-
公开(公告)号:WO2009046101A1
公开(公告)日:2009-04-09
申请号:PCT/US2008/078442
申请日:2008-10-01
Applicant: LOGLOGIC, INC. , GALITSKY, Boris , BOTROS, Sherif
Inventor: GALITSKY, Boris , BOTROS, Sherif
CPC classification number: G06F17/30424 , G06F17/30637 , G06F17/30666
Abstract: To retrieve a sequence of associated events in log data, a request expression is parsed to retrieve types of dependencies between events which are searched, and the constraints (e.g., keywords) which characterize each event. Based on the parsing results, query components can be formed, expressing the constraints for individual events and interrelations (e.g., time spans) between events. A resultant span query comprising the query components can then be run against an index of events, which encodes a mutual location of associated events in storage.
Abstract translation: 为了在日志数据中检索关联事件序列,解析请求表达式以检索搜索的事件之间的依赖关系类型以及表征每个事件的约束(例如,关键字)。 基于解析结果,可以形成查询组件,表示事件之间的各个事件和相互关系(例如,时间跨度)的约束。 然后可以针对事件索引来运行包括查询组件的合成跨度查询,该事件索引编码存储器中相关联的事件的相互位置。
-
公开(公告)号:WO2012031269A1
公开(公告)日:2012-03-08
申请号:PCT/US2011/050434
申请日:2011-09-02
Applicant: LOGLOGIC, INC. , HUGLEY, Jean-Christophe Roger , MANLEY, Stephen
Inventor: HUGLEY, Jean-Christophe Roger , MANLEY, Stephen
IPC: H03M7/30
CPC classification number: H03M7/3084
Abstract: Methods, program products, and systems implementing random access data compression are disclosed. Data can be stored in a data structure in compressed or non- compressed form. The data structure can include a header block, one or more data blocks, and one or more index blocks. Each data block can include data compressed using different compression technology. The header block can include searchable references to the data blocks, which can be located in the data structure after the header block. The searchable references permit non-sequential access to the data blocks. The data blocks can be organized independent of a file system structure. The header block can additionally include references to the one or more index blocks, which can expand the references in the header block.
Abstract translation: 公开了实现随机访问数据压缩的方法,程序产品和系统。 数据可以以压缩或非压缩形式存储在数据结构中。 数据结构可以包括头部块,一个或多个数据块和一个或多个索引块。 每个数据块可以包括使用不同压缩技术压缩的数据。 报头块可以包括对数据块的可搜索引用,数据块可以位于报头块之后的数据结构中。 可搜索引用允许对数据块的非顺序访问。 可以独立于文件系统结构来组织数据块。 报头块还可以包括对一个或多个索引块的引用,这可以扩展标头块中的引用。
-
公开(公告)号:WO2012031259A1
公开(公告)日:2012-03-08
申请号:PCT/US2011/050421
申请日:2011-09-02
Applicant: LOGLOGIC, INC. , HARNETT, Tim , BHAMIDIPATY, Achyutram , TEWARI, Abinas , MANLEY, Stephen , MORGAN, Stephen , NICKLIN, Peter , ROY, Jena-Francois
Inventor: HARNETT, Tim , BHAMIDIPATY, Achyutram , TEWARI, Abinas , MANLEY, Stephen , MORGAN, Stephen , NICKLIN, Peter , ROY, Jena-Francois
IPC: G06F17/30
CPC classification number: G06F17/30666 , G06F17/30557 , G06F17/30637
Abstract: Methods, program products, and systems implementing dynamic parsing rules are disclosed. Log data from a variety of log producers can be parsed using parsing rules to generate information about an information system. The parsing rules can include system parsing rules and custom parsing rules. A state machine can be used to detect conflicts between various parsing rules. A central server can distribute the system parsing rules and custom parsing rules to one or more remote servers for distributed processing. In a hierarchical parsing system, a first tier parser can be used to identify types of sources generating the log data. Log data from each type of log source can be sent to a second tier parser that corresponds to the type of log source.
Abstract translation: 公开了实现动态解析规则的方法,程序产品和系统。 可以使用解析规则解析来自各种日志生成器的日志数据,以生成有关信息系统的信息。 解析规则可以包括系统解析规则和自定义解析规则。 状态机可用于检测各种解析规则之间的冲突。 中央服务器可以将系统解析规则和自定义解析规则分发到一个或多个远程服务器进行分布式处理。 在分层解析系统中,第一层解析器可用于识别生成日志数据的源的类型。 可以将来自每种日志源的日志数据发送到与日志源类型对应的第二层解析器。
-
公开(公告)号:WO2012031231A1
公开(公告)日:2012-03-08
申请号:PCT/US2011/050386
申请日:2011-09-02
Applicant: LOGLOGIC, INC. , MANLEY, Stephen , PAUTET, Laurent , MALAIYANDI, Prasanna Kumar
Inventor: MANLEY, Stephen , PAUTET, Laurent , MALAIYANDI, Prasanna Kumar
IPC: H04L12/56
CPC classification number: H04L47/10 , G06F17/30067 , H04L49/9005
Abstract: Methods, program products, and systems implementing adaptive data transmission are disclosed. A universal data collector can act as an intermediary between a log producer and a log processor. The universal data collector can be connected to the log producer through a first, reliable network. The universal data collector can be connected to the log processor through a second, less reliable network. The universal data collector can perform a multi phase commit of data to ensure that the log data are saved by the log processor. The universal data collector can smooth the data transmission from the universal data collector to the log processor through a network, including adaptively buffering the log data according to available network bandwidth of the network.
Abstract translation: 公开了实现自适应数据传输的方法,程序产品和系统。 通用数据收集器可以充当日志生成器和日志处理器之间的中介。 通用数据采集器可以通过第一个可靠的网络连接到日志生成器。 通用数据采集器可以通过第二个较不可靠的网络连接到日志处理器。 通用数据收集器可以执行数据的多阶段提交,以确保日志处理器保存日志数据。 通用数据采集器可以通过网络平滑从通用数据采集器到日志处理器的数据传输,包括根据网络的可用网络带宽自适应地缓存日志数据。
-
-
-