3

Top 5 Open Source Event Correlation Tools

 2 years ago
source link: https://techteapot.com/posts/top-5-open-source-event-correlation-tools/
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.
neoserver,ios ssh client

Top 5 Open Source Event Correlation Tools

Jack Hughes
2013-08-07

Networks create lots of events. Sometimes thousands per minute.

Events can be SNMP traps generated by a server rebooting, syslog messages, Microsoft Windows event logs etc.

How do you know which events are important? The ones telling you something important?

That is where event correlation tools come in handy. You feed all of the events into the tool, as well as a description of the structure of your systems, and its job is to flag up the important ones.

  1. Simple Event Correlator (SEC) - SEC is a lightweight, platform independent event correlation tool written in Perl. Project registered with Sourceforge on 14th Dec 2001.
  2. RiverMuse - correlate events, alerts and alarms from multiple sources into a single pain of glass. Open core with a closed enterprise product cousin.
  3. Drools - a suite of tools written in Java including Drools Guvnor - a business rules manager, Drools Expert - rule engine, jBPM 5 - process / workflow, Drools Fusion - event processing / temporal reasoning and OptaPlanner - automated planning.
  4. OpenNMS - whilst not a dedicated event correlation tool, OpenNMS does contain an event correlation engine based upon the Drools engine mentioned above.
  5. Esper (and Nesper) - Esper is a Java based components (Nesper is a .NET based version of Esper) for complex event processing.
If you want a survey of event correlation techniques and tools, you could do a lot worse than read Andreas Müller's master's thesis titled Event Correlation Engine. It is a few years old, but is still pretty current.
Jack Hughes avatar
About Jack Hughes
An experienced software engineer with 20+ years experience writing products for Microsoft Windows based operating systems as well as 17+ years experience hosting websites on Linux and Windows including e-commerce and CMS systems.

About Joyk


Aggregate valuable and interesting links.
Joyk means Joy of geeK