RFC 4765 · EXPERIMENTAL · 2007

The Intrusion Detection Message Exchange Format

Overview

RFC 4765, “The Intrusion Detection Message Exchange Format”, is an Experimental document published in March 2007 by H. Debar, D. Curry, B. Feinstein. The canonical text is published by the RFC Editor.

Abstract

The purpose of the Intrusion Detection Message Exchange Format (IDMEF) is to define data formats and exchange procedures for sharing information of interest to intrusion detection and response systems and to the management systems that may need to interact with them.

This document describes a data model to represent information exported by intrusion detection systems and explains the rationale for using this model. An implementation of the data model in the Extensible Markup Language (XML) is presented, an XML Document Type Definition is developed, and examples are provided. This memo defines an Experimental Protocol for the Internet community.

Abstract as published in the RFC, via rfc-editor.org.

What “Experimental” means

Describes a specification that is part of a research or development effort, published so the community can gain experience with it.

Read this RFC

The canonical text of RFC 4765 is hosted at rfc-editor.org. Available in TXT,HTML.

Other RFCs from 2007

Who Is Online

In total there are 81 users online: 0 registered, 76 guests and 5 bots.

Most users ever online was 1,226 on 13 Jun 2026, 3:56 am.

Bots: Applebot Googlebot Other Bot SemrushBot Sogou

Users active in the past 15 minutes. Total registered members: 354