DocumentCode
717182
Title
ADAMANT — An Anomaly Detection Algorithm for MAintenance and Network Troubleshooting
Author
Martinez, Eloy ; Fallon, Enda ; Fallon, Sheila ; MingXue Wang
Author_Institution
Network Manage. Lab., Ericsson, Athlone, Ireland
fYear
2015
fDate
11-15 May 2015
Firstpage
1292
Lastpage
1297
Abstract
Network operators are increasingly using analytic applications to improve the performance of their networks. Telecommunications analytical applications typically use SQL and Complex Event Processing (CEP) for data processing, network analysis and troubleshooting. Such approaches are hindered as they require an in-depth knowledge of both the telecommunications domain and telecommunications data structures in order to create the required queries. Valuable information contained in free form text data fields such as “additional_info”, “user_text” or “problem_text” can also be ignored. This work proposes An Anomaly Detection Algorithm for MAintenance and Network Troubleshooting (ADAMANT), a text analytic based network anomaly detection approach. Once telecommunications data records have been indexed, ADAMANT uses distance based outlier detection within sliding windows to detect abnormal terms at configurable time intervals. Traditional approaches focus on a specific type of record and create specific cause and effect rules. With the ADAMANT approach all free form text fields of alarms, logs, etc. are treated as text documents similar to Twitter feeds. All documents within a window represent a snapshot of the network state that is processed by ADAMANT. The ADAMANT approach focuses on text analytics to provide automated analysis without the requirement for SQL/CEP queries. Such an approach provides distinct network insights in comparison to traditional approaches.
Keywords
performance evaluation; search engines; security of data; text analysis; ADAMANT; CEP; SQL; Twitter feeds; abnormal terms detection; additional_info; anomaly detection algorithm for maintenance and network troubleshooting; complex event processing; configurable time intervals; data processing; distance based outlier detection; network analysis; network operators; network performance; network state; problem_text; search engine; sliding windows; telecommunications analytical applications; telecommunications data records; telecommunications data structures; telecommunications domain; text analytic based network anomaly detection approach; text documents; user_text; Algorithm design and analysis; Big data; Conferences; Detection algorithms; Indexes; Search engines; Telecommunications; distance based; outlier; search Engine; sliding windows; text anomaly;
fLanguage
English
Publisher
ieee
Conference_Titel
Integrated Network Management (IM), 2015 IFIP/IEEE International Symposium on
Conference_Location
Ottawa, ON
Type
conf
DOI
10.1109/INM.2015.7140484
Filename
7140484
Link To Document