Simple Event Correlator

Free, open source and simple event correlator
Download

Simple Event Correlator Ranking & Summary

Advertisement

  • Rating:
  • License:
  • GPL
  • Price:
  • FREE
  • Publisher Name:
  • Risto Vaarandi
  • Publisher web site:
  • Operating Systems:
  • Mac OS X
  • File Size:
  • 84 KB

Simple Event Correlator Tags


Simple Event Correlator Description

Free, open source and simple event correlator SEC is an open source and platform independent event correlation tool that was designed to fill the gap between commercial event correlation systems and homegrown solutions that usually comprise a few simple shell scripts. SEC accepts input from named pipes, standard input and regular files and can thus be employed as an event correlator for any application that is able to write its output events to a file stream. The SEC configuration is stored in text files as rules, each rule specifying an event matching condition, an action list, and optionally a Boolean expression whose truth value decides whether the rule can be applied at a given moment. Regular expressions, Perl subroutines, etc. are used for defining event matching conditions. SEC can produce output events by executing user-specified shell scripts or programs (e.g., snmptrap or mail), by writing messages to pipes or files, and by various other means. Requirements: · Perl What's New in This Release: · starting from this version, the 'set' action without the action list · parameter does not clear the action-list-on-expiration for a context. · starting from this version, a context can be referred by the context · name _THIS in its action-list-on-expiration. · implemented additional sanity check for context names in context · expressions (context names may not contain spaces).


Simple Event Correlator Related Software