<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="FeedCreator 1.8" -->
<?xml-stylesheet href="https://idea.cesnet.cz/lib/exe/css.php?s=feed" type="text/css"?>
<rdf:RDF
    xmlns="http://purl.org/rss/1.0/"
    xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"
    xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
    xmlns:dc="http://purl.org/dc/elements/1.1/">
    <channel rdf:about="https://idea.cesnet.cz/feed.php">
        <title>IDEA - en</title>
        <description></description>
        <link>https://idea.cesnet.cz/</link>
        <image rdf:resource="https://idea.cesnet.cz/_media/logo.png" />
       <dc:date>2026-04-15T11:37:31+00:00</dc:date>
        <items>
            <rdf:Seq>
                <rdf:li rdf:resource="https://idea.cesnet.cz/en/classifications?rev=1453299089&amp;do=diff"/>
                <rdf:li rdf:resource="https://idea.cesnet.cz/en/definition?rev=1443162994&amp;do=diff"/>
                <rdf:li rdf:resource="https://idea.cesnet.cz/en/design?rev=1427991142&amp;do=diff"/>
                <rdf:li rdf:resource="https://idea.cesnet.cz/en/examples?rev=1426780176&amp;do=diff"/>
                <rdf:li rdf:resource="https://idea.cesnet.cz/en/footer?rev=1744282641&amp;do=diff"/>
                <rdf:li rdf:resource="https://idea.cesnet.cz/en/footer1?rev=1620992927&amp;do=diff"/>
                <rdf:li rdf:resource="https://idea.cesnet.cz/en/footer2?rev=1685450797&amp;do=diff"/>
                <rdf:li rdf:resource="https://idea.cesnet.cz/en/footer3?rev=1500886387&amp;do=diff"/>
                <rdf:li rdf:resource="https://idea.cesnet.cz/en/index?rev=1775826961&amp;do=diff"/>
                <rdf:li rdf:resource="https://idea.cesnet.cz/en/navigationmenu?rev=1451998653&amp;do=diff"/>
                <rdf:li rdf:resource="https://idea.cesnet.cz/en/other_formats?rev=1417515580&amp;do=diff"/>
                <rdf:li rdf:resource="https://idea.cesnet.cz/en/requirements?rev=1417515382&amp;do=diff"/>
                <rdf:li rdf:resource="https://idea.cesnet.cz/en/schema?rev=1708703534&amp;do=diff"/>
                <rdf:li rdf:resource="https://idea.cesnet.cz/en/sidebar?rev=1728993240&amp;do=diff"/>
            </rdf:Seq>
        </items>
    </channel>
    <image rdf:about="https://idea.cesnet.cz/_media/logo.png">
        <title>IDEA</title>
        <link>https://idea.cesnet.cz/</link>
        <url>https://idea.cesnet.cz/_media/logo.png</url>
    </image>
    <item rdf:about="https://idea.cesnet.cz/en/classifications?rev=1453299089&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2016-01-20T14:11:29+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>Classifications and enumerations</title>
        <link>https://idea.cesnet.cz/en/classifications?rev=1453299089&amp;do=diff</link>
        <description>Classifications and enumerations

EventTag: Security event types classification

Classification of events for IDEA in the &quot;Category&quot; key is based on abbreviation of slightly extended &quot;mkII&quot; taxonomy (by Don Stikvoort from SURFcert, itself based on eCSIRT.net taxonomy, and formerly Jimmi Arvidsson&#039;s taxonomy from Telia CERTCC). For comparison with other taxonomies see</description>
    </item>
    <item rdf:about="https://idea.cesnet.cz/en/definition?rev=1443162994&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2015-09-25T06:36:34+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>IDEA0 format definition</title>
        <link>https://idea.cesnet.cz/en/definition?rev=1443162994&amp;do=diff</link>
        <description>IDEA0 format definition

Keys use CamelCase, however to avoid confusion, they must be case insensitively unique within their parent object. When parsing, keys &quot;ID&quot;, &quot;id&quot;, &quot;iD&quot; and &quot;Id&quot; must be considered as equivalent.

Each definition line is in form KEY: TYPE, followed by an explanation line, where type can be basic JSON type (in</description>
    </item>
    <item rdf:about="https://idea.cesnet.cz/en/design?rev=1427991142&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2015-04-02T16:12:22+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>Design decisions</title>
        <link>https://idea.cesnet.cz/en/design?rev=1427991142&amp;do=diff</link>
        <description>Design decisions

Terminology

Descriptive data formats, and especially security event formats, are based on key:value models, where key can be simple token (in simple variants) or path in directory tree.

Hereby we use terms key, attribute and field interchangeably.</description>
    </item>
    <item rdf:about="https://idea.cesnet.cz/en/examples?rev=1426780176&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2015-03-19T15:49:36+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>Examples</title>
        <link>https://idea.cesnet.cz/en/examples?rev=1426780176&amp;do=diff</link>
        <description>Examples

