Method for achieving network equipment monitoring and alarming on basis of Syslog knowledge base

A network equipment and knowledge base technology, applied in the field of network equipment monitoring and alarming based on Syslog knowledge base, can solve problems such as the inability to effectively implement alarm level classification and event classification, no context correlation, and no unified specification of log definitions, and achieve high efficiency. The effect of convenient monitoring requirements

Inactive Publication Date: 2018-10-26
潘叶 +1
View PDF5 Cites 20 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0012] 1. Since the manufacturer does not have a unified standard for the definition of logs, the alarm level classification and event classification cannot be effectively realized
In particular, for the implementation of alarm recovery
[0013] 2. Log events are a time-ordered list, and the log content itself has no contextual relevance. Therefore, when processing massive log events, the number of alarms generated will be very large

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method for achieving network equipment monitoring and alarming on basis of Syslog knowledge base
  • Method for achieving network equipment monitoring and alarming on basis of Syslog knowledge base
  • Method for achieving network equipment monitoring and alarming on basis of Syslog knowledge base

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0024] The present invention will be further described below in conjunction with the accompanying drawings and embodiments.

[0025] figure 1 It is a schematic diagram of the present invention based on the Syslog knowledge base to realize the network equipment monitoring alarm processing flow.

[0026] See figure 1 , the method that the present invention provides based on the Syslog knowledge base realizes network equipment monitoring alarm, comprises the steps:

[0027] S1) collect the alarm keywords of each manufacturer through the Syslog knowledge base;

[0028] S2) performing level classification and event classification on each keyword;

[0029] S3) After receiving the log, the log server first performs keyword matching on the log in the alarm knowledge base, and then forwards the alarm according to the matching result.

[0030] The present invention configures a Syslog log server on the device and sends logs, and the log server collects logs centrally by listening to...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a method for achieving network equipment monitoring and alarming on the basis of a Syslog knowledge base. The method comprises the following steps that 1, alarm keywords of various manufacturers are recorded through the Syslog knowledge base; 2, each keyword is subjected to level classification and event classification; and 3, after receiving a log, a log server conducts keyword matching of the alarm knowledge base on the log and then conducts alarm forwarding according to a matching result. According to the method, the alarm keywords of the various manufacturers are recorded through Syslog knowledge base, each keyword is subjected to level classification and event classification, keyword matching is conducted when the log is received, and precise log event alarmingis achieved; and massive log alarms are subjected to alarm compression through the knowledge base, that is to say, for the same type of alarms, only the number is accumulated, new alarms are not triggered, and therefore the efficient and convenient monitoring requirement of network equipment under massive logs is met.

Description

technical field [0001] The invention relates to a network equipment monitoring and alarming method, in particular to a method for realizing network equipment monitoring and alarming based on a Syslog knowledge base. Background technique [0002] The syslog (Syslog) protocol is a standard for forwarding syslog information in an IP network. The log server receives the Syslog message, judges its content, and implements an event alarm. [0003] Syslog message format: A system message starts with a percent sign, and its structure is as follows. [0004] %FACILITY-SUBFACILITY-SEVERITY-MNEMONIC: Message-text [0005] Facility (feature): A code composed of 2 or more capital letters, used to indicate the model of hardware device, protocol or system software. [0006] Severity (severity): a numerical code ranging from 0 to 7, indicating the severity of the event. [0007] Mnemonic: A code that uniquely identifies an error message. [0008] Message-text (message text): A text strin...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L12/24
CPCH04L41/0604H04L41/0631H04L41/069
Inventor 陈艳
Owner 潘叶
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products