Firewall Wizards mailing list archives

Re: future of IDS


From: "Owen O'Connor" <owenc () panix com>
Date: Mon, 19 Oct 1998 12:17:03 -0400 (EDT)


On Fri, 16 Oct 1998, Vern Paxson wrote:

Hopefully someone else can/will pick it up and run with it.

It looks like the IETF will soon create a working group to standardize ways
of describing security events so that different IDS can intercommunicate.
I'll post the announcement and mailing list info once it's available.
First meeting likely to be at the Orlando IETF in December.

Is this being done as part of the Common Intrusion Detection Framework
project - http://seclab.cs.ucdavis.edu/cidf/. I've seen some mention of an
IETF working group on the mailing list but all has been quiet since the
start of October. I know that several of the more serious IDS vendors were
interested in the CIDF work (including I believe NFR), have any of them
expressed an interest in possible IETF work?

Thanks

Owen O'Connor



Current thread: