Options
Scalable offline monitoring
Publikationstyp
Conference Paper not in Proceedings
Publikationsdatum
2014-09
Sprache
English
Author
First published in
Number in series
8734 LNPSE
Start Page
31
End Page
47
Citation
Lecture Notes in Computer Science 8734 LNPSE 31-47: (2014)
Contribution to Conference
Publisher DOI
Scopus ID
Publisher
Springer
We propose an approach to monitoring IT systems offline, where system actions are logged in a distributed file system and subsequently checked for compliance against policies formulated in an expressive temporal logic. The novelty of our approach is that monitoring is parallelized so that it scales to large logs. Our technical contributions comprise a formal framework for slicing logs, an algorithmic realization based on MapReduce, and a high-performance implementation. We evaluate our approach analytically and experimentally, proving the soundness and completeness of our slicing techniques and demonstrating its practical feasibility and efficiency on real-world logs with 400 GB of relevant data.
DDC Class
004: Informatik