Patent classifications
H04L41/0686
SMART ALERT CORRELATION FOR CLOUD SERVICES
Methods and systems described herein correlate an incoming alert, regarding events that affect service performance, availability, and security in a cloud services platform, with an existing incident record, stored in remote storage, to enable improved incident handling. Alert information is applied to machine-learning models to correlate the incoming alert to a parent incident record. In rule-based correlation, a local cache stores query signatures (keys) and information related to respective incident records (values). A correlation rule is retrieved for the alert, and a correlation query is constructed based on the alert and the rule. A query signature is generated and used as a cache key to access information about a respective parent incident in storage. If the parent information is not found in the cache, the remote storage is searched for the parent incident record using the correlation query. The alert and correlated parent incident record are associated in remote storage.
SMART ALERT CORRELATION FOR CLOUD SERVICES
Methods and systems described herein correlate an incoming alert, regarding events that affect service performance, availability, and security in a cloud services platform, with an existing incident record, stored in remote storage, to enable improved incident handling. Alert information is applied to machine-learning models to correlate the incoming alert to a parent incident record. In rule-based correlation, a local cache stores query signatures (keys) and information related to respective incident records (values). A correlation rule is retrieved for the alert, and a correlation query is constructed based on the alert and the rule. A query signature is generated and used as a cache key to access information about a respective parent incident in storage. If the parent information is not found in the cache, the remote storage is searched for the parent incident record using the correlation query. The alert and correlated parent incident record are associated in remote storage.
ENTERPRISE PORT ASSIGNMENT
Methods, systems, and apparatuses may determine a connection topology for a service and send an alert in which the alert includes a service connection topology that includes a plurality of port assignments for each equipment of the connection topology.
TIME SOURCE HEALTH MONITORING SUPPORT FOR NETWORK TIMING RESILIENCY
Method, apparatuses, and computer program products provide means for monitoring time sources for nodes of a network and providing timing resiliency solutions. An example method includes: establishing time synchronization within a network comprising a plurality of nodes using a time source; receiving an indication regarding at least one of degradation or failure of the time source for at least one node; receiving an indication regarding at least recovery of the time source for the at least one node; and determining, within the network, an action to be taken to upon failure at the at least one node in response to the at least one of the degradation or the failure of the time source for the at least one node, where the action to be taken comprises instructing the at least one node to leverage either hold over functionality or a backup time source.
System for Enterprise Alert Timeline of a System and Service
A system, method, and computer-readable medium are disclosed for performing a data center monitoring and management operation. The data center monitoring and management operation includes: monitoring data center assets within a data center; identifying an issue within the data center, the issue being associated with an operational situation associated with a particular component of the data center; associating the issue with a particular point in time; and, informing a user about the issue, the informing including information regarding the particular point in time, the informing including a graphical depiction of the particular component of the data center and the issue within the data center.
EVENT NOTIFICATION IN INTERCONNECTED CONTENT-ADDRESSABLE STORAGE SYSTEMS
Some of the embodiments herein provide a seamless cloud of storage. This storage may be content-addressable storage. An end application may or may not be exposed to the fact that content-addressable storage is used. Various embodiments herein provide event notification, which may allow applications or users to subscribe to particular events (such as storage of an X-ray by a particular entity). Some embodiments provide for a shared archive. A shared archive may provide homogeneous access to medical data, etc. that was previously stored into the CAS cloud by heterogeneous applications, varied data types, etc. Additionally, embodiments herein allow for the creation and distribution of virtual packages. For example, a user may create a virtual package for all images related to a patient so that she may have a virtual package of all of her medical data to present to a referring physician.
EVENT NOTIFICATION IN INTERCONNECTED CONTENT-ADDRESSABLE STORAGE SYSTEMS
Some of the embodiments herein provide a seamless cloud of storage. This storage may be content-addressable storage. An end application may or may not be exposed to the fact that content-addressable storage is used. Various embodiments herein provide event notification, which may allow applications or users to subscribe to particular events (such as storage of an X-ray by a particular entity). Some embodiments provide for a shared archive. A shared archive may provide homogeneous access to medical data, etc. that was previously stored into the CAS cloud by heterogeneous applications, varied data types, etc. Additionally, embodiments herein allow for the creation and distribution of virtual packages. For example, a user may create a virtual package for all images related to a patient so that she may have a virtual package of all of her medical data to present to a referring physician.
Business impact analysis
A system and method is disclosed for identifying and evaluating the business relevant impact of observed operating anomalies of monitored components of computing environments like data centers or cloud computing environments. The disclosed technology uses end-to-end transaction trace, availability and resource utilization data in combination with topology data received from agents deployed to the monitored computing environment. An abnormal operating condition is localized within a topological model of the monitored environment and has a defined temporal extent. On detection of an anomaly, affected transaction traces are selected that used the topology entity on which the anomaly was observed while the anomaly existed. Those transactions are then traced backwards, until a topology entity is reached that represents an entry point of monitored system. The affected transactions are compared with unaffected transactions that entered via the entry point to determine the extent to which the entry service is affected by the abnormal behavior.
Business impact analysis
A system and method is disclosed for identifying and evaluating the business relevant impact of observed operating anomalies of monitored components of computing environments like data centers or cloud computing environments. The disclosed technology uses end-to-end transaction trace, availability and resource utilization data in combination with topology data received from agents deployed to the monitored computing environment. An abnormal operating condition is localized within a topological model of the monitored environment and has a defined temporal extent. On detection of an anomaly, affected transaction traces are selected that used the topology entity on which the anomaly was observed while the anomaly existed. Those transactions are then traced backwards, until a topology entity is reached that represents an entry point of monitored system. The affected transactions are compared with unaffected transactions that entered via the entry point to determine the extent to which the entry service is affected by the abnormal behavior.
METHODS, APPARATUSES AND COMPUTER PROGRAM PRODUCTS FOR GENERATING RESPONDER ALERT DATA OBJECTS BASED ON GLOBAL ALERT POLICY DATA OBJECTS AND INLINE ALERT POLICY DATA OBJECTS
Various embodiments herein described are directed to methods, apparatuses and computer program products configured for improving alert generation and management in network computer systems. In some embodiments, a client device may generate one or more responder alert data objects for an incident data object based at least in part on global alert policy data object(s) and inline alert policy data object(s). Additional example embodiments provide various example global alert policy creation user interfaces, global alert policy edit user interfaces, inline alert policy creation user interfaces, and/or inline alert policy edit user interfaces that facilitate various user inputs and software operations in an incident alert and management platform.