{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,9,29]],"date-time":"2025-09-29T08:26:59Z","timestamp":1759134419384,"version":"3.40.3"},"publisher-location":"Berlin, Heidelberg","reference-count":26,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783642402029"},{"type":"electronic","value":"9783642402036"}],"license":[{"start":{"date-parts":[[2013,1,1]],"date-time":"2013-01-01T00:00:00Z","timestamp":1356998400000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2013]]},"DOI":"10.1007\/978-3-642-40203-6_15","type":"book-chapter","created":{"date-parts":[[2013,8,14]],"date-time":"2013-08-14T02:48:53Z","timestamp":1376448533000},"page":"255-272","source":"Crossref","is-referenced-by-count":9,"title":["Plug-and-Play IP Security"],"prefix":"10.1007","author":[{"given":"Yossi","family":"Gilad","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Amir","family":"Herzberg","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"15_CR1","doi-asserted-by":"publisher","first-page":"12","DOI":"10.1016\/j.cose.2012.09.005","volume":"33","author":"R. Abramov","year":"2013","unstructured":"Abramov, R., Herzberg, A.: TCP Ack Storm DoS Attacks. Computers & Security\u00a033, 12\u201327 (2013)","journal-title":"Computers & Security"},{"key":"15_CR2","doi-asserted-by":"crossref","unstructured":"Alicherry, M., Keromytis, A.D.: DoubleCheck: Multi-Path Verification against Man-in-the-Middle Attacks. In: ISCC, pp. 557\u2013563. IEEE (2009)","DOI":"10.1109\/ISCC.2009.5202224"},{"key":"15_CR3","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"170","DOI":"10.1007\/3-540-44810-1_22","volume-title":"Security Protocols","author":"T. Aura","year":"2001","unstructured":"Aura, T., Nikander, P., Leiwo, J.: DoS-Resistant Authentication with Client Puzzles. In: Christianson, B., Crispo, B., Malcolm, J.A., Roe, M. (eds.) Security Protocols. LNCS, vol.\u00a02133, pp. 170\u2013177. Springer, Heidelberg (2001)"},{"key":"15_CR4","unstructured":"ComodoTM. Incident Report (March 2011), Published online \n                    \n                      http:\/\/www.comodo.com\/Comodo-Fraud-Incident-2011-03-23.html"},{"key":"15_CR5","doi-asserted-by":"crossref","unstructured":"Dingledine, R., Mathewson, N., Syverson, P.F.: Tor: The Second-Generation Onion Router. In: USENIX Security Symposium, pp. 303\u2013320. USENIX (2004)","DOI":"10.21236\/ADA465464"},{"key":"15_CR6","doi-asserted-by":"crossref","unstructured":"Eddy, W.: TCP SYN Flooding Attacks and Common Mitigations. RFC 4987 (Informational) (August 2007)","DOI":"10.17487\/rfc4987"},{"key":"15_CR7","doi-asserted-by":"crossref","unstructured":"Gilad, Y., Herzberg, A.: LOT: A Defense Against IP Spoofing and Flooding Attacks. ACM Transactions on Information and System Security 15(2), 6:1\u20136:30 (2012)","DOI":"10.1145\/2240276.2240277"},{"key":"15_CR8","doi-asserted-by":"crossref","unstructured":"Gilad, Y., Herzberg, A.: Plug-and-Play IP Security: Anonymity Infrastructure Instead of PKI. Technical report, Bar Ilan University, Dept. of Computer Science, Network Security Lab, (June 2013), Published online \n                    \n                      http:\/\/eprint.iacr.org\/2013\/410","DOI":"10.1007\/978-3-642-40203-6_15"},{"key":"15_CR9","unstructured":"Gilmore, J.: FreeS\/WAN, Published online \n                    \n                      www.freeswan.org"},{"issue":"2","key":"15_CR10","doi-asserted-by":"publisher","first-page":"270","DOI":"10.1016\/0022-0000(84)90070-9","volume":"28","author":"S. Goldwasser","year":"1984","unstructured":"Goldwasser, S., Micali, S.: Probabilistic Encryption. Journal of Computer and System Sciences\u00a028(2), 270\u2013299 (1984)","journal-title":"Journal of Computer and System Sciences"},{"key":"15_CR11","unstructured":"Herzberg, A., Shulman, H.: Stealth DoS Attacks on Secure Channels. In: Proceedings of Network and Distributed Systems Security (NDSS). Internet Society (February 2010)"},{"key":"15_CR12","doi-asserted-by":"crossref","unstructured":"Housley, R., Ford, W., Polk, W., Solo, D.: Internet X.509 Public Key Infrastructure Certificate and CRL Profile. RFC 2459 (Proposed Standard) (January 1999); Obsoleted by RFC 3280","DOI":"10.17487\/rfc2459"},{"key":"15_CR13","doi-asserted-by":"crossref","unstructured":"Ishai, Y., Kushilevitz, E., Ostrovsky, R., Sahai, A.: Cryptography from Anonymity. In: IEEE Symposium on Foundations of Computer Science, FOCS, pp. 239\u2013248 (2006)","DOI":"10.1109\/FOCS.2006.25"},{"key":"15_CR14","doi-asserted-by":"crossref","unstructured":"Kaufman, C., Hoffman, P., Nir, Y., Eronen, P.: Internet Key Exchange Protocol Version 2 (IKEv2). RFC 5996 (Proposed Standard) (September 2010); Updated by RFC 5998","DOI":"10.17487\/rfc5996"},{"key":"15_CR15","doi-asserted-by":"crossref","unstructured":"Kent, S., Seo, K.: Security Architecture for the Internet Protocol. RFC 4301 (Proposed Standard) (December 2005); Updated by RFC 6040","DOI":"10.17487\/rfc4301"},{"key":"15_CR16","unstructured":"Marlinspike, M.: Convergence (2011), Published online \n                    \n                      http:\/\/convergence.io"},{"key":"15_CR17","unstructured":"The Tor Project. Tor Metrics Portal (April 2013), Published online \n                    \n                      https:\/\/metrics.torproject.org\/graphs.html"},{"key":"15_CR18","doi-asserted-by":"crossref","unstructured":"Richardson, M.: A Method for Storing IPsec Keying Material in DNS. RFC 4025 (Proposed Standard) (March 2005)","DOI":"10.17487\/rfc4025"},{"key":"15_CR19","doi-asserted-by":"crossref","unstructured":"Richardson, M., Redelmeier, D.H.: Opportunistic Encryption using the Internet Key Exchange (IKE). RFC 4322 (Informational) (December 2005)","DOI":"10.17487\/rfc4322"},{"issue":"12","key":"15_CR20","doi-asserted-by":"publisher","first-page":"2142","DOI":"10.1109\/JPROC.2006.889687","volume":"94","author":"K. Sampigethaya","year":"2006","unstructured":"Sampigethaya, K., Poovendran, R.: A Survey on Mix Networks and Their Secure Applications. Proceedings of the IEEE\u00a094(12), 2142\u20132181 (2006)","journal-title":"Proceedings of the IEEE"},{"key":"15_CR21","unstructured":"Schmeing, C.: FreeS\/WAN Announcement (2004), Published online \n                    \n                      http:\/\/www.freeswan.org\/ending_letter.html"},{"key":"15_CR22","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"55","DOI":"10.1007\/978-3-642-03356-8_4","volume-title":"Advances in Cryptology - CRYPTO 2009","author":"M. Stevens","year":"2009","unstructured":"Stevens, M., Sotirov, A., Appelbaum, J., Lenstra, A., Molnar, D., Osvik, D.A., de Weger, B.: Short Chosen-Prefix Collisions for MD5 and the Creation of a Rogue CA Certificate. In: Halevi, S. (ed.) CRYPTO 2009. LNCS, vol.\u00a05677, pp. 55\u201369. Springer, Heidelberg (2009)"},{"key":"15_CR23","doi-asserted-by":"crossref","unstructured":"Touch, J., Black, D., Wang, Y.: Problem and Applicability Statement for Better-Than-Nothing Security (BTNS). RFC 5387 (Informational) (November 2008)","DOI":"10.17487\/rfc5387"},{"key":"15_CR24","unstructured":"Wendlandt, D., Andersen, D.G., Perrig, A.: Perspectives: Improving SSH-style Host Authentication with Multi-Path Probing. In: Isaacs, R., Zhou, Y. (eds.) USENIX Annual Technical Conference, pp. 321\u2013334. USENIX Association (2008)"},{"key":"15_CR25","doi-asserted-by":"crossref","unstructured":"Williams, N., Richardson, M.: Better-Than-Nothing Security: An Unauthenticated Mode of IPsec. RFC 5386 (Proposed Standard) (November 2008)","DOI":"10.17487\/rfc5386"},{"key":"15_CR26","doi-asserted-by":"crossref","unstructured":"Ylonen, T., Lonvick, C.: The Secure Shell (SSH) Protocol Architecture. RFC 4251 (Proposed Standard) (January 2006)","DOI":"10.17487\/rfc4251"}],"container-title":["Lecture Notes in Computer Science","Computer Security \u2013 ESORICS 2013"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-642-40203-6_15","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,6,2]],"date-time":"2019-06-02T20:45:17Z","timestamp":1559508317000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-642-40203-6_15"}},"subtitle":["Anonymity Infrastructure instead of PKI"],"short-title":[],"issued":{"date-parts":[[2013]]},"ISBN":["9783642402029","9783642402036"],"references-count":26,"URL":"https:\/\/doi.org\/10.1007\/978-3-642-40203-6_15","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2013]]}}}