See this document in CiteSeerX!

Countering Abuse of Name-Based Authentication (1994)  (Make Corrections)  (3 citations)
Christoph L. Schuba, Eugene H. Spafford



  Home/Search   Context   Related

 
View or download:
sjsu.edu/faculty/schuba/pub...94029.ps
irdu.nus.sg/security/pape...nameaut.ps
purdue.edu/homes/spaf/techre...9429.ps
Cached:  PS.gz  PS  PDF   Image  Update  Help

From:  sjsu.edu/faculty/s...publications (more)
From:  purdue.edu/coast/coastlibrary
(Enter author homepages)

Rate this article: (best)
  Comment on this article  
(Enter summary)

Abstract: Authentication for access control procedures is usually based on the identity of participating entities. In some communications systems, identities are partially or wholly resolved using hostnames or machine addresses in the underlying protocol suite. Access control lists and revocation lists are often defined on the basis of hostnames, whereby the communication subsystem at runtime utilizes machine addresses. After communications between two machines are established, hosts identify each other... (Update)

Context of citations to this paper:   More

.... security vulnerabilities in the TCP IP protocols and the Berkeley r command programs have been discussed at length in the literature [3, 20, 27]. Nonetheless, programs such as as rlogin remain in widespread use. The consequences of not eliminating these security...

.... computer security problems are provided by cryptography [13] which is especially useful for authentication and secure communications [36]. Virus protection schemes such as that described in [28] are also not IDS under our definition, because they scan static code, not dynamic...

Cited by:   More
Intrusion Detection using Sequences of System Calls - Hofmeyr, Forrest, Somayaji (1998)   (Correct)
Implementing a Secure rlogin Environment: A Case Study of.. - Kim, Orman, O'Malley (1995)   (Correct)

Similar documents (at the sentence level):
37.0%:   Addressing Weaknesses in the Domain Name System Protocol - Schuba, Spafford (1993)   (Correct)

Active bibliography (related documents):   More   All
0.2:   Security Problems in the TCP/IP Protocol Suite - Bellovin (1989)   (Correct)
0.2:   A Simple Active Attack Against TCP - Joncheray (1995)   (Correct)
0.1:   An Intrusion Tolerance Approach for Protecting Network.. - Cheung (1999)   (Correct)

Similar documents based on text:   More   All
0.2:   A Self-Configuring and Self-Administering Name System - Feng (2001)   (Correct)
0.1:   Unknown -   (Correct)
0.1:   Windowed Certificate Revocation - McDaniel, Jamin (2000)   (Correct)

Related documents from co-citation:   More   All
2:   A sense of self for unix processes - Forrest, Hofmeyr et al. - 1996
2:   An Introduction to the Bootstrap (context) - Efron, Tibshirani - 1993
2:   State Transition Analysis: A RuleBased Intrusion Detection System - Ilgun, Kemmerer et al. - 1995

BibTeX entry:   (Update)

Christoph L. Schuba and Eugene H. Spafford. Countering abuse of name-based authentication. Technical Report CSD--TR--94--029, COAST Laboratory, Purdue University, apr 1994. http://citeseer.ist.psu.edu/schuba94countering.html   More

@techreport{ schuba94countering,
    author = "Christoph L. Schuba and Eugene H. Spafford",
    title = "Countering Abuse of Name-Based authentication",
    year = "1994",
    url = "citeseer.ist.psu.edu/schuba94countering.html" }
Citations (may not include all citations):
1529   A Method for Obtaining Digital Signatures and Public Key Cry.. - Rivest, Shamir et al. - 1978
704   Applied Cryptography (context) - Schneier - 1994  ACM
373   UNIX Network Programming (context) - Stevens - 1990  ACM
267   Internetworking with TCP/IP (context) - Comer - 1991  ACM
244   Cryptography and Data Security (context) - Denning - 1982
168   An Improved Algorithm for Computing Logarithms over GF (context) - Pohlig, Hellman - 1978
98   RFC-1321 The MD5 Message-Digest Algorithm (context) - Rivest - 1992
78   Security Problems in the TCP/IP Protocol Suite - Bellovin - 1989  ACM
59   Practical UNIX Security (context) - Garfinkel, Spafford - 1991
37   RFC-1034 Domain Names - Concepts and Facilities (context) - Mockapetris - 1987
36   RFC-1422 Privacy Enhancement for Internet Electronic Mail: P.. (context) - Kent - 1993
28   National Bureau of Standards - Encryption - 1977
27   Using the Domain Name System for System Breakins - Bellovin - 1990
16   There Be Dragons - Bellovin - 1992
7   Addressing Weaknesses in the Domain Name System Protocol - Schuba - 1993
5   Computing Science Technical Report No (context) - Morris, in et al. - 1985
3   Xerox Corporation (context) - Merkle - 1989
2   Auditing the SNA/SNI Environment (context) - Paans, de Lange - 1991  ACM
1   Internet Domain Survey Jan (context) - Lottor - 1994
1   Houghton Mifflin (context) - Tolkien, of - 1965

Documents on the same site (http://www.mathcs.sjsu.edu/faculty/schuba/publications.html):   More
A Reference Model for Firewall Technology - Schuba (1997)   (Correct)
Public Key Certification Secure File Transfer - Christoph Schuba   (Correct)
Classical IP and ARP over ATM - Schuba, Kercheval, Spafford   (Correct)

Online articles have much greater impact   More about CiteSeer.IST   Add search form to your site   Submit documents   Feedback  

CiteSeer.IST - Copyright Penn State and NEC