{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,21]],"date-time":"2026-07-21T23:28:34Z","timestamp":1784676514242,"version":"3.55.0"},"publisher-location":"Berlin, Heidelberg","reference-count":22,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"value":"9783540440505","type":"print"},{"value":"9783540457084","type":"electronic"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2002]]},"DOI":"10.1007\/3-540-45708-9_10","type":"book-chapter","created":{"date-parts":[[2007,10,19]],"date-time":"2007-10-19T04:48:16Z","timestamp":1192769296000},"page":"143-161","source":"Crossref","is-referenced-by-count":102,"title":["Security Analysis of IKE\u2019s Signature-Based Key-Exchange Protocol"],"prefix":"10.1007","author":[{"given":"Ran","family":"Canetti","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Hugo","family":"Krawczyk","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2002,9,13]]},"reference":[{"key":"10_CR1","doi-asserted-by":"crossref","unstructured":"M. Bellare, R. Canetti and H. Krawczyk, \u201cA modular approach to the design and analysis of authentication and key-exchange protocols\u201d, 30th STOC, 1998.","DOI":"10.1145\/276698.276854"},{"key":"10_CR2","series-title":"Lect Notes Comput Sci","doi-asserted-by":"crossref","first-page":"232","DOI":"10.1007\/3-540-48329-2_21","volume-title":"Advances in Cryptology, \u2014 CRYPTO\u201993","author":"M. Bellare","year":"1994","unstructured":"M. Bellare and P. Rogaway, \u201cEntity authentication and key distribution\u201d, Advances in Cryptology, \u2014 CRYPTO\u201993, Lecture Notes in Computer Science Vol. 773, D. Stinson ed, Springer-Verlag, 1994, pp. 232\u2013249."},{"key":"10_CR3","doi-asserted-by":"crossref","unstructured":"R. Canetti, \u201cUniversally Composable Security: A New paradigm for Cryptographic Protocols\u201d, 42nd FOCS, 2001. Full version available at http:\/\/www.eprint.iacr.org\/2000\/067 .","DOI":"10.1109\/SFCS.2001.959888"},{"key":"10_CR4","doi-asserted-by":"crossref","unstructured":"Canetti, R., and Krawczyk, H., \u201cSecurity Analysis of IKE\u2019s Signature-based Key-Exchange Protocol\u201d, full version. Cryptology ePrint Archive ( http:\/\/www.eprint.iacr.org\/ ), 2002.","DOI":"10.1007\/3-540-45708-9_10"},{"key":"10_CR5","doi-asserted-by":"crossref","unstructured":"Canetti, R., and Krawczyk, H., \u201cAnalysis of Key-Exchange Protocols and Their Use for Building Secure Channels\u201d, Advances in Cryptology \u2014 EUROCRYPT 2001, Full version in: http:\/\/www.eprint.iacr.org\/2001\/040 .","DOI":"10.1007\/3-540-44987-6_28"},{"key":"10_CR6","doi-asserted-by":"crossref","unstructured":"Canetti, R., and Krawczyk, H., \u201cUniversally Composable Notions of Key Exchange and Secure Channels\u201d, Eurocrypt 02, 2002. Full version available at http:\/\/www.eprint.iacr.org\/2002\/059 .","DOI":"10.1007\/3-540-46035-7_22"},{"key":"10_CR7","series-title":"Lect Notes Comput Sci","doi-asserted-by":"crossref","first-page":"13","DOI":"10.1007\/BFb0055717","volume-title":"Crypto\u2019 98","author":"R. Cramer","year":"1998","unstructured":"R. Cramer and V. Shoup, \u201cA Practical Public Key Cryptosystem Provable Secure Against Adaptive Chosen Ciphertext Attack\u201d, In Crypto\u2019 98, LNCS No. 1462, pages 13\u201325, 1998."},{"key":"10_CR8","doi-asserted-by":"publisher","first-page":"107","DOI":"10.1007\/BF00124891","volume":"2","author":"W. Diffie","year":"1992","unstructured":"W. Diffie, P. van Oorschot and M. Wiener, \u201cAuthentication and authenticated key exchanges\u201d, Designs, Codes and Cryptography, 2, 1992, pp. 107\u2013125.","journal-title":"Designs, Codes and Cryptography"},{"key":"10_CR9","unstructured":"Gennaro, R., Krawczyk H., and Rabin, T., \u201cHashed Diffie-Hellman: A Hierarchy of Diffie-Hellman Assumptions\u201d, manuscript, Feb 2002."