CN107548087A - A kind of method and device of warning association analysis - Google Patents

A kind of method and device of warning association analysis Download PDF

Info

Publication number
CN107548087A
CN107548087A CN201610472575.2A CN201610472575A CN107548087A CN 107548087 A CN107548087 A CN 107548087A CN 201610472575 A CN201610472575 A CN 201610472575A CN 107548087 A CN107548087 A CN 107548087A
Authority
CN
China
Prior art keywords
alarm
rule
association
code
root
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201610472575.2A
Other languages
Chinese (zh)
Inventor
许正梅
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
ZTE Corp
Original Assignee
ZTE Corp
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by ZTE Corp filed Critical ZTE Corp
Priority to CN201610472575.2A priority Critical patent/CN107548087A/en
Publication of CN107548087A publication Critical patent/CN107548087A/en
Pending legal-status Critical Current

Links

Landscapes

  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

The invention discloses a kind of method and device of warning association analysis, it is related to mobile communication technology field, its method includes:By being cached to the alarm reported, the alarm data for alert analysis is obtained;Real-time rule match is carried out to multiple alarm datas using the alarm association rule pre-established, establishes the alarm tree structure with Root alarm and derivative alarm;According to the alarm tree structure, Root alarm is analyzed in real time.The present invention can be in Dynamic Maintenance alarm association rule-based knowledge base information, so as to dynamic generation correlation rule, ensure the accuracy of association analysis.

