Network Log Time Alignment via Associated Feature Parsing

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In networks without a log server or clock synchronization, aligning log timestamps across devices is challenging, making fault location and sectionalization inefficient and inaccurate due to time misalignment.

Innovation Solution

A method and apparatus for automatically aligning network log timestamps by parsing log data to identify associated features across devices, using techniques like exception detection, event-based association, and event pair-based analysis to determine calibration time deviations and align log times without relying on a log server.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Measurement precision

If a log server is deployed to align log timestamps across devices, then log time alignment accuracy is improved, but system complexity and deployment requirements increase

Engineering Contradiction:
Improvelog time alignment accuracyVSAvoidsystem complexity
Core Design Contradiction:
Measurement precisionVSDevice complexity

Solution Approach 1:

Each network device autonomously performs time alignment by analyzing its own log data and comparing it with other devices' log data. The device independently determines time differences and adjusts its log timestamps without requiring a centralized log server or clock synchronization system, enabling self-service time alignment.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent extracts the time alignment function from the centralized log server model and distributes it to individual network devices. By taking out the dependency on external log servers and clock synchronization systems, each device can perform time alignment locally using only its own log data and basic processing capabilities.

Inventive Principle:
Principle #2Taking out (Extraction)

2Productivity

If multiple log servers are deployed to handle large quantities of log data, then log processing capacity is improved, but time asynchronization between log servers occurs

Engineering Contradiction:
Improvelog processing capacityVSAvoidtime synchronization between servers
Core Design Contradiction:
ProductivityVSMeasurement precision

Solution Approach 1:

Instead of relying on multiple log servers that require time synchronization, each network device independently performs time alignment on its own log data. This eliminates the time synchronization problem between servers while maintaining high log processing capacity through distributed processing.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent segments the centralized log processing function into distributed operations at each network device. Each device independently parses and aligns its own log data, dividing the overall time alignment task across multiple devices without requiring coordination between central servers.

Inventive Principle:
Principle #1Segmentation

3Ease of manufacture

If manual log acquisition and offline analysis are performed without automated systems, then deployment complexity is reduced, but analysis efficiency and accuracy deteriorate

Engineering Contradiction:
Improvedeployment simplicityVSAvoidanalysis efficiency
Core Design Contradiction:
Ease of manufactureVSProductivity

Solution Approach 1:

Network devices automatically perform log parsing and time alignment operations without requiring manual intervention. The devices self-service by autonomously acquiring their own log data, parsing it to extract features, determining associated features, and performing time alignment, thereby maintaining deployment simplicity while achieving automated analysis efficiency.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS11750438B2Network log time alignment method, apparatus, and host
Publication Date: 2023.09.05 HUAWEI TECH CO LTD
  • US11750438B2 patent drawing
  • US11750438B2 patent drawing
  • US11750438B2 patent drawing

AI summary

A network log time alignment method and an apparatus are provided. The method includes: obtaining log data stored in multiple network devices; parsing the log data to obtain features of each network device; determining associated features of the multiple network devices according to the features of each network device, where the associated features are features that are of the network devices and that have an association in space; and then, performing alignment on log time in multiple pieces of log data according to the associated features. Therefore, associated features of related devices of a network fault can be found, and log time are automatically aligned according to the associated features, thereby improving the efficiency and the accuracy of the fault location and sectionalization.