en:definition

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

en:definition [16.03.2015 17:10]
127.0.0.1 external edit
en:definition [25.09.2015 08:36] (current)
ph@cesnet.cz fixed links
Line 7: Line 7:
 The keys ''​Format'',​ ''​ID'',​ ''​DetectTime''​ and ''​Category''​ are mandatory, rest of the keys is optional (nonexistent key indicates that information is not applicable or unknown). The keys ''​Format'',​ ''​ID'',​ ''​DetectTime''​ and ''​Category''​ are mandatory, rest of the keys is optional (nonexistent key indicates that information is not applicable or unknown).
  
-As human language may be ambiguous inadvertently or by omission, when in doubt, consult [[en/idea/​schema|JSON schema]].+As human language may be ambiguous inadvertently or by omission, when in doubt, consult [[en/​schema|JSON schema]].
  
 ===== Definition ===== ===== Definition =====
Line 178: Line 178:
 Category name consists of one or two abbreviated parts - category and optional subcategory,​ separated by dot. If unsure of more precise nature of the incident, subcategory and dot may be omitted. Category and subcategory name must contain only alphanumeric,​ underscore and minus sign. Category name consists of one or two abbreviated parts - category and optional subcategory,​ separated by dot. If unsure of more precise nature of the incident, subcategory and dot may be omitted. Category and subcategory name must contain only alphanumeric,​ underscore and minus sign.
  
-For semantics and taxonomy see [[en/idea/​classifications#​eventtagsecurity_event_types_classification|security event types classification]].+For semantics and taxonomy see [[en/​classifications#​eventtagsecurity_event_types_classification|security event types classification]].
  
 ==== ProtocolName ==== ==== ProtocolName ====
Line 184: Line 184:
 Name must not be empty, must contain only alphanumeric and minus sign, must contain at least one letter, must not begin or end with a hyphen and two hyphens must not be adjacent. Name must not be empty, must contain only alphanumeric and minus sign, must contain at least one letter, must not begin or end with a hyphen and two hyphens must not be adjacent.
  
-For semantics and applicable strings see [[en/idea/​classifications#​protocolnameprotocols_classification|protocols classification]].+For semantics and applicable strings see [[en/​classifications#​protocolnameprotocols_classification|protocols classification]].
  
 ==== SourceTargetTag ==== ==== SourceTargetTag ====
Line 190: Line 190:
 Tag name must contain only alphanumeric,​ underscore and minus sign. Tag name must contain only alphanumeric,​ underscore and minus sign.
  
-For semantics and taxonomy see [[en/idea/​classifications#​sourcetargettagsourcetarget_classification|source/​target classification]].+For semantics and taxonomy see [[en/​classifications#​sourcetargettagsourcetarget_classification|source/​target classification]].
  
 ==== NodeTag ==== ==== NodeTag ====
Line 196: Line 196:
 Tag name must contain only alphanumeric,​ underscore and minus sign. Tag name must contain only alphanumeric,​ underscore and minus sign.
  
-For semantics and taxonomy see [[en/idea/​classifications#​nodetagclassification_of_detection_nodes|classification of detection nodes]].+For semantics and taxonomy see [[en/​classifications#​nodetagclassification_of_detection_nodes|classification of detection nodes]].
  
 ==== AttachmentTag ==== ==== AttachmentTag ====
Line 202: Line 202:
 Tag name must contain only alphanumeric,​ underscore and minus sign. Tag name must contain only alphanumeric,​ underscore and minus sign.
  
-For semantics and taxonomy see [[en/idea/​classifications#​attachmenttagattachment_description|attachment description]].+For semantics and taxonomy see [[en/​classifications#​attachmenttagattachment_description|attachment description]].
  
Last modified: 25.09.2015 08:36