Description

A kind of method and device of warning association analysis
Technical field
The present invention relates to mobile communication technology field, more particularly to a kind of method and device of warning association analysis.
Background technology
In current mobile network management monitoring system, operation maintenance personnel faces caused a large amount of announcements in mobile communications network Alert information, it is difficult often therefrom to look for out of order true cause, so that can not Rapid Implementation fault restoration and removal of obstacle.O&M Personnel are when handling alarm, it is possible to because not finding the processing of main warning information and delay faults from a large amount of alarms Time.In addition when some failures occur, indivedual Root alarm for monitoring source may be blocked, or the root in some logical concepts Source alarm can not directly obtain from monitoring system, and these can all influence troubleshooting efficiency.
In normal alarm association, alarm association rule pre-defines.If rule is adjusted, it is necessary to people The related regular configuration file of work modification, the advantage of this mode is can to reflect current alarm association relation exactly. But in the case where alarm is relatively more, it is very inflexible, line discipline change can only be entered by way of manual intervention.
The content of the invention
The technical problem that the scheme provided according to embodiments of the present invention solves is because being difficult to look for from substantial amounts of warning information Be out of order reason, and can not Rapid Implementation fault restoration and removal of obstacle.
A kind of method of the warning association analysis provided according to embodiments of the present invention, including:
By being cached to the alarm reported, the alarm data for alert analysis is obtained;
Real-time rule match is carried out to multiple alarm datas using the alarm association rule pre-established, foundation has Root alarm and the alarm tree structure of derivative alarm;
According to the alarm tree structure, Root alarm is analyzed in real time.
Preferably, the alarm association rule of the foundation is based on alarm code, warning position, alarm cause, alarm type One of or combination alarm association rule.
Preferably, the alarm association rule includes:
Alarm association rule based on alarm code;
Alarm association rule based on warning position;
Based on the alarm association of alarm code and warning position rule;
Based on the alarm association of alarm code and alarm type rule;
Based on the alarm association of warning position and alarm cause rule.
Preferably, in addition to:
By analyzing to the alarm data, judge whether the alarm data associates with alarm association rule Rule match;
When judging that correlation rule mismatches in the alarm data and alarm association rule, new correlation rule is established, and It is saved in alarm association rule.
Preferably, in addition to:
According to the alarm tree structure, the Root alarm of report and alarm and derivative alarm are analyzed in real time.
A kind of device of the warning association analysis provided according to embodiments of the present invention, including:
Alarm data module is obtained, for by being cached to the alarm reported, obtaining the alarm for alert analysis Data;
Alarm tree construction module is established, for entering using the alarm association rule pre-established to multiple alarm datas The real-time rule match of row, establish the alarm tree structure with Root alarm and derivative alarm;
Alert analysis module, for according to the alarm tree structure, analyzing Root alarm in real time.
Preferably, the alarm association rule of the foundation is based on alarm code, warning position, alarm cause, alarm type One of or combination alarm association rule.
Preferably, the alarm association rule includes:
Alarm association rule based on alarm code;
Alarm association rule based on warning position;
Based on the alarm association of alarm code and warning position rule;
Based on the alarm association of alarm code and alarm type rule;
Based on the alarm association of warning position and alarm cause rule.
Preferably, in addition to:
By analyzing to the alarm data, judge whether the alarm data associates with alarm association rule Rule match;
When judging that correlation rule mismatches in the alarm data and alarm association rule, new correlation rule is established, and It is saved in alarm association rule.
Preferably, in addition to:
According to the alarm tree structure, the Root alarm of report and alarm and derivative alarm are analyzed in real time.
The scheme provided according to embodiments of the present invention, the dynamic capacity-expanding or capacity reducing of virtual machine, alert analysis process can be moved State safeguards the information in alarm association rule-based knowledge base, so as to dynamic generation correlation rule, ensures the accuracy of association analysis.
Brief description of the drawings
Fig. 1 is a kind of method flow diagram of warning association analysis provided in an embodiment of the present invention;
Fig. 2 is a kind of schematic device of warning association analysis provided in an embodiment of the present invention;
Fig. 3 is the flow chart of self study warning position correlation rule provided in an embodiment of the present invention;
Fig. 4 is the flow chart of self study alarm code correlation rule provided in an embodiment of the present invention;
Fig. 5 is the flow chart of analysis alarm association relation provided in an embodiment of the present invention;
Fig. 6 is the flow chart of the derivative alarm of analysis provided in an embodiment of the present invention;
Fig. 7 is the flow chart of analysis Root alarm provided in an embodiment of the present invention.
Embodiment
Below in conjunction with accompanying drawing to a preferred embodiment of the present invention will be described in detail, it will be appreciated that described below is excellent Select embodiment to be merely to illustrate and explain the present invention, be not intended to limit the present invention.
Fig. 1 is a kind of method flow diagram of warning association analysis provided in an embodiment of the present invention, as shown in figure 1, including:
Step S101:By being cached to the alarm reported, the alarm data for alert analysis is obtained;
Step S102:Rule in real time is carried out to multiple alarm datas using the alarm association rule pre-established Match somebody with somebody, establish the alarm tree structure with Root alarm and derivative alarm;
Step S103:According to the alarm tree structure, Root alarm is analyzed in real time.
Wherein, the alarm association rule of the foundation be based on alarm code, warning position, alarm cause, alarm type it One or combination alarm association rule.Specifically, the alarm association rule includes:Alarm association rule based on alarm code Then;Alarm association rule based on warning position;Based on the alarm association of alarm code and warning position rule;Based on alarm code with The alarm association rule of alarm type;Based on the alarm association of warning position and alarm cause rule.
