{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,8,12]],"date-time":"2025-08-12T21:25:21Z","timestamp":1755033921424},"publisher-location":"Berlin, Heidelberg","reference-count":27,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783540311423"},{"type":"electronic","value":"9783540324379"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2006]]},"DOI":"10.1007\/11610113_28","type":"book-chapter","created":{"date-parts":[[2005,12,14]],"date-time":"2005-12-14T10:23:32Z","timestamp":1134555812000},"page":"307-318","source":"Crossref","is-referenced-by-count":12,"title":["Role-Based Delegation with Negative Authorization"],"prefix":"10.1007","author":[{"given":"Hua","family":"Wang","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jinli","family":"Cao","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"David","family":"Ross","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"issue":"4","key":"28_CR1","doi-asserted-by":"publisher","first-page":"706","DOI":"10.1145\/155183.155225","volume":"15","author":"M. Abadi","year":"1993","unstructured":"Abadi, M., Burrows, M., Lampson, B., Plotkin, G.: A calculus for access control in distributed systems. ACM Trans. Program. Lang. Syst.\u00a015(4), 706\u2013734 (1993)","journal-title":"ACM Trans. Program. Lang. Syst."},{"key":"28_CR2","doi-asserted-by":"crossref","unstructured":"Al-Kahtani, E., Sandhu, R.: Rule-Based RBAC with Negative Authorization. In: 20th Annual Computer Security Applications Conference, Tucson, Arizona, pp. 405\u2013415 (2004)","DOI":"10.1109\/CSAC.2004.32"},{"key":"28_CR3","doi-asserted-by":"publisher","first-page":"211","DOI":"10.1007\/3-540-48749-2_9","volume-title":"Security Internet programming","author":"T. Aura","year":"1999","unstructured":"Aura, T.: Distributed access-rights management with delegation certificates. In: Vitec, J., Jensen, C. (eds.) Security Internet programming, pp. 211\u2013235. Springer, Berlin (1999)"},{"key":"28_CR4","unstructured":"Barka, E., Sandhu, R.: A role-based delegation model and some extensions. In: Proceeings of 16th Annual Computer Security Application Conference, Sheraton New Orleans, December 2000, pp. 168\u2013177 (2000a)"},{"key":"28_CR5","doi-asserted-by":"crossref","unstructured":"Barka, E., Sandhu, R.: Framework for role-based delegation model. In: Proceedings of 23rd National Information Systems Security Conference, Baltimore, October 16-19, pp. 101\u2013114 (2000b) (2000)","DOI":"10.1109\/ACSAC.2000.898870"},{"key":"28_CR6","doi-asserted-by":"crossref","unstructured":"Barkley, J.F., Beznosov, K., Uppal, J.: Supporting Relationships in Access Control Using Role Based Access Control. In: Fourth ACM Workshop on Role Based Access Control, pp. 55\u201365 (1999)","DOI":"10.1145\/319171.319177"},{"key":"28_CR7","doi-asserted-by":"crossref","unstructured":"Bell, D.E., La Padula, L.J.: Secure Computer System: Unified Exposition and Multics Interpretation. Technical report ESD-TR-75-306, The Mitre Corporation, Bedford MA, USA (1976)","DOI":"10.21236\/ADA023588"},{"issue":"1","key":"28_CR8","doi-asserted-by":"publisher","first-page":"145","DOI":"10.1109\/69.567051","volume":"9","author":"E.P. Bertino","year":"1997","unstructured":"Bertino, E.P., Samarati, P., Jajodia, S.: An Extended Authorization Model for Relational Databases. IEEE Transactions On Knowledge and Data Engineering\u00a09(1), 145\u2013167 (1997)","journal-title":"IEEE Transactions On Knowledge and Data Engineering"},{"key":"28_CR9","doi-asserted-by":"crossref","unstructured":"Blaze, M., Feigenbaum, J., Ioannidis, J., Keromytis, A.: The role of trust management in distributed system security. Security Internet Programming. In: Vitec, J., Jensen, C. (eds.), pp. 185\u2013210. Springer, Berlin (1999)","DOI":"10.1007\/3-540-48749-2_8"},{"key":"28_CR10","unstructured":"David, F.F., Dennis, M.G., Nickilyn, L.: An examination of federal and commercial access control policy needs. In: NIST NCSC National Computer Security Conference, Baltimore, MD, pp. 107\u2013116 (1993)"},{"key":"28_CR11","unstructured":"Feinstein, H.L.: Final report: NIST small business innovative research (SBIR) grant: role based access control: phase 1. Technical report. SETA Corporation (1995)"},{"key":"28_CR12","unstructured":"Ferraiolo, D.F., Kuhn, D.R.: Role based access control. In: The proceedings of the 15th National Computer Security Conference, pp. 554\u2013563 (1992)"},{"issue":"4","key":"28_CR13","doi-asserted-by":"publisher","first-page":"265","DOI":"10.1145\/138873.138874","volume":"10","author":"B.W. Lampson","year":"1992","unstructured":"Lampson, B.W., Abadi, M., Burrows, M.L., Wobber, E.: Authentication in distributed systems: theory and practice. ACM Transactions on Computer Systems\u00a010(4), 265\u2013310 (1992)","journal-title":"ACM Transactions on Computer Systems"},{"key":"28_CR14","doi-asserted-by":"crossref","unstructured":"Li, N., Grosof, B.N.: A practically