TY - JOUR
T1 - Efficient alarm behavior analytics for telecom networks
AU - WANG, Jiantao
AU - HE, Caifeng
AU - LIU, Yijun
AU - TIAN, Guangjian
AU - PENG, Ivy
AU - XING, Jia
AU - RUAN, Xiangbing
AU - XIE, Haoran
AU - WANG, Fu Lee
PY - 2017/9
Y1 - 2017/9
N2 - Locating network fault problems and filtering trivial alarms from important ones are the two main challenges in Network Operation Centers (NOCs). In this paper, we present an alarm behavior analysis and discovery system, AABD, that establishes flapping and parent–child (P–C) rules to reveal the operation patterns from a large number of alarms in telecom networks. These rules can be exploited to filter out unimportant alarms, conduct multi-dimensional analysis of the alarms and identify potential network problems. We propose two novel and effective algorithms to establish the flapping rules and P-C rules. The proposed system is validated using alarm datasets from five Internet service providers. Specifically, we verify the system and methodology in each of the five network domains, i.e., circuit-switched network (CS), packet-switched network (PS), 2G-radio access network (RAN-2G), 3G-radio access network (RAN-3G) and 4G-radio access network (RAN-4G), as these five domains can, to a great extent, form a complete network environment. More importantly, our system can establish a small number of rules, only dozens of flapping rules and P-C rules, and compress the alarms by approximately 84%, i.e., 84% of alarms will not be sent to the network operator. To summarize, the proposed system can help network operators respond to network faults in a timely fashion, locate the faults accurately and significantly reduce the time spent on these tasks.
AB - Locating network fault problems and filtering trivial alarms from important ones are the two main challenges in Network Operation Centers (NOCs). In this paper, we present an alarm behavior analysis and discovery system, AABD, that establishes flapping and parent–child (P–C) rules to reveal the operation patterns from a large number of alarms in telecom networks. These rules can be exploited to filter out unimportant alarms, conduct multi-dimensional analysis of the alarms and identify potential network problems. We propose two novel and effective algorithms to establish the flapping rules and P-C rules. The proposed system is validated using alarm datasets from five Internet service providers. Specifically, we verify the system and methodology in each of the five network domains, i.e., circuit-switched network (CS), packet-switched network (PS), 2G-radio access network (RAN-2G), 3G-radio access network (RAN-3G) and 4G-radio access network (RAN-4G), as these five domains can, to a great extent, form a complete network environment. More importantly, our system can establish a small number of rules, only dozens of flapping rules and P-C rules, and compress the alarms by approximately 84%, i.e., 84% of alarms will not be sent to the network operator. To summarize, the proposed system can help network operators respond to network faults in a timely fashion, locate the faults accurately and significantly reduce the time spent on these tasks.
KW - Alarm analysis and discovery
KW - Big data
KW - Correlation
KW - Data mining
KW - Frequent pattern mining
KW - Telecom
UR - http://www.scopus.com/inward/record.url?scp=85015958615&partnerID=8YFLogxK
U2 - 10.1016/j.ins.2017.03.020
DO - 10.1016/j.ins.2017.03.020
M3 - Journal Article (refereed)
AN - SCOPUS:85015958615
SN - 0020-0255
VL - 402
SP - 1
EP - 14
JO - Information Sciences
JF - Information Sciences
ER -