The embodiment of the present invention also includes:By analyzing to the alarm data, whether the alarm data is judged Matched with correlation rule in alarm association rule;When judging in the alarm data and alarm association rule that correlation rule mismatches When, new correlation rule is established, and be saved in alarm association rule.
The embodiment of the present invention also includes:According to the alarm tree structure, the Root alarm of report and alarm is analyzed in real time Alerted with derivative.
Fig. 2 is a kind of schematic device of warning association analysis provided in an embodiment of the present invention, as shown in Fig. 2 including:Obtain Alarm data module 201 is taken, for by being cached to the alarm reported, obtaining the alarm data for alert analysis;Build Vertical alarm tree construction module 202, it is real-time for being carried out using the alarm association rule pre-established to multiple alarm datas Rule match, establish the alarm tree structure with Root alarm and derivative alarm;Alert analysis module 203, for according to institute Alarm tree structure is stated, analyzes Root alarm in real time.
Wherein, the alarm association rule of the foundation be based on alarm code, warning position, alarm cause, alarm type it One or combination alarm association rule.Specifically, the alarm association rule includes:Alarm association rule based on alarm code Then;Alarm association rule based on warning position;Based on the alarm association of alarm code and warning position rule;Based on alarm code with The alarm association rule of alarm type;Based on the alarm association of warning position and alarm cause rule.
The embodiment of the present invention also includes:New correlation rule unit is established, for passing through dividing to the alarm data Analysis, judges whether the alarm data matches with correlation rule in alarm association rule, and works as and judge the alarm data with accusing When correlation rule mismatches in alert correlation rule, new correlation rule is established, and be saved in alarm association rule.
The alert analysis module 203 is additionally operable to, according to the alarm tree structure, analyze the root of report and alarm in real time Source alerts and derivative alarm.
The embodiment of the present invention can generate new alarm association rule and preserve according to existing knowledge base self study; Also the correlation rule to have failed can be deleted according to existing knowledge base.And alarm is cached according to new alarm association rule In multiple alarms for being not over carry out real-time rule match, establish root and derivative relation successively, form tree structure, from And Root alarm is analyzed in real time, derivative alarm is absorbed, or its Root alarm is found according to existing alarm.And it can incite somebody to action Alarm association relation is directly presented by presentation layer dynamic, so that operation maintenance personnel can quickly and accurately position failure.
Warning association analysis, there are following several correlation rules:
1st, alarm code is as correlation rule;
2nd, alarm code+warning position is as correlation rule;
3rd, warning position is as correlation rule;
4th, alarm cause+warning position is as correlation rule;
5th, system type+alarm code is as correlation rule;
Comprise the following steps below using warning position as correlation rule:
Step 1:Analysis process obtains the information of the virtual machine and physical machine in resource distribution respectively.
Step 2:Obtain position correspondence relation, and the rule in new position relationship maintenance association rule base.
Step 3:Analysis process analyzes unclosed alarm in new report and alarm and caching, according to the position correspondence of acquisition Relation separates out possible new correlation rule.
Step 4:The new correlation rule of generation is saved into correlation rule storehouse.
Step 5:Correlation rule and alarm time of origin of the analysis process in correlation rule storehouse, in real time in analysis newly The root of the alarm of report or derivative alarm association relation, and incidence relation is saved into alarm association rule base.
Step 6:Incidence relation in alarm association relation storehouse is dynamically presented in real time by client presentation layer.
Below using alarm code as correlation rule, comprise the following steps:
Step 1:Analysis process reads the alarm code information in alarm code model;
Step 2:According to the definition rule analysis of alarm code, the correlation rule storehouse of alarm code is generated;
Step 3:New alarm A is reported, and analysis process obtains the alarm A information such as alarm code, time of origin, according to alarm code Correlation rule storehouse matches, analysis alarm A root or derivative warning information;
Step 4:Generation alarm A incidence relation, reports client Dynamic Display.
Fig. 3 is the flow chart of self study warning position correlation rule provided in an embodiment of the present invention, as shown in figure 3, alarm Scene of the position as correlation rule:According to resources of virtual machine information bank self study alarm association rule, and establish alarm association Relation.Including:
Step 1:Physical resource configuration ph_vimid (VIMID), ph_hostname (physical host title) are obtained, and is protected It is stored in correlation rule knowledge base;
Step 2:Resources of virtual machine configuration vi_vimid is obtained (to be fictionalized by physical host cluster
The VIMID come), vi_hostname (place physical host title), vi_vname (virtual machine title), and preserve Enter to associate in rule-based knowledge base;
Step 3:Whether ph_vimid is equal respectively with vi_vimid and ph_hostname with vi_hostname;
If ph_vimid is equal respectively with vi_vimid and ph_hostname and vi_hostname, enter step Rapid 4, otherwise, into step 8.
Step 4:Preserve ph_vimid and associate rule with vi_vimid and ph_hostname with vi_hostname to position Then storehouse;
Establish position correlation rule, and save location correlation rule:Vimid, hostname.
Step 5:Travel through position correlation rule storehouse, with get current physical and the vimid of resources of virtual machine, Hostname is matched;
Step 6:Whether can be with being matched in correlation rule knowledge base
Position correlation rule storehouse and correlation rule knowledge base are traveled through, if existing position correlation rule has vimid Or hostname is not present in correlation rule knowledge banked cache, then into step 7, otherwise, into step 8.
Step 7:Deleted from correlation rule knowledge base;
Step 8:Terminate.
