因。 监视计算机101包括被配置为存储一般规则的一般规则存储部分136,其中所述通用规则先前关联可以在多个监视目标中的任何一个中发生的第一事件和可以导致第一事件的第二事件, 相关规则生成部129,其被配置为生成相关规则,其中,基于一般规则和配置信息来创建相关规则,并且在检测到与第二事件相对应的事件的预定数量或更多个的情况下,相关规则 指示将发生与第一事件相对应的事件,分析部分125被配置为基于接收的事件信息和相关规则来分析由事件信息指示的事件的原因。
-
公开(公告)号:US20130226877A1
公开(公告)日:2013-08-29
申请号:US13581701
申请日:2012-02-24
申请人: Takayuki Nagai , Masataka Nagura , Kaori Murase
发明人: Takayuki Nagai , Masataka Nagura , Kaori Murase
IPC分类号: G06F17/30
CPC分类号: G06F16/23 , G06F11/0709 , G06F11/0793
摘要: To analyze an event of high importance as quick as possible with a possible small memory size. A management server (A) detects an event related to a problem that has occurred in a predetermined management object, (B) determines, when a plurality of the events are detected, an event importance of each of the plurality of events, (C) executes an on-demand expansion for generating, in the causality information, a predetermined causality, based on a topology and an event propagation model in descending order from the event determined in (B) as having a highest event importance, (D) records that the detected event has occurred relative to the predetermined causality, and (E) analyzes the detected event by using the predetermined causality.
摘要翻译: 尽可能快地分析一个具有高度重要性的事件,并以可能的小内存大小。 管理服务器(A)检测与预定管理对象中发生的问题相关的事件,(B)当检测到多个事件时,确定多个事件中的每个事件的事件重要性,(C) 执行按需扩展,在因果关系信息中基于拓扑和事件传播模型以从(B)中确定为具有最高事件重要性的事件的顺序生成预定因果,(D)记录 检测到的事件相对于预定的因果关系发生,并且(E)通过使用预定的因果关系来分析检测到的事件。
-
公开(公告)号:US20130080624A1
公开(公告)日:2013-03-28
申请号:US13380590
申请日:2011-09-26
IPC分类号: G06F11/00
CPC分类号: H04L41/0213 , G05B23/02 , G06F11/0709 , G06F11/079 , G06N5/025
摘要: In analyzing an elaborate computer system which requires large-scale or numerous event propagation models, a law-of-causality matrix gains size, so that significant amount of storage resources has been used in a management computer. To solve such a problem, the management computer to manage the computer system stores topologies, event propagation models, and causality information including one or more causal relations in the storage resources, determines, when the management computer analyzes or detects an event, whether a causal relation has already been created for the event to be analyzed, and creates the causal relation based on a topology and event propagation models, if not yet.
-
公开(公告)号:US20120066376A1
公开(公告)日:2012-03-15
申请号:US13055440
申请日:2010-10-15
IPC分类号: G06F15/173
CPC分类号: G06F11/079 , H04L41/065 , H04L41/0677 , H04L41/22 , H04L63/1416 , H04L63/1425
摘要: To provide a fault analysis result classification function capable of reducing the time required to eliminate a fault in a monitoring target apparatus. The fault analysis results (fault cause candidates) obtained during the fault analysis processing are classified for the influence range of each of the fault cause candidates by analyzing which of the other fault cause candidates relate to the fault events of the apparatus abnormal state, which are used as the basis to derive the each of the fault cause candidates. Further, the classification results are displayed on a GUI.
