首页    期刊浏览 2025年06月21日 星期六
登录注册

文章基本信息

  • 标题:A hybrid approach for log signature generation
  • 本地全文:下载
  • 作者:Prabhat Pokharel ; Roshan Pokhrel ; Basanta Joshi
  • 期刊名称:Applied Computing and Informatics
  • 印刷版ISSN:2210-8327
  • 电子版ISSN:2210-8327
  • 出版年度:2019
  • 页码:1-8
  • DOI:10.1016/j.aci.2019.05.002
  • 出版社:Elsevier
  • 摘要:Analysis of log message is very important for the identification of a suspicious system and network activity. This analysis requires the correct extraction of variable entities. The variable entities are extracted by comparing the logs messages against the log patterns. Each of these log patterns can be represented in the form of a log signature. In this paper, we present a hybrid approach for log signature extraction. The approach consists of two modules. The first module identifies log patterns by generating log clusters. The second module uses Named Entity Recognition (NER) to extract signatures by using the extracted log clusters. Experiments were performed on event logs from Windows Operating System, Exchange and Unix and validation of the result was done by comparing the signatures and the variable entities against the standard log documentation. The outcome of the experiments was that extracted signatures were ready to be used with a high degree of accuracy.
  • 关键词:Log message ; Named entity recognition ; Density;based spatial clustering ; Similarity measure ; Support vector machine
国家哲学社会科学文献中心版权所有