Fig. 4 is the flow chart of self study alarm code correlation rule provided in an embodiment of the present invention, as shown in figure 4, alarm code Scene as correlation rule:According to alarm code Model Self-Learning alarm code correlation rule, and establish alarm association relation.Including The following steps:
Step 1:Read the alarm code of alarm code model;
Step 2:Rule analysis generation alarm code correlation rule map_rulecode is defined according to alarm code;
Step 3:Analysis process obtains the alarm A newly reported;
Step 4:Obtain alarm A alarm code, time of origin attribute;
Step 5:Analysis alarm A Root alarm or derivative alarm from current all unrecovered alarms;
Step 6:The incidence relation for alerting A is reported into client real-time exhibition.
It may also be said that first, alert analysis process reads the alarm code in alarm code model library, is put into alarm code model and knows Know storehouse;Then, analyzed according to the coding rule of alarm code, alarm code is defined as word32 types, according to byte from high to low, most High byte (the 4th byte) is used for distinguishing network element, and for defining the attribute of alarm, (expression is internal announcement to secondary high byte (the 3rd byte) The attribute of police, external alarm, physical alert, logic alarm etc.), most latter two byte is used to define specific alarm code, also may be used To be common serial number etc..Meet root secondary relationship needs while meet the definition requirement of these points:1st, A is alerted:It is " virtual The alarm code of machine abnormal state " defines the definition of last byte, bit3 1, represents that the alarm is defined as Root alarm, then Another the alarm B " controls of VNF (Virtual Network Feature, virtual network function) between module and OMP Last byte definition of the alarm code of face communication abnormality ", bit3 0, represents that the alarm is defined as deriving alarm.2nd, A is alerted It is identical with the alarm code second-to-last byte value for alerting B.3rd, it is identical with alarm B highest byte value to alert A, expression is same Alarm under network element.If meet 3 points above of requirement simultaneously, then alarm A can be defined as alerting B Root alarm, raw Into alarm code correlation rule map_rulecode.Finally, newly alarm C is reported, according to the alarm in the map_rulecode of analysis Code matches, while according to the time of origin for alerting C, matching alarm C root or derivative announcement from current unrecovered alarm Alert, generation alarm C incidence relation simultaneously reports client real-time exhibition.
Fig. 5 is the flow chart of analysis alarm association relation provided in an embodiment of the present invention, as shown in figure 5, including:
Step 1:New alarm A is reported;
Step 2:Analysis process reads alarm A position, and time of origin attribute;
Step 3:The vimid in location A information field is alerted, whether hostname attributes match with position correlation rule;
If matching, into step 4, otherwise, into step 8.
Step 4:Judge whether there are vmname attributes in alarm A location information field;
If so, then enter step 5, otherwise into step 9.
Step 5:Analysis alarm A Root alarm;
Step 6:Analysis alarm A derivative alarm;
Step 7:Respectively according to analysis result, alarm A Root alarm and derivative warning information are set;
Step 8:Alarm A essential information is set;
Step 9:Analysis alarm A derivative alarm;
Step 10:Respectively according to analysis result, the derivative warning information for alerting A is set;
Step 11:Preserve alarm A to enter in alarm association rule base, and report and alarm A incidence relation is real-time to client Present.
That is, first, analysis process has listened to new alarm A and reported, and reads alarm A positional information Alarmpos, time of origin happentime, and made of alarmpos with the position correlation rule in rulePos and respectively established Matching, if alarmpos can not be fitted on corresponding vimid, ph_hostname from rulePos, then alarm A can not basis Warning position does association analysis, and directly storage reports client.If alarmpos can match ph_ in rulePos Vimid, ph_hostname, then whether the alarmpos fields for determining whether to alert A have attribute:vmname.If alarm Without vmname attributes in A alarmpos, then represent that alarm A is a Root alarm, traversal is currently all not to be terminated to alert, Further analysis alarm A all derivative alarms.If alerting there are vmname attributes in A alarmpos, represent that alarm A may It is that derivative alarm is also likely to be Root alarm, then current all first roots for not terminating to alert, analyzing alarm A of traversal Alarm, and A all derivative alarms.Then, alarm A Root alarm, and derivative warning information are set.Finally, preserve Alarm A enters alarm association rule base, and notifies client to show alarm A incidence relation in real time.
Fig. 6 is the flow chart of the derivative alarm of analysis provided in an embodiment of the present invention, as shown in fig. 6, including:
Step 1:Vimid in extraction alarm A positional information, hostname, happentime information;
Step 2:Do not recover vimid, hostname, happentime in alarm B positional information in traversal extraction caching Information;
Step 3:A is alerted compared with alerting B, alarm A is equal with vimid and the hostname difference for alerting B;
Step 4:A is alerted compared with alerting B, if happentime category of the alarm A happentime attributes than alerting B Property the time it is early;
Step 5:The derivative alarm for setting alarm A is alarm B;
Step 6:It is current not recover to alert whether to travel through to terminate.
If current do not recover to alert not travel through to terminate, into step 2, otherwise, terminate.
Fig. 7 is the flow chart of analysis Root alarm provided in an embodiment of the present invention, as shown in fig. 7, comprises:
Step 1:Vimid in extraction alarm A positional information, hostname, happentime information;
Step 2:Do not recover vimid, hostname, happentime in alarm B positional information in traversal extraction caching Information;
Step 3:A is alerted compared with alerting B, vimid, hostname difference are equal;
Step 4:A is alerted compared with alerting B, if happentime category of the alarm B happentime attributes than alerting A Property the time it is early;
Step 5:The Root alarm for setting alarm A is alarm B.
The scheme provided according to embodiments of the present invention, distribute leaflets can be compressed accurately and rapidly to position failure cause Amount, it is ensured that supervision department, special maintenance department perform efficient, lifting troubleshooting quality.
Although the present invention is described in detail above, the invention is not restricted to this, those skilled in the art of the present technique Various modifications can be carried out according to the principle of the present invention.Therefore, all modifications made according to the principle of the invention, all should be understood to Fall into protection scope of the present invention.

