Recurring Alarm Correlation Rules for Telecom Incident Detection
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Recurring alarms in telecommunication networks are difficult to reproduce and analyze due to their irregular timing and independent resolution, leading to performance issues and reduced customer satisfaction.
Innovation Solution
A system and method that correlate an alarm log with predefined rules to identify recurring alarms, determine the earliest fault that satisfies all rule criteria, compare it with an incident log, and generate an incident for unresolved faults, thereby facilitating long-term resolution.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If manual monitoring and analysis of recurring alarms is performed, then alarm resolution can be achieved, but the irregular timing and independent resolution of recurring alarms make them difficult to reproduce and analyze
Solution Approach 1:
The system performs preliminary actions by proactively identifying recurring alarm patterns through correlation rules before they become difficult to reproduce. The network monitor continuously analyzes alarm logs and applies correlation rules to detect recurring alarms early, eliminating the need for manual reproduction attempts. This preliminary detection and classification of alarm patterns resolves the contradiction by capturing alarms in their natural occurring state rather than requiring reproduction.
2Measurement precision
If a systematic approach with correlation rules is implemented to identify recurring alarms, then alarm analysis effectiveness is improved, but the complexity of the detection system increases
Solution Approach 1:
The system segments the alarm analysis function into distinct modular components: alarm log collection, correlation rule definition, pattern matching engine, and incident generation. Each component performs a specific function independently, allowing the system to achieve high measurement precision through specialized processing while managing complexity through modular architecture. The correlation rules themselves segment different alarm patterns into separate classification categories.
Solution Approach 2:
The network monitor system performs multiple functions within a single integrated platform: it collects alarm logs, stores them in databases, applies correlation rules, identifies patterns, and generates incidents. This multi-functionality allows the system to achieve comprehensive alarm analysis precision without requiring separate specialized systems for each function, thereby managing overall system complexity while maintaining high measurement capability.
Data Source
AI summary
A system for identifying recurring alarms includes a non-transitory computer readable medium configured to store instructions; and a processor. The processor is configured to execute the instructions for correlating an alarm log with a rule, the alarm log includes information related to a plurality of faults. The processor is configured to execute the instructions for determining whether any of the plurality of faults satisfy criteria of the rule; and identifying an earliest fault of the plurality of faults that satisfies all of the criteria of the rule in response to a determination that at least one fault of the plurality of faults satisfies all of the criteria of the rule. The processor is configured to execute the instructions for comparing the earliest fault with an incident log; and generating an incident in response to a determination that the earliest fault does not match any open entry in the incident log.


