• DocumentCode
    3143658
  • Title

    LogMaster: Mining Event Correlations in Logs of Large-Scale Cluster Systems

  • Author

    Xiaoyu Fu ; Rui Ren ; Jianfeng Zhan ; Wei Zhou ; Zhen Jia ; Gang Lu

  • Author_Institution
    State Key Lab. Comput. Archit., Inst. of Comput. Technol., Beijing, China
  • fYear
    2012
  • fDate
    8-11 Oct. 2012
  • Firstpage
    71
  • Lastpage
    80
  • Abstract
    This paper presents a set of innovative algorithms and a system, named Log Master, for mining correlations of events that have multiple attributions, i.e., node ID, application ID, event type, and event severity, in logs of large-scale cloud and HPC systems. Different from traditional transactional data, e.g., supermarket purchases, system logs have their unique characteristics, and hence we propose several innovative approaches to mining their correlations. We parse logs into an n-ary sequence where each event is identified by an informative nine-tuple. We propose a set of enhanced apriori-like algorithms for improving sequence mining efficiency, we propose an innovative abstraction-event correlation graphs (ECGs) to represent event correlations, and present an ECGs-based algorithm for fast predicting events. The experimental results on three logs of production cloud and HPC systems, varying from 433490 entries to 4747963 entries, show that our method can predict failures with a high precision and an acceptable recall rates.
  • Keywords
    cloud computing; data mining; parallel processing; ECGs-based algorithm; HPC systems; LogMaster; correlations mining; event correlation graphs; innovative algorithms; large-scale cloud systems; large-scale cluster system logs; mining event correlations; sequence mining; transactional data; Algorithm design and analysis; Clustering algorithms; Correlation; Data mining; Electrocardiography; Prediction algorithms; Timing; correlation mining; failure prediction; large-scale systems; reliability;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Reliable Distributed Systems (SRDS), 2012 IEEE 31st Symposium on
  • Conference_Location
    Irvine, CA
  • ISSN
    1060-9857
  • Print_ISBN
    978-1-4673-2397-0
  • Type

    conf

  • DOI
    10.1109/SRDS.2012.40
  • Filename
    6424841