<?xml version="1.0" encoding="UTF-8"?>
<reference anchor="I-D.poirotte-idmefv2-https-transport" target="https://datatracker.ietf.org/doc/html/draft-poirotte-idmefv2-https-transport-00">
   <front>
      <title>Transport of Incident Detection Message Exchange Format version 2 (IDMEFv2) Messages over HTTPS</title>
      <author initials="F." surname="Poirotte" fullname="Francois Poirotte">
         <organization>CS GROUP</organization>
      </author>
      <author initials="T." surname="Andrejak" fullname="Thomas Andrejak">
         <organization>CS GROUP</organization>
      </author>
      <author initials="G." surname="Lehmann" fullname="Gilles Lehmann">
         <organization>Telecom Sud Paris</organization>
      </author>
      <date month="October" day="15" year="2022" />
      <abstract>
	 <t>   The Incident Detection Message Exchange Format version 2 (IDMEFv2)
   provides a way to describe any incidents detected on cyber and/or
   physical infrastructures.

   The format is agnostic so it can be used in standalone or combined
   cyber (SIEM), physical (PSIM) and availability (NMS) monitoring
   systems.  IDMEFv2 can also be used to describe cyber and physical
   potential threats (CTI/PTI).

   IDMEF improves situational awareness by facilitating correlation of
   multiple types of events using the same base format thus enabling
   efficient detection of complex and combined cyber and physical
   attacks on critical infrastructures.

   If approved this document would obsolete RFC4767.

	 </t>
      </abstract>
   </front>
   <seriesInfo name="Internet-Draft" value="draft-poirotte-idmefv2-https-transport-00" />
   
</reference>
