Recurring Alarm Correlation Rules for Telecom Incident Detection

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Recurring alarms in telecommunication networks are difficult to reproduce and analyze due to their irregular timing and independent resolution, leading to performance issues and reduced customer satisfaction.

Innovation Solution

A system and method that correlate an alarm log with predefined rules to identify recurring alarms, determine the earliest fault that satisfies all rule criteria, compare it with an incident log, and generate an incident for unresolved faults, thereby facilitating long-term resolution.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If manual monitoring and analysis of recurring alarms is performed, then alarm resolution can be achieved, but the irregular timing and independent resolution of recurring alarms make them difficult to reproduce and analyze

Engineering Contradiction:
Improvealarm resolutionVSAvoidalarm reproduction difficulty
Core Design Contradiction:
ReliabilityVSDifficulty of detecting and measuring

Solution Approach 1:

The system performs preliminary actions by proactively identifying recurring alarm patterns through correlation rules before they become difficult to reproduce. The network monitor continuously analyzes alarm logs and applies correlation rules to detect recurring alarms early, eliminating the need for manual reproduction attempts. This preliminary detection and classification of alarm patterns resolves the contradiction by capturing alarms in their natural occurring state rather than requiring reproduction.

Inventive Principle:
Principle #10Preliminary action

2Measurement precision

If a systematic approach with correlation rules is implemented to identify recurring alarms, then alarm analysis effectiveness is improved, but the complexity of the detection system increases

Engineering Contradiction:
Improvealarm analysis precisionVSAvoiddetection system complexity
Core Design Contradiction:
Measurement precisionVSDevice complexity

Solution Approach 1:

The system segments the alarm analysis function into distinct modular components: alarm log collection, correlation rule definition, pattern matching engine, and incident generation. Each component performs a specific function independently, allowing the system to achieve high measurement precision through specialized processing while managing complexity through modular architecture. The correlation rules themselves segment different alarm patterns into separate classification categories.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The network monitor system performs multiple functions within a single integrated platform: it collects alarm logs, stores them in databases, applies correlation rules, identifies patterns, and generates incidents. This multi-functionality allows the system to achieve comprehensive alarm analysis precision without requiring separate specialized systems for each function, thereby managing overall system complexity while maintaining high measurement capability.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS12306705B2Recurring alarm detection system and method of using
Publication Date: 2025.05.20 RAKUTEN SYMPHONY INC
  • US12306705B2 patent drawing
  • US12306705B2 patent drawing
  • US12306705B2 patent drawing

AI summary

A system for identifying recurring alarms includes a non-transitory computer readable medium configured to store instructions; and a processor. The processor is configured to execute the instructions for correlating an alarm log with a rule, the alarm log includes information related to a plurality of faults. The processor is configured to execute the instructions for determining whether any of the plurality of faults satisfy criteria of the rule; and identifying an earliest fault of the plurality of faults that satisfies all of the criteria of the rule in response to a determination that at least one fault of the plurality of faults satisfies all of the criteria of the rule. The processor is configured to execute the instructions for comparing the earliest fault with an incident log; and generating an incident in response to a determination that the earliest fault does not match any open entry in the incident log.