4.6 Article

Towards the Automatic and Schedule-Aware Alerting of Internetwork Time Series

期刊

IEEE ACCESS
卷 9, 期 -, 页码 61346-61358

出版社

IEEE-INST ELECTRICAL ELECTRONICS ENGINEERS INC
DOI: 10.1109/ACCESS.2021.3073598

关键词

Time series analysis; Monitoring; IP networks; Task analysis; Schedules; Proposals; Bandwidth; Monitoring systems; alerting module; Internetwork time series; LSTM networks; network managers schedule

资金

  1. Ministry of Science and Innovation of Spain through Project AGILEMON [AEI PID2019-104451RB-C21]
  2. Predoctoral Fellowship of the Program for the Training of University Lecturers of the Ministry of Science, Innovation and Universities of Spain [FPU19/05678]

向作者/读者索取更多资源

This article introduces the alerting module for time series in network monitoring systems, and discusses how to transform the task of monitoring anomalies into an unsupervised task in order to reduce the workload of network managers. By developing a player of real anomalies and considering the network managers' workforce as a parameter for configuring thresholds of the alerting module, a novel approach is proposed.
A common factor of every network monitoring system is an alerting module for time series. This module aims at triggering a warning when any type of abnormal behavior is detected in the patterns of a time series. Such a search for anomalies can be carried out by network managers as a supervised task such that the thresholds for considering a measurement as an anomaly are set following a manual process. Alternatively, we focus on how to translate such a task to an unsupervised one, thus alleviating network managers' dedication. To this end, we have developed, based on the experience of monitoring dozens of networks, a player of real anomalies. Thus, by recreating real issues, the alerting systems' parametrization can be carried out without supervision. Additionally, as a novelty, we propose to consider the network managers' workforce as a significant parameter to configure the thresholds of the alerting module-essentially, avoiding triggering alarms that will hardly receive attention. Then, we propose to measure and rank alarms by relevance, and relate them to the time to be solved for constructing, eventually, automatic schedules for the members of the staff-according to their time availability. Finally, all these proposals have been put into practice in various deployments of monitoring systems on networks in operation, which gives us evidence of its usefulness and low demand for resources.

作者

我是这篇论文的作者
点击您的名字以认领此论文并将其添加到您的个人资料中。

评论

主要评分

4.6
评分不足

次要评分

新颖性
-
重要性
-
科学严谨性
-
评价这篇论文

推荐

暂无数据
暂无数据