Industrial Endpoint Event Correlation for TSN Behavior Analysis

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current mechanisms for tracking events in networked industrial systems, such as those using Time-Sensitive Networking (TSN), are intrusive and not applicable for end-points communicating over a network, necessitating improved methods for efficient event logging and analysis.

Innovation Solution

A method and control node that collect timestamped event log entries from end-points within a time window, identify correlated events, and provide a mapping between events and the end-points where they occur, enabling efficient tracking and analysis of events in industrial systems.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Measurement precision

If Tracealyzer is used to track events in embedded systems, then event tracking capability is improved, but it becomes intrusive and inapplicable to networked embedded systems

Engineering Contradiction:
Improveevent tracking capabilityVSAvoidapplicability to networked systems
Core Design Contradiction:
Measurement precisionVSAdaptability or versatility

Solution Approach 1:

The system segments event tracking functionality into separate components: end-points generate and send event log entries independently, while the control node performs the analysis. This segmentation allows the solution to work in networked distributed systems without being intrusive to individual embedded components.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

A control node acts as an intermediary that collects event log entries from multiple end-points via the network, correlates events across different end-points, and performs analysis centrally. This intermediary approach enables event tracking in networked systems without modifying the end-point systems themselves.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Loss of information

If event log entries are collected from multiple end-points, then comprehensive event analysis is improved, but network traffic and processing load increase

Engineering Contradiction:
Improveevent analysis comprehensivenessVSAvoidnetwork traffic and processing load
Core Design Contradiction:
Loss of informationVSLoss of energy

Solution Approach 1:

The system collects event log entries within a defined time window rather than continuously, and focuses analysis on correlated event tuples. This partial action approach provides sufficient event analysis comprehensiveness while reducing the overall volume of data transmitted and processed.

Inventive Principle:
Principle #16Partial or excessive action

Solution Approach 2:

End-points prepare and send event log entries with timestamps in advance, allowing the control node to perform time-window-based filtering and correlation. This preliminary preparation at the source reduces the processing burden on the control node and optimizes network traffic patterns.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS11635748B2Analysis of event based behavior of end-points in an industrial system
Publication Date: 2023.04.25 ABB (SCHWEIZ) AG
  • US11635748B2 patent drawing
  • US11635748B2 patent drawing
  • US11635748B2 patent drawing

AI summary

A mechanisms for analyzing event based behavior of end-points of a network in an industrial system and a method performed by a control node, the method includes collecting, from the end-points, timestamped event log entries as created by the end-points within a time window. Each respective timestamped event log entry pertains to a respective event performed by one of the end-points. The method includes identifying tuples of correlated events by comparing the timestamped event log entries to each other, thereby providing a mapping between the events and those end-points where the events of each tuple of correlated events are performed.