AUTOMATED DETECTION OF A SYSTEM ANOMALY
First Claim
1. A method for automated detection of a real IT system problem, the method comprising:
- obtaining monitor measurements of metrics associated with activities of a plurality of configuration items of the IT system;
detecting anomalies in the monitor measurements;
grouping concurrent anomalies of the detected anomalies corresponding to configuration items of the plurality of configuration items which are topologically linked to be regarded as a system anomaly;
calculating a significance score for the system anomaly; and
determining that the system anomaly relates to a real system problem based on the calculated significance score.
13 Assignments
0 Petitions
Accused Products
Abstract
A method for automated detection of a real IT system problem may include obtaining monitor measurements of metrics associated with activities of a plurality of configuration items of the IT system. The method may also include detecting anomalies in the monitor measurements. The method may further include grouping concurrent anomalies of the detected anomalies corresponding to configuration items of the plurality of configuration items which are topologically linked to be regarded as a system anomaly. The method may further include calculating a significance score for the system anomaly, and determining that the system anomaly relates to a real system problem based on the calculated significance score.
25 Citations
15 Claims
-
1. A method for automated detection of a real IT system problem, the method comprising:
-
obtaining monitor measurements of metrics associated with activities of a plurality of configuration items of the IT system; detecting anomalies in the monitor measurements; grouping concurrent anomalies of the detected anomalies corresponding to configuration items of the plurality of configuration items which are topologically linked to be regarded as a system anomaly; calculating a significance score for the system anomaly; and determining that the system anomaly relates to a real system problem based on the calculated significance score. - View Dependent Claims (2, 3, 4, 6)
-
-
5. The method of claim further comprising alerting a user of the determining of the real system problem.
-
7. A non-transitory computer readable medium having stored thereon instructions that when executed by a processor will cause the processor to perform the method of:
-
obtaining monitor measurements of metrics associated with activities of a plurality of configuration items of the IT system and establishing a baseline for each of the metrics; detecting anomalies in the monitor measurements by referring to the baseline for each of the metrics; grouping concurrent anomalies of the detected anomalies corresponding to configuration items of the plurality of configuration items which are topologically linked to be regarded as a system anomaly; calculating a significance score for the system anomaly; and determining that the system anomaly relates to a real system problem based on the calculated significance score. - View Dependent Claims (8, 9, 10)
-
-
11. An apparatus for automated detection of a real IT system problem, the system comprising:
-
a plurality of monitors to obtain monitor measurements of metrics associated with activities of a plurality of configuration items of the IT system; a processor for detecting anomalies in the monitor measurements, grouping concurrent anomalies of the detected anomalies corresponding to configuration items of the plurality of configuration items which are topologically linked to be regarded as a system anomaly, calculating a significance score for the system anomaly; and
determining that the system anomaly relates to a real system problem based on the calculated significance score - View Dependent Claims (12, 13, 14, 15)
-
Specification