LogCrisp: Fast Aggregated Analysis on Large-scale Compressed Logs by Enabling Two-Phase Pattern Extraction and Vectorized Queries
Junyu Wei, Guangyan Zhang, Junchao Chen, Qi Zhou
Abstract
Cloud providers generate logs at massive scales, often requiring dense compression using log patterns. Meanwhile, aggregated analysis on logs is essential for various applications. However, performing aggregated analysis on highly compressed logs presents two fundamental challenges: 1) it is hard to extract a set of log patterns that have both a global description and high filtering effectiveness; 2) executing fulltext queries on numerically encoded data is challenging.
This paper proposes a two-phase pattern extraction paradigm. Such a paradigm decouples messages within patterns into Sketch (global pattern structure) and Specs (local fine-grained pattern specifications). The Sketch is extracted in an offline phase to provide a comprehensive global description, while the Specs are customized in the online phase to enhance pattern filtering effectiveness. Additionally, this paper proposes an efficient prefix/suffix vectorized query algorithm for numerically encoded data, which leverages AVX SIMD instructions to convert full-text queries into high-performance range/point queries.
We implement and integrate all these techniques into a system called LogCrisp, which is evaluated using nearly 7TB of logs from both production environments and public datasets. Experimental results show that LogCrisp achieves an order of magnitude lower analysis latency, 3.8× higher ingestion speed, and an almost identical compression ratio, compared with state-of-the-art works.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext d7ebebc2-61ad-498a-b097-90b13e728f92Builds on5
- DeepLog: Anomaly Detection and Diagnosis from System Logs through Deep LearningMin Du, Feifei Li, Guineng Zheng, Vivek SrikumarCCS 2017 · 1,823 citations
- CompressDB: Enabling Efficient Compressed Data Direct Processing for Various DatabasesFeng Zhang, Weitao Wan, Chenyang Zhang, Jidong Zhai et al.SIGMOD 2022 · 46 citations
- On the Feasibility of Parser-based Log Compression in Large-Scale Cloud SystemsJunyu Wei, Guangyan Zhang, Yang Wang, Zhiwei Liu et al.FAST 2021 · 34 citations
- LogGrep: Fast and Cheap Cloud Log Storage by Exploiting both Static and Runtime PatternsJunyu Wei, Guangyan Zhang, Junchao Chen, Yang Wang et al.EuroSys 2023 · 18 citations
- CLP: Efficient and Scalable Search on Compressed Text LogsKirk Rodrigues, Yu Luo, Ding YuanOSDI 2021
Related papers
- LogCloud: Fast Search of Compressed Logs on Object StorageZiheng Wang, Junyu Wei, Alex Aiken, Guangyan Zhang et al.VLDB 2025 · 1 citation
- LogNexus: Effective Log Compression via Unified Redundancy EncodingYang Liu, Kaiming Zhang, Zhuangbin Chen, Zibin ZhengISSTA 2026
- : Near-Storage Accelerator for High-Performance Log AnalyticsSeongyoung Kang, Jiyoung An, Jinpyo Kim, Sang-Woo JunMICRO 2021 · 9 citations
- LogShrink: Effective Log Compression by Leveraging Commonality and Variability of Log DataXiaoyun Li, Hongyu Zhang, Van-Hoang Le, Pengfei ChenICSE 2024 · 22 citations
- LogLite: Lightweight Plug-and-Play Streaming Log CompressionBenzhao Tang, Shiyu Yang, Zhitao Shen, Wenjie Zhang et al.VLDB 2025
