Skip to content
Sections
>> Trisquel >> 套件 >> etiona >> misc >> logdata-anomaly-miner
etiona  ] [  nabia  ] [  aramo  ]
[ 原始碼: logdata-anomaly-miner  ]

套件: logdata-anomaly-miner (0.0.7-1)

This tool allows one to create log analysis pipelines

to analyze log data streams and detect violations or anomalies in it. It can be run from console, as daemon with e-mail alerting or embedded as library into own programs. It was designed to run the analysis with limited resources and lowest possible permissions to make it suitable for production server use. Analysis methods include:

 * static check patterns similar to logcheck but with extended
   syntax and options.
 * detection of new data elements (IPs, user names, MAC addresses)
 * statistical anomalies in log line values and frequencies
 * correlation rules between log lines as described in th AECID
   approach http://dx.doi.org/10.1016/j.cose.2014.09.006

The tool is suitable to replace logcheck but also to operate as a sensor feeding a SIEM.

Please report bugs at https://bugs.launchpad.net/logdata-anomaly-miner/+filebug

其他與 logdata-anomaly-miner 有關的套件

  • 依賴
  • 推薦
  • 建議
  • dep: init-system-helpers (>= 1.18~)
    helper tools for all init systems
  • dep: python
    interactive high-level object-oriented language (default version)
  • dep: python-tz
    Python version of the Olson timezone database
  • dep: python2.7
    Interactive high-level object-oriented language (version 2.7)

下載 logdata-anomaly-miner

下載可用於所有硬體架構的
硬體架構 套件大小 安裝後大小 檔案
all 93.5 kB421 kB [文件列表]