-
"Intrusion Detection Mesage Exchange Requirements", Mark Wood, Michael Erlinger, 23-Oct-02. (56951 bytes)
- The purpose of the Intrusion Detection Exchange Format Working Group (IDWG)
is to define data formats and exchange procedures for sharing information
of interest to intrusion detection and response systems, and to the
management systems which may need to interact with them. This
Internet-Draft describes the high-level requirements for such a
communication mechanism, including the rationale for those requirements
where clarification is needed. Scenarios are used to illustrate some
requirements.
-
"The Intrusion Detection Message Exchange Format", Hervé Debar, 22-Mar-06. (324256 bytes)
- The purpose of the Intrusion Detection Message Exchange Format (IDMEF) is
to define data formats and exchange procedures for sharing information of
interest to intrusion detection and response systems, and to the management
systems which may need to interact with them. This Internet-Draft describes
a data model to represent information exported by intrusion detection
systems, and explains the rationale for using this model. An implementation
of the data model in the Extensible Markup Language (XML) is presented, an
XML Document Type Definition is developed, and examples are provided.
-
"The Intrusion Detection Exchange Protocol (IDXP)", Benjamin Feinstein, Gregory Matthews, John White, 23-Oct-02. (63606 bytes)
- This memo describes the Intrusion Detection Exchange Protocol (IDXP), an
application-level protocol for exchanging data between intrusion detection
entities. IDXP supports mutual-authentication, integrity, and
confidentiality over a connection-oriented protocol. The protocol provides
for the exchange of IDMEF messages, unstructured text, and binary data. The
IDMEF message elements are described in the Intrusion Detection Message
Exchange Format (IDMEF) [2], a companion document of the Intrusion
Detection Exchange Format (IDWG) working group of the IETF.
IETF Secretariat - Please send questions, comments, and/or
suggestions to ietf-web@ietf.org.
Return to Internet-Draft directory.
Return to IETF home page.