implementation and tractable delegation logic. In: IEEE Symposium on Security and Privacy, pp. 27\u201342 (May 2000)","DOI":"10.2139\/ssrn.290100"},{"key":"28_CR15","doi-asserted-by":"crossref","unstructured":"Sandhu, R.: Rational for the RBAC 96 family of access control models. In: Proceedings of 1st ACM Workshop on Role-based Access Control, pp. 64\u201372 (1997)","DOI":"10.1145\/270152.270167"},{"key":"28_CR16","doi-asserted-by":"crossref","unstructured":"Sandhu, R.: Role activation hierarchies. In: Third ACM Workshop on RoleBased Access Control, Fairfax, Virginia, United States, pp. 33\u201340. ACM Press, New York (1998)","DOI":"10.1145\/286884.286891"},{"key":"28_CR17","volume-title":"Advances in Computers","author":"R. Sandhu","year":"1997","unstructured":"Sandhu, R.: Role-Based Access Control. In: Advances in Computers, vol.\u00a046, Academic Press, London (1997)"},{"issue":"3","key":"28_CR18","doi-asserted-by":"publisher","first-page":"425","DOI":"10.1109\/TKDE.2005.35","volume":"17","author":"H. Wang","year":"2005","unstructured":"Wang, H., Cao, J., Zhang, Y.: A flexible payment scheme and its role based access control. IEEE Transactions on Knowledge and Data Engineering\u00a017(3), 425\u2013436 (2005)","journal-title":"IEEE Transactions on Knowledge and Data Engineering"},{"key":"28_CR19","doi-asserted-by":"crossref","unstructured":"Wang, H., Cao, J., Zhang, Y., Varadharajan, V.: Achieving Secure and Flexible M-Services Through Tickets. In: Benatallah, B., Maamar, Z. (eds.) IEEE Transactions Special issue on M-Services. IEEE Transactions on Systems, Man, and Cybernetics. Part A (IEEE 2003), vol.\u00a033(6), pp. 697\u2013708 (2003)","DOI":"10.1109\/TSMCA.2003.819917"},{"issue":"1","key":"28_CR20","doi-asserted-by":"publisher","first-page":"35","DOI":"10.1023\/B:ISFI.0000015873.35795.5e","volume":"6","author":"H. Wang","year":"2004","unstructured":"Wang, H., Zhang, Y., Cao, J., Kambayahsi, J.: A global ticket-based access scheme for mobile users, special issue on Object-Oriented Client\/Server Internet Environments. Information Systems Frontiers\u00a06(1), 35\u201346 (2004)","journal-title":"Information Systems Frontiers"},{"key":"28_CR21","unstructured":"Wang, H., Cao, J., Zhang, Y.: Formal Authorization Allocation Approaches for Role-Based Access Control Based on Relational Algebra Operations. In: The 3nd International Conference on Web Information Systems Engineering (WISE 2002), Singapore, pp. 301\u2013310 (2002)"},{"key":"28_CR22","unstructured":"Wang, H., Sun, L., Zhang, Y., Cao, J.: Authorization Algorithms for the Mobility of User-Role Relationship. In: Proceedings of the 28th Australasian Computer Science Conference (ACSC 2005), pp. 167\u2013176. Australian Computer Society (2005)"},{"key":"28_CR23","unstructured":"Wang, H., Cao, J., Zhang, Y.: Formal authorization approaches for permission-role assignment using relational algebra operations. In: Proceedings of the 14th Australasian Database Conference (ADC 2003), Adelaide, Australia, vol.\u00a025(1), pp. 125\u2013134 (2003)"},{"key":"28_CR24","unstructured":"Wang, H., Cao, J., Zhang, Y.: A Consumer Anonymity Scalable Payment Scheme with Role Based Access Control. In: Proceedings of the 2nd International Conference on Web Information Systems Engineering (WISE 2001), Kyoto, Japan, pp. 73\u201372 (2001)"},{"key":"28_CR25","doi-asserted-by":"crossref","unstructured":"Yao, W., Moody, K., Bacon, J.: A model of OASIS role-based access control and its support for active security. In: Proceedings of ACM Symposium on Access Control Models and Technologies (SACMAT), Chantilly, VA, pp. 171\u2013181 (2001)","DOI":"10.1145\/373256.373294"},{"key":"28_CR26","doi-asserted-by":"crossref","unstructured":"Zhang, L., Ahn, G., Chu, B.: A Rule-based framework for role-based delegation. In: Proceedings of ACM Symposium on Access Control Models and Technologies (SACMAT 2001), Chantilly, VA, May 3-4, pp. 153\u2013162 (2001)","DOI":"10.1145\/373256.373289"},{"key":"28_CR27","doi-asserted-by":"crossref","unstructured":"Zhang, L., Ahn, G., Chu, B.: A role-based delegation framework for healthcare information systems. In: Proceedings of ACM Symposium on Access Control Models and Technologies (SACMAT 2002), Monterey, CA, June 3-4, pp. 125\u2013134 (2002)","DOI":"10.1145\/507711.507731"}],"container-title":["Lecture Notes in Computer Science","Frontiers of WWW Research and Development - APWeb 2006"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/11610113_28.pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2021,4,27]],"date-time":"2021-04-27T07:07:31Z","timestamp":1619507251000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/11610113_28"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2006]]},"ISBN":["9783540311423","9783540324379"],"references-count":27,"URL":"https:\/\/doi.org\/10.1007\/11610113_28","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2006]]}}}