Claims (10)

1. a kind of method of warning association analysis, including:
By being cached to the alarm reported, the alarm data for alert analysis is obtained;
Real-time rule match is carried out to multiple alarm datas using the alarm association rule pre-established, foundation has root Alarm and the alarm tree structure of derivative alarm;
According to the alarm tree structure, Root alarm is analyzed in real time.
2. according to the method for claim 1, the alarm association rule of the foundation is based on alarm code, warning position, announcement One of alert reason, alarm type or the alarm association rule of combination.
3. according to the method for claim 2, the alarm association rule includes:
Alarm association rule based on alarm code;
Alarm association rule based on warning position;
Based on the alarm association of alarm code and warning position rule;
Based on the alarm association of alarm code and alarm type rule;
Based on the alarm association of warning position and alarm cause rule.
4. the method according to claim 11, in addition to:
By analyzing to the alarm data, judge the alarm data whether with correlation rule in alarm association rule Matching;
When judging in the alarm data and alarm association rule that correlation rule mismatches, establish new correlation rule, and by its Preserve into alarm association rule.
5. according to any described methods of claim 1-4, in addition to:
According to the alarm tree structure, the Root alarm of report and alarm and derivative alarm are analyzed in real time.
6. a kind of device of warning association analysis, including:
Alarm data module is obtained, for by being cached to the alarm reported, obtaining the alarm data for alert analysis;
Alarm tree construction module is established, it is real for being carried out using the alarm association rule pre-established to multiple alarm datas When rule match, establish the alarm tree structure with Root alarm and derivative alarm;
Alert analysis module, for according to the alarm tree structure, analyzing Root alarm in real time.
7. device according to claim 6, the alarm association rule of the foundation is based on alarm code, warning position, announcement One of alert reason, alarm type or the alarm association rule of combination.
8. device according to claim 7, the alarm association rule includes:
Alarm association rule based on alarm code;
Alarm association rule based on warning position;
Based on the alarm association of alarm code and warning position rule;
Based on the alarm association of alarm code and alarm type rule;
Based on the alarm association of warning position and alarm cause rule.
9. device according to claim 6, in addition to:
By analyzing to the alarm data, judge the alarm data whether with correlation rule in alarm association rule Matching;
When judging in the alarm data and alarm association rule that correlation rule mismatches, establish new correlation rule, and by its Preserve into alarm association rule.
10. according to any described devices of claim 6-9, in addition to:
According to the alarm tree structure, the Root alarm of report and alarm and derivative alarm are analyzed in real time.
CN201610472575.2A 2016-06-24 2016-06-24 A kind of method and device of warning association analysis Pending CN107548087A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201610472575.2A CN107548087A (en) 2016-06-24 2016-06-24 A kind of method and device of warning association analysis

