loghub
coroot-node-agent
loghub | coroot-node-agent | |
---|---|---|
5 | 8 | |
1,530 | 275 | |
3.0% | 3.3% | |
5.3 | 8.3 | |
5 days ago | 8 days ago | |
Go | ||
GNU General Public License v3.0 or later | Apache License 2.0 |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
loghub
- Security+ 601 - Where to learn READING LOGS?
-
SOC with machine learning
https://github.com/logpai/loglizer has an MIT license. Seems like they've done some of the heavy lifting already. If you're just looking for logs, check out https://github.com/logpai/loghub.
-
PSA: PLEASE learn data structures and algorithms. The amount of people in DevOps who can't code is too damn high!
Here is an example apache log fie: If you want to try and prove me wrong write a script to find and return line numbers which contain the string "Directory index forbidden" or some other substring which is better then O(N).
-
Any dataset that could be interesting to analyze using text network analysis?
Any text? How about Loghub? Maybe you could visualize links in error messages for failure analysis, for example does a seemingly harmless warning seem to be linked to a much worse problem that occurs later?
-
Mining metrics from unstructured logs
Here is a summary for a log from the logpai/loghub dataset (kudos to the Logpai team for sharing this dataset):
coroot-node-agent
-
Infra mapping
Our product can do that. It's based on an eBPF Prometheus exporter and doesn't require manual integration.
-
Delay accounting: an underrated feature of the Linux kernel
Node-agent gathers per-TGID statistics from the kernel through the Netlink protocol and aggregates it to the per-container metrics:
- node-agent - an open-source Prometheus exporter based on eBPF that gathers comprehensive container metrics: log summaries, container-to-container network latency, cloud meta-information, etc.
-
How ping measures network round-trip time accurately using SO_TIMESTAMPING
While working on node-agent, we set out to measure network latency between containers and the services they communicate with. Since the agent has already discovered the endpoints that each container communicates with, we just need to measure network latency. We embedded "pinger" directly into the agent to measure end-to-end latency because the ICMP Echo requests should be sent from within the network namespace of each container.
-
Building a service map using eBPF
To address said disadvantages, we implemented eBPF-based container tracing which is a part of our open source Prometheus exporter node-agent. It passively monitors all TCP connections on a node, associates every connection with the related container, and exports metrics in Prometheus format:
-
Mining metrics from unstructured logs
At Coroot, we implemented an automated log parsing in our open-source Prometheus exporter node-agent. To explain how it works, let's follow the same steps as I mentioned above.
- Show HN: A Prometheus exporter that gathers сomprehensive containers' metrics
What are some alternatives?
coroot-aws-agent - A prometheus exporter that gathers metrics from AWS services.
klog - Leveled execution logs for Go (fork of https://github.com/golang/glog)
HELK - The Hunting ELK
scrapydweb - Web app for Scrapyd cluster management, Scrapy log analysis & visualization, Auto packaging, Timer tasks, Monitor & Alert, and Mobile UI. DEMO :point_right:
mtail - extract internal monitoring data from application logs for collection in a timeseries database
logparser - A machine learning toolkit for log parsing [ICSE'19, DSN'16]
omada_exporter - Prometheus Exporter for TP-Link Omada Controller SDN.
logparser - A library and a CLI tool for clustering unstructured logs.
loglizer - A machine learning toolkit for log-based anomaly detection [ISSRE'16]