{"id":"https://openalex.org/W2142937590","doi":"https://doi.org/10.1109/lcn.2010.5735754","title":"An inconvenient truth about tunneled authentications","display_name":"An inconvenient truth about tunneled authentications","publication_year":2010,"publication_date":"2010-10-01","ids":{"openalex":"https://openalex.org/W2142937590","doi":"https://doi.org/10.1109/lcn.2010.5735754","mag":"2142937590"},"language":"en","primary_location":{"id":"doi:10.1109/lcn.2010.5735754","is_oa":false,"landing_page_url":"https://doi.org/10.1109/lcn.2010.5735754","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Local Computer Network Conference","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5058106578","display_name":"Katrin Hoeper","orcid":null},"institutions":[{"id":"https://openalex.org/I1333370159","display_name":"Motorola (United States)","ror":"https://ror.org/01hafxd32","country_code":"US","type":"company","lineage":["https://openalex.org/I1333370159"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Katrin Hoeper","raw_affiliation_strings":["Motorola, Inc., Schaumburg, IL, USA","Motorola Inc., Schaumburg, IL 60196, USA"],"affiliations":[{"raw_affiliation_string":"Motorola, Inc., Schaumburg, IL, USA","institution_ids":["https://openalex.org/I1333370159"]},{"raw_affiliation_string":"Motorola Inc., Schaumburg, IL 60196, USA","institution_ids":["https://openalex.org/I1333370159"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100718544","display_name":"Lidong Chen","orcid":"https://orcid.org/0000-0002-9683-037X"},"institutions":[{"id":"https://openalex.org/I1321296531","display_name":"National Institute of Standards and Technology","ror":"https://ror.org/05xpvk416","country_code":"US","type":"funder","lineage":["https://openalex.org/I1321296531","https://openalex.org/I1343035065"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Lidong Chen","raw_affiliation_strings":["National Institute for Standards and Technology, Gaithersburg, MD, USA","National Institute of Standards and Technology, Gaithersburg, MD 20878,#N#USA"],"affiliations":[{"raw_affiliation_string":"National Institute for Standards and Technology, Gaithersburg, MD, USA","institution_ids":["https://openalex.org/I1321296531"]},{"raw_affiliation_string":"National Institute of Standards and Technology, Gaithersburg, MD 20878,#N#USA","institution_ids":["https://openalex.org/I1321296531"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5058106578"],"corresponding_institution_ids":["https://openalex.org/I1333370159"],"apc_list":null,"apc_paid":null,"fwci":0.7122,"has_fulltext":false,"cited_by_count":6,"citation_normalized_percentile":{"value":0.74526026,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":94},"biblio":{"volume":null,"issue":null,"first_page":"416","last_page":"423"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11504","display_name":"Advanced Authentication Protocols Security","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11504","display_name":"Advanced Authentication Protocols Security","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11800","display_name":"User Authentication and Security Systems","score":0.9994999766349792,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10651","display_name":"IPv6, Mobility, Handover, Networks, Security","score":0.9987999796867371,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/man-in-the-middle-attack","display_name":"Man-in-the-middle attack","score":0.9191527366638184},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.6954646706581116},{"id":"https://openalex.org/keywords/cryptography","display_name":"Cryptography","score":0.6840124130249023},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6734458804130554},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.4370136260986328},{"id":"https://openalex.org/keywords/authentication","display_name":"Authentication (law)","score":0.1850411593914032}],"concepts":[{"id":"https://openalex.org/C196491621","wikidata":"https://www.wikidata.org/wiki/Q554830","display_name":"Man-in-the-middle attack","level":3,"score":0.9191527366638184},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.6954646706581116},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.6840124130249023},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6734458804130554},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.4370136260986328},{"id":"https://openalex.org/C148417208","wikidata":"https://www.wikidata.org/wiki/Q4825882","display_name":"Authentication (law)","level":2,"score":0.1850411593914032}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/lcn.2010.5735754","is_oa":false,"landing_page_url":"https://doi.org/10.1109/lcn.2010.5735754","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Local Computer Network Conference","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions","score":0.46000000834465027}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":19,"referenced_works":["https://openalex.org/W1513711610","https://openalex.org/W1527348310","https://openalex.org/W1668877502","https://openalex.org/W1995922408","https://openalex.org/W2121670402","https://openalex.org/W2132147947","https://openalex.org/W2133432179","https://openalex.org/W2188120238","https://openalex.org/W2266218113","https://openalex.org/W2291494244","https://openalex.org/W3096030990","https://openalex.org/W4210531213","https://openalex.org/W4253159079","https://openalex.org/W6631429565","https://openalex.org/W6637354655","https://openalex.org/W6692854719","https://openalex.org/W6696748210","https://openalex.org/W6784562277","https://openalex.org/W6834851235"],"related_works":["https://openalex.org/W853046806","https://openalex.org/W2152125702","https://openalex.org/W1536059956","https://openalex.org/W2148690567","https://openalex.org/W4389115301","https://openalex.org/W3125165999","https://openalex.org/W4240774184","https://openalex.org/W2801930800","https://openalex.org/W2930089461","https://openalex.org/W2048968742"],"abstract_inverted_index":{"In":[0,42],"recent":[1],"years,":[2],"it":[3],"has":[4],"been":[5,28],"a":[6,17],"common":[7],"practice":[8],"to":[9,38,67],"execute":[10],"client":[11],"authentications":[12,26,63],"for":[13],"network":[14],"access":[15],"inside":[16],"protective":[18,56],"tunnel.":[19],"Man-in-the-middle":[20],"(MitM)":[21],"attacks":[22,69],"on":[23,31],"such":[24,86],"tunneled":[25,62],"have":[27],"discovered":[29],"early":[30],"and":[32,76,89],"cryptographic":[33,74],"bindings":[34,75],"are":[35,64],"widely":[36,83],"adopted":[37],"mitigate":[39],"these":[40,54],"attacks.":[41],"this":[43],"paper,":[44],"we":[45],"shake":[46],"the":[47,71],"false":[48],"sense":[49],"of":[50,73],"security":[51],"given":[52],"by":[53,58],"so-called":[55],"tunnels":[57],"demonstrating":[59],"that":[60],"most":[61],"still":[65],"susceptible":[66],"MitM":[68],"despite":[70],"use":[72],"other":[77],"proposed":[78],"countermeasures.":[79],"Our":[80],"results":[81],"affect":[82],"deployed":[84],"protocols,":[85],"as":[87],"EAP-FAST":[88],"PEAP.":[90]},"counts_by_year":[{"year":2020,"cited_by_count":1},{"year":2018,"cited_by_count":1},{"year":2016,"cited_by_count":1},{"year":2015,"cited_by_count":1},{"year":2013,"cited_by_count":1},{"year":2012,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
