[logs] logfile analysis tool

From: Risto Vaarandi (risto.vaarandiat_private)
Date: Mon Oct 01 2001 - 03:33:11 PDT

  • Next message: Tina Bird: "[logs] www.sabernet.net"

    hello,
    
    I don't know if this message is appropriate to this list and whether you
    find this information useful. Please accept my apologies, if this mail
    is not relevant to this forum.
    
    I have recently developed an event correlation tool for network and
    system management puproses, which some people have successfully used
    with HP OpenView.
    Since the tool excepts its input from stdin, from named pipe or from
    regular file, it is also suitable for logfile monitoring tasks.
    
    The tool supports pattern matching with regular expressions (like
    swatch, wots, etc.)., plus event correlation functions. Starting from
    version 2.0, some features of logsurfer are also supported.
    
    I haven't seen any logfile monitoring and analysis tool that supports
    event correlation functions, and therefore thought the readers of this
    list maybe interested. Imho, event correlation is one of the major
    techniques for reducing the number of alarms and recognizing complex
    patterns in logfiles.
    
    You can download the tool from http://kodu.neti.ee/~risto/sec/ (it's
    distributed under gnu gpl). I am very interested of your opinions,
    comments and remarks.
    
    best regards
    risto
    
    ---------------------------------------------------------------------
    To unsubscribe, e-mail: loganalysis-unsubscribeat_private
    For additional commands, e-mail: loganalysis-helpat_private
    



    This archive was generated by hypermail 2b30 : Mon Oct 01 2001 - 04:44:43 PDT