ACARM-Ng: Next Generation Correlation Framework

ACARM-Ng: Next Generation Correlation Framework

Bartlomiej Balcerek, Bartosz Szurgot, Mariusz Uchronski, Wojciech Waga

In Marian Bubak, Tomasz Szepieniec & Kazimierz Wiatr: Building a National Distributed E-Infrastructure–PL-Grid: Scientific and Technical Achievements. 6 114--127. Berlin, Heidelberg: Springer https://doi.org/10.1007/978-3-642-28267-6_9. ISBN: 978-3-642-28267-6

ACARM-ng is an extensible, plug-in-based alert correlation framework. It introduces abstractions over correlation, reporting, reaction, gathering data from multiple sources and data storage. ACARM-ng supports real-time reporting, meaning that alerts can be reported while still being correlated. For an administrator, a Web User Interface is provided, to present gathered and correlated data in a consistent way. The system makes use of multi-core architectures and is written in C++.