System Log Detection Model Based on Conformal Prediction
Yitong Ren,Zhaojun Gu,Zhi Wang,Zhihong Tian,Chunbo Liu,Hui Lu,Xiaojiang Du,Mohsen Guizani
DOI: https://doi.org/10.3390/electronics9020232
IF: 2.9
2020-01-31
Electronics
Abstract:With the rapid development of the Internet of Things, the combination of the Internet of Things with machine learning, Hadoop and other fields are current development trends. Hadoop Distributed File System (HDFS) is one of the core components of Hadoop, which is used to process files that are divided into data blocks distributed in the cluster. Once the distributed log data are abnormal, it will cause serious losses. When using machine learning algorithms for system log anomaly detection, the output of threshold-based classification models are only normal or abnormal simple predictions. This paper used the statistical learning method of conformity measure to calculate the similarity between test data and past experience. Compared with detection methods based on static threshold, the statistical learning method of the conformity measure can dynamically adapt to the changing log data. By adjusting the maximum fault tolerance, a system administrator can better manage and monitor the system logs. In addition, the computational efficiency of the statistical learning method for conformity measurement was improved. This paper implemented an intranet anomaly detection model based on log analysis, and conducted trial detection on HDFS data sets quickly and efficiently.
engineering, electrical & electronic,computer science, information systems,physics, applied