},{"key":"10_CR10","doi-asserted-by":"crossref","unstructured":"O. Goldreich, \u201cFoundations of Cryptography: Basic Tools\u201d, Cambridge Press, 2001.","DOI":"10.1017\/CBO9780511546891"},{"key":"10_CR11","doi-asserted-by":"crossref","unstructured":"D. Harkins and D. Carrel, ed., \u201cThe Internet Key Exchange (IKE)\u201d, RFC 2409, Nov. 1998.","DOI":"10.17487\/rfc2409"},{"key":"10_CR12","unstructured":"ISO\/IEC IS 9798-3, \u201cEntity authentication mechanisms-Part 3: Entity authentication using asymmetric techniques\u201d, 1993."},{"key":"10_CR13","unstructured":"Karn, P., and Simpson W.A., \u201cThe Photuris Session Key Management Protocol\u201d, draft-ietf-ipsec-photuris-03.txt, Sept. 1995."},{"key":"10_CR14","doi-asserted-by":"crossref","unstructured":"S. Kent and R. Atkinson, \u201cSecurity Architecture for the Internet Protocol\u201d, Request for Comments 2401, Nov. 1998.","DOI":"10.17487\/rfc2401"},{"key":"10_CR15","doi-asserted-by":"crossref","unstructured":"Krawczyk, H., \u201cSKEME: A Versatile Secure Key Exchange Mechanism for Internet,\u201d, Proceedings of the 1996 Internet Society Symposium on Network and Distributed System Security, Feb. 1996, pp. 114\u2013127.","DOI":"10.1109\/NDSS.1996.492418"},{"key":"10_CR16","unstructured":"Krawczyk, H., IPsec mailing list archives, http:\/\/www.vpnc.org\/ietf-ipsec\/ , April-June 1995."},{"key":"10_CR17","doi-asserted-by":"crossref","unstructured":"Krawczyk, H., \u201cThe order of encryption and authentication for protecting communications (Or: how secure is SSL?)\u201d, Crypto\u20192001. Full version in: Cryptology ePrint Archive ( http:\/\/www.eprint.iacr.org\/ ), Report 2001\/045.","DOI":"10.1007\/3-540-44647-8_19"},{"key":"10_CR18","unstructured":"Krawczyk, H., \u201cSIGMA: the\u2019 sIGn-and-MAc\u2019 Approach to Authenticated Diffie-Hellman Protocols\u201d, http:\/\/www.ee.technion.ac.il\/~hugo\/sigma.html"},{"key":"10_CR19","doi-asserted-by":"crossref","unstructured":"Meadows, C., \u201cAnalysis of the Internet Key Exchange Protocol Using the NRL Protocol Analyzer\u201d, Proceedings of the 1999 IEEE Symposium on Security and Privacy, IEEE Computer Society Press, May 1999.","DOI":"10.21236\/ADA465466"},{"key":"10_CR20","doi-asserted-by":"crossref","unstructured":"A. Menezes, P. Van Oorschot and S. Vanstone, \u201cHandbook of Applied Cryptography,\u201d CRC Press, 1996.","DOI":"10.1201\/9781439821916"},{"key":"10_CR21","doi-asserted-by":"crossref","unstructured":"Orman, H., \u201cThe OAKLEY Key Determination Protocol\u201d, Request for Comments 2412, Nov. 1998.","DOI":"10.17487\/rfc2412"},{"key":"10_CR22","unstructured":"V. Shoup, \u201cOn Formal Models for Secure Key Exchange\u201d, Theory of Cryptography Library, 1999. Available at: http:\/\/www.philby.ucsd.edu\/cryptolib\/1999\/99-12.html ."}],"container-title":["Lecture Notes in Computer Science","Advances in Cryptology \u2014 CRYPTO 2002"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/3-540-45708-9_10","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,5,3]],"date-time":"2019-05-03T17:27:26Z","timestamp":1556904446000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/3-540-45708-9_10"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2002]]},"ISBN":["9783540440505","9783540457084"],"references-count":22,"URL":"https:\/\/doi.org\/10.1007\/3-540-45708-9_10","relation":{},"ISSN":["0302-9743"],"issn-type":[{"value":"0302-9743","type":"print"}],"subject":[],"published":{"date-parts":[[2002]]}}}