IP Library Granted Patent US 10,574,551
Granted Patent B2
US 10,574,551 · App. 15/382,884 · Granted Feb 25, 2020

System for decomposing events from managed infrastructures

Inventors: Philip Tee (San Francisco, CA); Robert Duncan Harper (London, GB); Charles Mike Silvey (San Francisco, CA)
Assignee: Moogsoft, Inc.
H04L43/0817G06F11/0709G06F11/079G06F11/0751G06F11/0778G06F11/30G06F16/338G06F16/355H04L41/065H04L41/0631H04L43/045H04L43/0823H04L51/16H04L67/36H04L41/0823H04L41/22
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,574,551
App. No.
15/382,884
Granted
Feb 25, 2020
Kind
B2
Abstract

A system is provided for clustering events. A first engine is configured to receive message data from managed infrastructure that includes managed infrastructure physical hardware that supports the flow and processing of information. A second engine determines common characteristics of events and produces clusters of events relating to a failure of errors in the managed infrastructure. Membership in a cluster indicates a common factor of the events that is a failure or an actionable problem in the physical hardware managed infrastructure directed to supporting the flow and processing of information. One or more situations are created that is a collection of one or more events or alerts representative of the actionable problem in the managed infrastructure. In response to the production of the clusters one or more physical changes in the managed infrastructure hardware.

Claims (34)

1. A system for clustering events, comprising:

a first engine configured to receive message data from managed infrastructure that includes managed infrastructure physical hardware that supports the flow and processing of information;

a second engine that determines common characteristics of events and produces clusters of events relating to the failure of errors in the managed infrastructure, where membership in a cluster indicates a common factor of the events that is a failure or an actionable problem in the physical hardware managed infrastructure directed to supporting the flow and processing of information;

creating one or more situations that is a collection of one or more events or alerts representative of the actionable problem in the managed infrastructure;

wherein in response to production of the clusters making one or more physical changes in the managed infrastructure hardware; and

wherein the second engine is a signalizer engine.

2. The system of claim 1 , wherein the first engine is an extraction engine.

3. The system of claim 1 ,

wherein the first engine in operation receives messages from the managed infrastructure.

4. The system of claim 1 , wherein the first engine in operation produces events that relate to the managed infrastructure.

5. The system of claim 1 , wherein the second engine is configured to determine one or more common characteristics of events and produces clusters relating to events.

6. The system of claim 1 , further comprising:

a third engine coupled to the first and second engines.

7. The system of claim 1 , wherein the managed infrastructure is from a business organization.

8. The system of claim 7 , wherein the managed infrastructure includes, computers, network devices, appliances, mobile devices, text or numerical values from which those text or numerical values indicate a state of any hardware or software component of the managed infrastructure.

9. The system of claim 8 , wherein the managed infrastructure generates data that include attributes selected from at least one of, time, source a description of the event, textural or numerical values from which those text or numerical values indicate a state of any hardware or software component of the managed infrastructure.

10. The system of claim 1 , further comprising: a publication message bus.

11. The system of claim 1 , further comprising:

a data bus web server coupled to one or more user interfaces.

12. The system of claim 1 , wherein a plurality of link access modules are in communication with a data bus.

13. The system of claim 1 , further comprising: a database.

14. The system of claim 1 , wherein the alerts are run in parallel with activities of the first engine.

15. A system for clustering events, comprising:

a first engine configured to receive message data from managed infrastructure that includes managed infrastructure physical hardware that supports the flow and processing of information;

a second engine that determines common characteristics of events and produces clusters of events relating to the failure of errors in the managed infrastructure, where membership in a cluster indicates a common factor of the events that is a failure or an actionable problem in the physical hardware managed infrastructure directed to supporting the flow and processing of information;

creating one or more situations that is a collection of one or more events or alerts representative of the actionable problem in the managed infrastructure

wherein in response to production of the clusters making one or more physical changes in the managed infrastructure hardware; and

a compare and merge engine that receives outputs from the second engine, the compare and merge engine communicating with one or more user interfaces in a situation room.

16. A system for clustering events, comprising:

a first engine configured to receive message data from managed infrastructure that includes managed infrastructure physical hardware that supports the flow and processing of information;

a second engine that determines common characteristics of events and produces clusters of events relating to the failure of errors in the managed infrastructure, where membership in a cluster indicates a common factor of the events that is a failure or an actionable problem in the physical hardware managed infrastructure directed to supporting the flow and processing of information;

creating one or more situations that is a collection of one or more events or alerts representative of the actionable problem in the managed infrastructure;

wherein the first engine is an extraction engine, the first engine in operation receives messages from the managed infrastructure and produces events that relate to the managed infrastructure; and

wherein the events are converted into words and subsets used to group the events into clusters that relate to failures or errors in the managed infrastructure.

Assignments (5)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 6, 2023
From: EMC CORPORATION
To: DELL PRODUCTS L.P.
Reel/Frame 065179/0980 →
MERGER Recorded Oct 4, 2023
From: MOOGSOFT INC.
To: EMC CORPORATION
Reel/Frame 065156/0805 →
RELEASE OF SECURITY INTEREST Recorded Aug 11, 2023
From: STIFEL BANK
To: MOOGSOFT INC.
Reel/Frame 064569/0391 →
SECURITY INTEREST Recorded Jan 23, 2022
From: MOOGSOFT INC.
To: STIFEL BANK
Reel/Frame 058734/0193 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 14, 2020
From: TEE, PHILIP; HARPER, ROBERT DUNCAN; SILVEY, CHARLES MIKE
To: MOOGSOFT, INC.
Reel/Frame 051501/0708 →
Continuity (4)
Continuation 15348731 · Nov 10, 2016
Continuation 14262870 · Apr 28, 2014
Provisional Application 61816867 · Apr 29, 2013
Related Publication 20170104650A1 · Apr 13, 2017