摘要翻译: 提供故障分析结果分类功能,能够减少在监视对象装置中消除故障所需的时间。 在故障分析处理中获得的故障分析结果(故障原因候选)通过分析其他故障原因候选与设备异常状态的故障事件相关而被分类为每个故障原因候选的影响范围, 用作导出每个故障原因候选人的基础。 此外,分类结果显示在GUI上。
-
公开(公告)号:US09021077B2
公开(公告)日:2015-04-28
申请号:US13380590
申请日:2011-09-26
IPC分类号: G06F15/173 , G06F11/07
CPC分类号: H04L41/0213 , G05B23/02 , G06F11/0709 , G06F11/079 , G06N5/025
摘要: In analyzing an elaborate computer system which requires large-scale or numerous event propagation models, a law-of-causality matrix gains size, so that significant amount of storage resources has been used in a management computer. To solve such a problem, the management computer to manage the computer system stores topologies, event propagation models, and causality information including one or more causal relations in the storage resources, determines, when the management computer analyzes or detects an event, whether a causal relation has already been created for the event to be analyzed, and creates the causal relation based on a topology and event propagation models, if not yet.
摘要翻译: 在分析需要大规模或多个事件传播模型的复杂计算机系统时,因果关系矩阵获取大小,从而在管理计算机中使用了大量的存储资源。 为了解决这样的问题,管理计算机管理计算机系统的存储拓扑,事件传播模型和包括存储资源中的一个或多个因果关系的因果关系信息在管理计算机分析或检测事件时确定是否因果 已经为要分析的事件创建了关系,并且基于拓扑和事件传播模型创建因果关系(如果尚未)。
-
公开(公告)号:US08671186B2
公开(公告)日:2014-03-11
申请号:US13133899
申请日:2011-03-08
IPC分类号: G06F15/173 , G06F15/16
CPC分类号: G06F11/0754 , G06F11/0709 , G06F11/079 , H04L41/065
摘要: The present invention makes it possible to analyze a problem spanning multiple domains. A management apparatus stores an analysis rule. The analysis rule defines a relationship between a causal event, which constitutes a cause of a problem, and multiple relevant events, which denote problems created by the causal event. A first management apparatus acquires a relevant event related to a prescribed node apparatus, which is not under management of the first management apparatus, from a second management apparatus, which manages the prescribed node apparatus. The first management apparatus analyzes a problem by applying the relevant event acquired from the second management apparatus and another relevant event related to a node apparatus under the management of the first management apparatus to the analysis rule.
摘要翻译: 本发明可以分析跨越多个域的问题。 管理装置存储分析规则。 分析规则定义了构成问题原因的因果事件与表示由因果事件产生的问题的多个相关事件之间的关系。 第一管理装置从管理规定节点装置的第二管理装置获取与不属于第一管理装置的管理的规定节点装置有关的事件。 第一管理装置通过将从第二管理装置获取的相关事件和与第一管理装置的管理下的节点装置相关的另一相关事件应用于分析规则来分析问题。
-
公开(公告)号:US20120254406A1
公开(公告)日:2012-10-04
申请号:US13143493
申请日:2011-03-28
申请人: Takayuki Nagai , Masataka Nagura , Takaki Kuroda
发明人: Takayuki Nagai , Masataka Nagura , Takaki Kuroda
IPC分类号: G06F15/173
CPC分类号: G06F11/079 , G06F11/0727 , G06F11/0748 , G06F11/3034 , G06F11/3051 , G06F11/3079
摘要: An object of the present invention is to create information for use in problem analysis only for a required event in a case where an event denoting a change in the configuration of a computer system has been detected. A management apparatus detects a configuration change of the computer system as an event and records this event in an event management table T30. The management apparatus holds an event propagation model for analyzing a problem, and records an event corresponding to the event propagation model in target event management information T34. The management apparatus executes a problem analysis process in a case where a detected event is registered in the target event management information.
摘要翻译: 本发明的目的是在检测到表示计算机系统的配置的变化的事件的情况下,仅为所需事件创建用于问题分析的信息。 管理装置检测作为事件的计算机系统的配置更改,并将该事件记录在事件管理表T30中。 管理装置保存用于分析问题的事件传播模型,并将与事件传播模型对应的事件记录在目标事件管理信息T34中。 在检测到的事件登记在目标事件管理信息中的情况下,管理装置执行问题分析处理。
-
-
-
-
-
-
-
-
-