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201610472575.2A CN107548087A (en) 2016-06-24 2016-06-24 A kind of method and device of warning association analysis

Publications (1)

Publication Number Publication Date
CN107548087A true CN107548087A (en) 2018-01-05

Family

ID=60961079

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201610472575.2A Pending CN107548087A (en) 2016-06-24 2016-06-24 A kind of method and device of warning association analysis

Country Status (1)

Country Link
CN (1) CN107548087A (en)

Cited By (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109389518A (en) * 2018-09-03 2019-02-26 北京数介科技有限公司 Association analysis method and device
CN109450677A (en) * 2018-10-29 2019-03-08 中国联合网络通信集团有限公司 A kind of localization method and device of root failure
CN110493809A (en) * 2019-08-16 2019-11-22 惠州Tcl移动通信有限公司 Mobile terminal and its communication data method for detecting abnormality, computer-readable medium
WO2021109521A1 (en) * 2019-12-06 2021-06-10 江苏智臻能源科技有限公司 Buffer mechanism-based multi-type alarm determination algorithm
CN114070709A (en) * 2020-08-26 2022-02-18 北京市天元网络技术股份有限公司 Alarm correlation analysis method and device

Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101355451A (en) * 2008-09-09 2009-01-28 中兴通讯股份有限公司 Method and system for analyzing alarm correlativity
CN101938366A (en) * 2009-06-30 2011-01-05 中兴通讯股份有限公司 Method and device for realizing associated alarm
CN103346912A (en) * 2013-06-29 2013-10-09 华为技术有限公司 Method, device and system for conducting warning correlation analysis
CN104021195A (en) * 2014-06-13 2014-09-03 中国民航信息网络股份有限公司 Warning association analysis method based on knowledge base
CN104636989A (en) * 2015-02-11 2015-05-20 广东电网有限责任公司中山供电局 Electric power system monitoring warning information processing method and system
CN104767648A (en) * 2015-04-24 2015-07-08 烽火通信科技股份有限公司 Root alarm positioning function implementation method and system based on alarm backtracking
CN105677759A (en) * 2015-12-30 2016-06-15 国家电网公司 Alarm correlation analysis method in communication network

