Context-aware rule engine for anomaly detection
The technology disclosed relates to detecting anomalous behavior of network components in a complex network setting. In particular, it relates to processing a historical stream of latency sample points by applying a wide aperture temporal aggregator that summarizes historical stream in a reduced num...
Gespeichert in:
Hauptverfasser: | , , , , , , |
---|---|
Format: | Patent |
Sprache: | eng |
Schlagworte: | |
Online-Zugang: | Volltext bestellen |
Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
Zusammenfassung: | The technology disclosed relates to detecting anomalous behavior of network components in a complex network setting. In particular, it relates to processing a historical stream of latency sample points by applying a wide aperture temporal aggregator that summarizes historical stream in a reduced number of summary points, based on a moving window, with a metric date-time indicator associated with each summary point, processing a current stream of latency sample points, including, applying a narrow aperture temporal aggregator that summarizes the current stream in a reduced number of summary points, based on a moving window, comparing summary points from the current stream to summary points from the historical stream at a date-time indicator with a predetermined periodic-temporal relationship to a particular current stream summary point, and quantizing the comparison to at least three comparison values of low-range, normal and high-range and recording at least low-range and high-range quantized comparisons for analysis. |
---|