Network Scope Aggregation for Rapid Anomaly Root Cause Localization

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing network management systems struggle to quickly and efficiently determine the scope and root cause of network anomalies in complex wireless networks, leading to delayed remedial actions that can disrupt service to numerous client devices.

Innovation Solution

A network management system (NMS) that aggregates connection event data across multiple network scope levels to detect anomalies and determine the root cause simultaneously, using a transformer model to process data and identify the severity and impact of disconnection events, allowing for rapid identification of the network scope level associated with the anomaly.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Measurement precision

If traditional network management systems analyze connection events sequentially to determine anomaly scope, then measurement precision is improved, but loss of time increases

Engineering Contradiction:
Improveanomaly scope determination accuracyVSAvoidtime to detect and localize anomaly
Core Design Contradiction:
Measurement precisionVSLoss of time

Solution Approach 1:

The patent segments the network into hierarchical scope levels (individual AP, site, organization, service provider) and processes connection events at each segment simultaneously using parallel computing. This allows the system to determine anomaly scope across all levels concurrently rather than sequentially, reducing time loss while maintaining measurement precision through multi-level aggregation of connection event data

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent adds a temporal dimension to the analysis by processing connection events in real-time streams and using time-series aggregation to identify patterns across different scope levels simultaneously. This dimensional approach enables the system to correlate events across spatial (network hierarchy) and temporal dimensions, achieving both precision and speed

Inventive Principle:
Principle #17Another dimension (Dimensionality change)

2Reliability

If network management systems monitor all connection events across the entire network, then reliability of anomaly detection is improved, but device complexity increases

Engineering Contradiction:
Improveanomaly detection reliabilityVSAvoiddata processing complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent segments the vast network data into manageable hierarchical units (AP-level, site-level, organization-level, service provider-level) that can be processed independently and then aggregated. This segmentation reduces processing complexity by breaking down the monolithic data stream into structured, scalable units while maintaining comprehensive monitoring coverage across the entire network

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent transforms the complexity challenge by adding hierarchical dimensionality to data organization. Instead of processing flat, unstructured connection events, the system organizes data across multiple hierarchical dimensions, enabling efficient filtering, aggregation, and analysis that reduces processing complexity while preserving detection reliability

Inventive Principle:
Principle #17Another dimension (Dimensionality change)

Data Source

PatentEP4580143A1Determining a network scope of a root cause of a network anomaly
Publication Date: 2025.07.02 JUNIPER NETWORKS INC
  • EP4580143A1 patent drawingFigure 1A
  • EP4580143A1 patent drawingFigure 1B
  • EP4580143A1 patent drawingFigure 2

AI summary

A network management system includes a memory and processing circuitry in communication with the memory. The processing circuitry is configured to obtain connection event data. The connection event data indicates a plurality of disconnection events. The processing circuitry is also configured to generate, from the connection event data, aggregate data according to a plurality of network scope levels and detect, based on the aggregate data, one or more network anomalies. Additionally, the processing circuit is configured to determine, based on the aggregate data, whether a root cause of the one or more network anomalies is associated with each network scope level of the plurality of network scope levels and output an indication of the determined network scope level associated with the root cause or performing a remedial action to address the root cause at the determined network scope level.