This shows you the differences between two versions of the page.
Both sides previous revision Previous revision | |||
en:index [01.02.2017 11:13] ph@cesnet.cz |
en:index [06.12.2017 14:27] ph@cesnet.cz |
||
---|---|---|---|
Line 1: | Line 1: | ||
====== Intrusion Detection Extensible Alert ====== | ====== Intrusion Detection Extensible Alert ====== | ||
- | |||
- | **The specification is nearly definitive. We expect only minor changes.** | ||
//IDEA// stands for //Intrusion Detection Extensible Alert//. Even though there exists a variety of models for communication between honeypots, agents, detection probes, none of them is really used because of various limitations for general usage. The IDEA is an attempt to define nowadays requirements and propose foundations for viable solution for security event model, taking into consideration existing formats, their benefits and drawbacks. | //IDEA// stands for //Intrusion Detection Extensible Alert//. Even though there exists a variety of models for communication between honeypots, agents, detection probes, none of them is really used because of various limitations for general usage. The IDEA is an attempt to define nowadays requirements and propose foundations for viable solution for security event model, taking into consideration existing formats, their benefits and drawbacks. |