M. Bellare and P. Rogaway, ``Provably Secure
Session Key Distribution -- the Three Party Case'',
Proceedings of the 27th ACM Symposium on the Theory of
Computing, 1995.
R. Bird, I. Gopal, A. Herzberg, P. Janson,
S. Kutten, R. Molva and M. Yung, ``Systematic Design of a
Family of Attack-Resistant Authentication Protocols'', IEEE
Journal on Selected Areas in Communications, 11, 5, pp.679-693,
June 1993.
S. Blake-Wilson and A. Menezes, ``Security
Proofs for Entity Authentication and Authenticated Key
Transport Protocols Employing Asymmetric Techniques'',
Security Protocols Workshop, 1997.
M. Blum and S. Goldwasser, ``An Efficient
Probabilistic Public-Key Encryption Scheme which Hides All
Partial Information'', Advances in Cryptology - Crypto 84,
pp.289-299, Springer-Verlag, 1985.
G. Lowe, ``Breaking and Fixing the Needham-Schroeder
Public Key Protocol using FDR'', Tools and Algorithms for
the Construction and Analysis of Systems, Springer-Verlag,
1996, pp.147-166.
B. Preneel and P. van Oorschot, ``MDx-MAC
and Building Fast MACs from Hash Functions'', Advances in
Cryptology - Crypto'95, Springer-Verlag, 1995, pp.1-14.
R. Rivest, A. Shamir and L. Adleman, ``A Method
for Obtaining Digital Signatures and Public Key Cryptosystems'',
Communications of the ACM, 21, pp.120-126, 1978.
A. W. Roscoe, ``Modelling and Verifying
Key Exchange Protocols using CSP and FDR'', 8th IEEE Computer
Security Foundations Workshop, pp.98-107, IEEE Press 1995.
P. Syverson and P. van Oorschot, ``On Unifying
Some Cryptographic Protocol Logics'', 1994 IEEE Symposium on
Research in Security and Privacy, pp. 14-28, IEEE Computer Society
Press, 1994.
P. Syverson (Moderator), ``Panel: What is an
Attack on a Cryptographic Protocol?'', 9th IEEE Computer
Security Foundations Workshop, p.188, IEEE Press, 1996.
P. Syverson and C. Meadows, ``Formal Requirements
for Key Distribution Protocols'', Advances in Cryptology -
Eurocrypt'94, Springer-Verlag, 1995, pp.320-331.