This Internet-Draft is no longer active. Unofficial copies of old Internet-Drafts can be found here:
http://tools.ietf.org/id/draft-takahashi-mile-sci.
Abstract:
This document extends the Incident Object Description Exchange Format
(IODEF) defined in RFC 5070 [RFC5070] to facilitate enriched
cybersecurity information exchange among cybersecurity entities by
embedding structured information formatted by specifications,
including CAPEC[TM] [CAPEC], CEE[TM] [CEE], CPE[TM] [CPE], CVE(R)
[CVE], CVRF [CVRF], CVSS [CVSS], CWE[TM] [CWE], CWSS[TM] [CWSS], ISO/
IEC 19770-2 [ISOIEC19770-2], OCIL [OCIL], OVAL(R) [OVAL], XCCDF
[XCCDF], and XDAS [XDAS].
Authors:
Takeshi Takahashi <takeshi_takahashi@nict.go.jp>
Kent Landfield <kent_landfield@mcafee.com>
Tom Millar <thomas.millar@us-cert.gov>
Youki Kadobayashi <youki-k@is.aist-nara.ac.jp>
(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid)