IBM Skip to main content
  Home     Products & services     Support & downloads     My account  
  Select a country  
Journals Home  
  Systems Journal  
  ·  Current Issue  
  ·  Recent Issues  
  ·  Papers in Progress  
  ·  Search/Index  
  ·  Orders  
  ·  Description  
  ·  Author's Guide  
Journal of Research
and Development
  Staff  
  Contact Us  
  Related link:  
     IBM Security  
IBM Systems Journal  
Volume 40, Number 3, 2001
End-to-End Security
 Table of contents: arrowHTML arrowPDF arrowASCII   This article: arrowHTML arrowPDF arrowASCII arrowCopyright info
   

An architecture for the Internet Key Exchange Protocol - References

by P.-C. Cheng

Cited references and notes

  1. P.-C. Cheng, J. A. Garay, A. Herzberg, and H. Krawczyk, “A Security Architecture for the Internet Protocol,” IBM Systems Journal 37, No. 1, 42–60 (1998).
  2. D. Harkins and D. Carrel, The Internet Key Exchange (IKE), The Internet Society, RFC 2409 (November 1998).
  3. IETF IP Security Protocol Working Group, http://www.ietf.org/html.charters/ipsec-charter.html.
  4. S. Kent and R. Atkinson, Security Architecture for the Internet Protocol, The Internet Society, RFC 2401 (November 1998).
  5. A. J. Menezes, P. C. van Oorschot, and S. A. Vanstone, Handbook of Applied Cryptography, CRC Press, New York (1996).
  6. W. Diffie and M. E. Hellman, “New Directions in Cryptography,” IEEE Transactions on Information Theory IT-22, No. 6, 644–654 (November 1976).
  7. D. Maughan, M. Schneider, M. Schertler, and J. Turner, Internet Security Association and Key Management Protocol (ISAKMP), The Internet Society, RFC 2408 (November 1998).
  8. D. Piper, The Internet IP Security Domain of Interpretation for ISAKMP, The Internet Society, RFC 2407 (November 1998).
  9. J. Postel, User Datagram Protocol, The Internet Society, RFC 768 (August 1980).
  10. W. Diffie, P. van Oorschot, and M. Wiener, “Authentication and Authenticated Key Exchanges,” Designs, Codes and Cryptography 2, 107–125 (1992).
  11. B. Schneier, Applied Cryptography, 2nd Edition, John Wiley & Sons, Inc., New York (1996).
  12. R. Housley, W. Ford, T. Polk, and D. Solo, Internet X.509 Public Key Infrastructure Certificate and CRL Profile, The Internet Society, RFC 2459 (January 1999).
  13. IETF Public-Key Infrastructure (X.509) Working Group. http://www.ietf.org/html.charters/pkix-charter.html.
  14. H. Krawczyk, “SKEME: A Versatile Secure Key Exchange Mechanism for Internet,” The Proceedings of the 1996 Internet Society Symposium on Network and Distributed Systems Security (February 1996), pp. 114–127.
  15. R. Bird, I. Gopal, A. Herzberg, P. A. Janson, S. Kutten, R. Molva, and M. Yung, “The KryptoKnight Family of Light-Weight Protocols for Authentication and Key Distribution,” IEEE/ACM Transactions on Networking 3, No. 1, 31–41 (February 1995).
  16. R. Bird, I. Gopal, A. Herzberg, P. A. Janson, S. Kutten, R. Molva, and M. Yung, “Systematic Design of a Family of Attack-Resistant Authentication Protocols,” IEEE Journal on Selected Areas in Communications 11, No. 5, 679–693 (June 1993).
  17. P. Cheng, J. A. Garay, A. Herzberg, and H. Krawczyk, Modular Key Management Protocol, IETF <draft-cheng-modular-ikmp-00.txt> (November 1994).
  18. P.-C. Cheng, J. A. Garay, A. Herzberg, and H. Krawczyk, “Design and Implementation of Modular Key Management Protocol and IP Secure Tunnel on AIX,” The Proceedings of the 5th USENIX UNIX Security Symposium (June 1995), pp. 41–54.
  19. S. Kent and R. Atkinson, IP Encapsulating Security Payload (ESP), The Internet Society, RFC 2406 (November 1998).
  20. S. Kent and R. Atkinson, IP Authentication Header, The Internet Society, RFC 2402 (November 1998).
  21. C. Madson and R. Glenn, The Use of HMAC-SHA-1-96 Within ESP and AH, IETF, RFC 2404 (November 1998).
  22. C. Madson and R. Glenn, The Use of HMAC-MD5-96 Within ESP and AH, IETF, RFC 2403 (November 1998).
  23. P. Karn and W. A. Simpson, The Photuris Session Key Management Protocol, IETF <draft-ipsec-photuris-02.txt> (July 1995).
  24. H. Krawczyk, M. Bellare, and R. Canetti, “Keyed Hash Functions and Message Authentication,” Proceedings of Crypto'96, http://www.research.ibm.com/security/keyed-md5.html (1996).
  25. M. Bellare, R. Canetti, and H. Krawczyk, “Pseudorandom Functions Revisited: The Cascade Construction and Its Concrete Security,” 37th Annual Symposium on the Foundations of Computer Science, IEEE (1996).
  26. Internet Protocol, The Internet Society, RFC 791 (September 1981).
  27. P. Mockapetris, Domain Names—Concepts and Facilities, The Internet Society, RFC 1034 (November 1987).
  28. T. T. Pummill and B. Manning, Variable Length Subnet Table for IPv4, The Internet Society, RFC 1878 (December 1995).
  29. S. E. Deering and R. M. Hinden, Internet Protocol, Version 6 (IPv6) Specification, The Internet Society, RFC 2460 (December 1998).
  30. Data Communication Networks Directory, International Telecommunication Union Recommendations X.500–X.521 (1989).
  31. T. Berners-Lee, R. T. Fielding, and L. Masinter, Uniform Resource Identifiers (URI): Generic Syntax, The Internet Society, RFC 2396 (August 1998).
  32. Transmission Control Protocol, The Internet Society, RFC 793 (September 1981).
  33. J. Postel and J. Reynolds, TELNET Protocol Specification, The Internet Society, RFC 854 (May 1983).
  34. Trusted Computer System Evaluation Criteria, DoD 5200.28-STD, U.S. Department of Defense (August 1983).
  35. H. K. Orman, The OAKLEY Key Determination Protocol, The Internet Society, RFC 2412 (November 1998).
  36. H. Krawczyk, M. Bellare, and R. Canetti, HMAC: Keyed-Hashing for Message Authentication, The Internet Society, RFC 2104 (February 1997).
  37. A. J. Menezes, P. C. van Oorschot, and S. A. Vanstone, op. cit., Chapter 11.
  38. A. J. Menezes, P. C. van Oorschot, and S. A. Vanstone, op. cit., Chapter 8.
  39. RSA Security Inc., BSAFE Library Web Site, http://www.rsasecurity.com/products/bsafe/.
  40. IBM PowerPC Technical Library, http://www.chips.ibm.com/techlib/products/powerpc.
  41. R. L. Rivest, A. Shamir, and L. M. Adleman, “A Method for Obtaining Digital Signatures and Public-Key Cryptosystems,” Communications of the ACM 21, No. 2, 120–126 (February 1978).
  42. A. J. Menezes, P. C. van Oorschot, and S. A. Vanstone, op. cit., pages 433–438.
  43. Digital Signature Standard (DSS), National Institute of Standards and Technology, FIPS PUB 186 (May 19, 1994).
  44. A. J. Menezes, P. C. van Oorschot, and S. A. Vanstone, op. cit., pages 451–454.