Scanning


{
   &quot;Format&quot;: &quot;IDEA0&quot;, 
   &quot;ID&quot;: &quot;3ad275e3-559a-45c0-8299-6807148ce157&quot;, 
   &quot;DetectTime&quot;: &quot;2014-03-22T10:12:56Z&quot;, 
   &quot;Category&quot;: [&quot;Recon.Scanning&quot;], 
   &quot;ConnCount&quot;: 633, 
   &quot;Description&quot;: &quot;Ping scan&quot;, 
   &quot;Source&quot;: [ 
      { 
         &quot;IP4&quot;: [&quot;93.184.216.119&quot;],
         &quot;Proto&quot;: [&quot;icmp&quot;]
      }
   ],
   &quot;Target&quot;: [
      {
         &quot;Proto&quot;: [&quot;icmp&quot;],
         &quot;IP4&quot;: [&quot;93.184.216.0/24&quot;],
         &quot;Anonymised&quot;: true
      }
   ]
}</description>
    </item>
    <item rdf:about="https://idea.cesnet.cz/en/footer?rev=1744282641&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2025-04-10T10:57:21+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>Quick access</title>
        <link>https://idea.cesnet.cz/en/footer?rev=1744282641&amp;do=diff</link>
        <description>&lt;https://www.cesnet.cz&gt;
Quick access



----------

	*  Network
	*  Computing
	*  Data storage
	*  Security
	*  Multimedia
	*  Identity

Contacts



----------

CESNET, z. s. p. o.

Generála Píky 26

160 00 Praha 6



Contact us




Admin login

Service desk



----------

Tel: +420 234 680 222

GSM: +420 602 252 531

&lt;support@cesnet.cz&gt;






General Data Protection Regulation</description>
    </item>
    <item rdf:about="https://idea.cesnet.cz/en/footer1?rev=1620992927&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2021-05-14T11:48:47+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>Links</title>
        <link>https://idea.cesnet.cz/en/footer1?rev=1620992927&amp;do=diff</link>
        <description>Links

	*  e-INFRA CZ
	*  CESNET
	*  Personal Data Protection</description>
    </item>
    <item rdf:about="https://idea.cesnet.cz/en/footer2?rev=1685450797&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2023-05-30T12:46:37+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>Contact</title>
        <link>https://idea.cesnet.cz/en/footer2?rev=1685450797&amp;do=diff</link>
        <description>Contact

CESNET, z. s. p. o.

Generála Píky 26
16000 Prague 6

Tel: +420 234 680 222

Fax: +420 224 320 269

&lt;info@cesnet.cz&gt;</description>
    </item>
    <item rdf:about="https://idea.cesnet.cz/en/footer3?rev=1500886387&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2017-07-24T08:53:07+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>HelpDesk</title>
        <link>https://idea.cesnet.cz/en/footer3?rev=1500886387&amp;do=diff</link>
        <description>HelpDesk

Tel: +420 234 680 222

GSM: +420 602 252 531

Fax: +420 224 313 211

&lt;support@cesnet.cz&gt;</description>
    </item>
    <item rdf:about="https://idea.cesnet.cz/en/index?rev=1775826961&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2026-04-10T13:16:01+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>Intrusion Detection Extensible Alert</title>
        <link>https://idea.cesnet.cz/en/index?rev=1775826961&amp;do=diff</link>
        <description>Intrusion Detection Extensible Alert

IDEA stands for Intrusion Detection Extensible Alert. Even though there exists a variety of models for communication between honeypots, agents, detection probes, none of them is really used because of various limitations for general usage. The IDEA is an attempt to define nowadays requirements and propose foundations for viable solution for security event model, taking into consideration existing formats, their benefits and drawbacks.</description>
    </item>
    <item rdf:about="https://idea.cesnet.cz/en/navigationmenu?rev=1451998653&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2016-01-05T12:57:33+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title></title>
        <link>https://idea.cesnet.cz/en/navigationmenu?rev=1451998653&amp;do=diff</link>
        <description>*  IDEA
	*  Requirements
	*  Other formats
	*  Design
	*  Definition
	*  Classifications
	*  Schema
	*  Examples</description>
    </item>
    <item rdf:about="https://idea.cesnet.cz/en/other_formats?rev=1417515580&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2014-12-02T10:19:40+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>Other formats</title>
        <link>https://idea.cesnet.cz/en/other_formats?rev=1417515580&amp;do=diff</link>
        <description>Other formats

This page describes our review of existing formats and tries to explain, why we are not using one of them. It works as summarization of benefits and drawbacks of each of them, together with our subjective remarks.

IDMEF

Intrusion Detection Message Exchange Format is format created exactly for exchange of information about security events between detection probes.</description>
    </item>
    <item rdf:about="https://idea.cesnet.cz/en/requirements?rev=1417515382&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2014-12-02T10:16:22+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>Requirements</title>
        <link>https://idea.cesnet.cz/en/requirements?rev=1417515382&amp;do=diff</link>
        <description>Requirements

Our requirements are based mostly on our experience with other formats and are formulated to describe our needs. Your mileage may vary, however our springboard assumptions may explain further choices in design.

	*  We need to gather and exchange communication between automated detection systems and information aggregators of various types. This type of data manifests wide variability, so representation should be extensible enough to be prepared for unexpected or new types of secur…</description>
    </item>
    <item rdf:about="https://idea.cesnet.cz/en/schema?rev=1708703534&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2024-02-23T15:52:14+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>JSON Schema</title>
        <link>https://idea.cesnet.cz/en/schema?rev=1708703534&amp;do=diff</link>
        <description>JSON Schema

Strict validating schema

In line with Jon Postel&#039;s robustness principle:

	*  Producers must make sure that all created messages conform to this schema.
	*  Consumers may decide to apply more relaxed checks, however only in cases where IDEA events are not relayed further (and consumer effectively becomes producer).</description>
    </item>
    <item rdf:about="https://idea.cesnet.cz/en/sidebar?rev=1728993240&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2024-10-15T11:54:00+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title></title>
        <link>https://idea.cesnet.cz/en/sidebar?rev=1728993240&amp;do=diff</link>
        <description></description>
    </item>
</rdf:RDF>
