<?xml version="1.0" encoding="UTF-8"?>
<reference anchor="I-D.ietf-nmop-network-anomaly-lifecycle" target="https://datatracker.ietf.org/doc/html/draft-ietf-nmop-network-anomaly-lifecycle-06">
   <front>
      <title>An Experiment: Network Anomaly Detection Lifecycle</title>
      <author initials="V." surname="Riccobene" fullname="Vincenzo Riccobene">
         <organization>Huawei</organization>
      </author>
      <author initials="T." surname="Graf" fullname="Thomas Graf">
         <organization>Swisscom</organization>
      </author>
      <author initials="W." surname="Du" fullname="Wanting Du">
         <organization>Swisscom</organization>
      </author>
      <author initials="A. H." surname="Feng" fullname="Alex Huang Feng">
         <organization>Deutsche Telekom</organization>
      </author>
      <date month="July" day="6" year="2026" />
      <abstract>
	 <t>   This document defines a structured, iterative lifecycle for network
   anomaly detection systems to enable &quot;human-in-the-loop&quot; refinements.
   Key contributions include defining three lifecycle stages, a state
   machine for anomaly annotations, and YANG data models for
   standardized labeling and exchange.

	 </t>
      </abstract>
   </front>
   <seriesInfo name="Internet-Draft" value="draft-ietf-nmop-network-anomaly-lifecycle-06" />
   
</reference>