Patent Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101355451A (en) * 2008-09-09 2009-01-28 中兴通讯股份有限公司 Method and system for analyzing alarm correlativity
CN101938366A (en) * 2009-06-30 2011-01-05 中兴通讯股份有限公司 Method and device for realizing associated alarm
CN103346912A (en) * 2013-06-29 2013-10-09 华为技术有限公司 Method, device and system for conducting warning correlation analysis
CN104021195A (en) * 2014-06-13 2014-09-03 中国民航信息网络股份有限公司 Warning association analysis method based on knowledge base
CN104636989A (en) * 2015-02-11 2015-05-20 广东电网有限责任公司中山供电局 Electric power system monitoring warning information processing method and system
CN104767648A (en) * 2015-04-24 2015-07-08 烽火通信科技股份有限公司 Root alarm positioning function implementation method and system based on alarm backtracking
CN105677759A (en) * 2015-12-30 2016-06-15 国家电网公司 Alarm correlation analysis method in communication network

Cited By (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109389518A (en) * 2018-09-03 2019-02-26 北京数介科技有限公司 Association analysis method and device
CN109450677A (en) * 2018-10-29 2019-03-08 中国联合网络通信集团有限公司 A kind of localization method and device of root failure
CN109450677B (en) * 2018-10-29 2021-07-13 中国联合网络通信集团有限公司 Method and device for positioning root fault
CN110493809A (en) * 2019-08-16 2019-11-22 惠州Tcl移动通信有限公司 Mobile terminal and its communication data method for detecting abnormality, computer-readable medium
CN110493809B (en) * 2019-08-16 2023-07-18 惠州Tcl移动通信有限公司 Mobile terminal, communication data anomaly detection method thereof and computer readable medium
WO2021109521A1 (en) * 2019-12-06 2021-06-10 江苏智臻能源科技有限公司 Buffer mechanism-based multi-type alarm determination algorithm
CN114070709A (en) * 2020-08-26 2022-02-18 北京市天元网络技术股份有限公司 Alarm correlation analysis method and device

Similar Documents

Publication Publication Date Title
KR102483025B1 (en) Operational maintenance systems and methods
CN107548087A (en) A kind of method and device of warning association analysis
CN104407964B (en) A kind of centralized monitoring system and method based on data center
US11108619B2 (en) Service survivability analysis method and apparatus
CN109104302A (en) A kind of full link tracing monitoring method
CN106941423A (en) Failure cause localization method and device
CN110351150A (en) Fault rootstock determines method and device, electronic equipment and readable storage medium storing program for executing
CN108763957A (en) A kind of safety auditing system of database, method and server
CN103441861B (en) A kind of data record generation method and device
CN104021195A (en) Warning association analysis method based on knowledge base
CN106878038A (en) Fault Locating Method and device in a kind of communication network
CN105183619A (en) System fault early-warning method and system
CN112134719A (en) Method and system for analyzing base station security log
CN112383630A (en) Distributed pluggable process data reporting system based on production line tangent plane
CN116010456A (en) Equipment processing method, server and rail transit system
CN115865611A (en) Fault processing method and device of network equipment and electronic equipment
CN114443437A (en) Alarm root cause output method, apparatus, device, medium, and program product
CN112965990A (en) Low-voltage contact cabinet fault solution generation method and device
CN116345699B (en) Internet-based power transmission circuit information acquisition system and acquisition method
WO2024008130A1 (en) Faulty hardware processing method, apparatus and system
CN115630073B (en) Electric power Internet of things data processing method and platform based on edge calculation
CN104618151A (en) GIS technology-based ONU equipment fault location method for EPON network
CN116094174A (en) Knowledge graph-based power grid operation and maintenance monitoring method, system, equipment and medium
CN110995525A (en) Router detection method based on maintenance matrix
CN110837530A (en) Fault information processing method and device based on rail transit integrated equipment monitoring

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
WD01 Invention patent application deemed withdrawn after publication
WD01 Invention patent application deemed withdrawn after publication

Application publication date: 20180105