{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,8]],"date-time":"2026-05-08T16:11:20Z","timestamp":1778256680868,"version":"3.51.4"},"publisher-location":"Boston, MA","reference-count":57,"publisher":"Springer US","isbn-type":[{"value":"9780387485324","type":"print"},{"value":"9780387485331","type":"electronic"}],"license":[{"start":{"date-parts":[[2008,1,1]],"date-time":"2008-01-01T00:00:00Z","timestamp":1199145600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2008,1,1]],"date-time":"2008-01-01T00:00:00Z","timestamp":1199145600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2008]]},"DOI":"10.1007\/978-0-387-48533-1_1","type":"book-chapter","created":{"date-parts":[[2007,12,2]],"date-time":"2007-12-02T03:10:18Z","timestamp":1196565018000},"page":"1-26","source":"Crossref","is-referenced-by-count":12,"title":["Recent Advances in Access Control"],"prefix":"10.1007","author":[{"given":"S. De Capitani di","family":"Vimercati","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"S.","family":"Foresti","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"P.","family":"Samarati","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"1_CR1","unstructured":"Hacig\u00fcm\u00fcs, H., Iyer, B., Mehrotra, S., Li, C.: Executing SQL over encrypted data in the database-service-provider model. In: Proc. of the ACM SIGMOD 2002, Madison, Wisconsin, USA (2002)"},{"key":"1_CR2","unstructured":"Hacig\u00fcm\u00fcs, H., Iyer, B., Mehrotra, S.: Providing database as a service. In: Proc. of 18th International Conference on Data Engineering, San Jose, California, USA (2002)"},{"key":"1_CR3","unstructured":"Damiani, E., De Capitani di Vimercati, S., Jajodia, S., Paraboschi, S., Samarati, P.: Balancing confidentiality and efficiency in untrusted relational DBMSs. In: Proc. of the 10th ACM Conference on Computer and Communications Security (CCS03), Washington, DC, USA (2003)"},{"key":"1_CR4","unstructured":"Graham, G., Denning, P.: Protection- principles and practice. In: Proc. of the Spring Jt. Computer Conference. Volume 40., Montvale, NJ, USA (1972) 417\u2013429"},{"issue":"8","key":"1_CR5","doi-asserted-by":"publisher","first-page":"461","DOI":"10.1145\/360303.360333","volume":"19","author":"M Harrison","year":"August 1976","unstructured":"Harrison, M., Ruzzo, W., Ullman, J.: Protection in operating systems. Communications of the SCM 19(8) (August 1976) 461\u2013471","journal-title":"Communications of the SCM"},{"issue":"1","key":"1_CR6","doi-asserted-by":"publisher","first-page":"18","DOI":"10.1145\/775265.775268","volume":"8","author":"B.W Lampson","year":"January 1974","unstructured":"Lampson, B.W.: Protection. ACM Operating Systems Review 8(1) (January 1974) 18\u201324","journal-title":"ACM Operating Systems Review"},{"issue":"2","key":"1_CR7","doi-asserted-by":"publisher","first-page":"214","DOI":"10.1145\/383891.383894","volume":"26","author":"S Jajodia","year":"June 2001","unstructured":"Jajodia, S., Samarati, P., Sapino, M., Subrahmanian, V.: Flexible support for multiple access control policies. ACM Transaction on Database Systems 26(2) (June 2001) 214\u2013260","journal-title":"ACM Transaction on Database Systems"},{"key":"1_CR8","volume-title":">Access control policies: Some unanswered questions. Proc. of IEEE Computer Security Foundations Workshop II","author":"T Lunt","year":"1988","unstructured":"Lunt, T.: Access control policies: Some unanswered questions. In: Proc. of IEEE Computer Security Foundations Workshop II, Franconia, New Hampshire (1988)"},{"issue":"11","key":"1_CR9","first-page":"9","volume":"26","author":"R Sandhu","year":"1993","unstructured":"Sandhu, R.: Lattice-based access control models. IEEE Computer 26(11) (1993) 9\u201319","journal-title":"IEEE Computer"},{"key":"1_CR10","volume-title":"Secure computer systems: A mathematical model. Technical Report MTR-2547, Vol 2","author":"D Bell","year":"1973","unstructured":"Bell, D., La Padula, L.: Secure computer systems: A mathematical model. Technical Report MTR-2547, Vol 2, MITRE Corp., Bedford, MA (November 1973)"},{"key":"1_CR11","volume-title":"Secure computer systems: Mathematical foundations. Technical Report MTR-2547, Vol 1","author":"D Bell","year":"1973","unstructured":"Bell, D., La Padula, L.: Secure computer systems: Mathematical foundations. Technical Report MTR-2547, Vol 1, MITRE Corp., Bedford, MA (November 1973)"},{"key":"1_CR12","volume-title":"Secure computer systems: A refinement of the mathematical model. Technical Report MTR-2547, Vol 3","author":"D Bell","year":"1974","unstructured":"Bell, D., La Padula, L.: Secure computer systems: A refinement of the mathematical model. Technical Report MTR-2547, Vol 3, MITRE Corp., Bedford, MA (April 1974)"},{"key":"1_CR13","volume-title":"Secure computer systems: Unified exposition and multics interpretation. Technical Report MTR-2997, Vol 4","author":"D Bell","year":"1975","unstructured":"Bell, D., La Padula, L.: Secure computer systems: Unified exposition and multics interpretation. Technical Report MTR-2997, Vol 4, MITRE Corp., Bedford, MA (July 1975)"},{"key":"1_CR14","volume-title":"Integrity considerations for secure computer systems. MTR-3153 rev","author":"K.J Biba","year":"1977","unstructured":"Biba, K.J.: Integrity considerations for secure computer systems. MTR-3153 rev., MITRE Corp., Vol 1, Bedford, MA (April 1977)"},{"key":"1_CR15","unstructured":"Samarati, P., De Capitani di Vimercati, S.: Access control: Policies, models, and mechanisms. In Focardi, R., Gorrieri, R., eds.: Foundations of Security Analysis and Design. LNCS 2171. Springer-Verlag (2001)"},{"key":"1_CR16","unstructured":"McLean, J.: Security models. In Marciniak, J., ed.: Encyclopedia of Software Engineering. John Wiley & Sons (1994)"},{"key":"1_CR17","unstructured":"Ferraiolo, D., Kuhn, D.: Role-based access control. In: Proc. of the 15th National Computer Security Conference. (1992)"},{"issue":"2","key":"1_CR18","first-page":"38","volume":"29","author":"R Sandhu","year":"1996","unstructured":"Sandhu, R., Coyne, E., Feinstein, H., Youman, C.: Role-based access control models. IEEE Computer 29(2) (1996) 38\u201347","journal-title":"IEEE Computer"},{"key":"1_CR19","unstructured":"Security and trust management (2005) http:\/\/www.ercim.org\/publication\/Ercim_News\/enw63\/."},{"key":"1_CR20","volume-title":"Decentralized trust management. In: Proc. of the 17th Symposium on","author":"M Blaze","year":"1996","unstructured":"Blaze, M., Feigenbaum, J., Lacy, J.: Decentralized trust management. In: Proc. of the 17th Symposium on Security and Privacy, Oakland, California, USA (May 1996)"},{"key":"1_CR21","unstructured":"Blaze, M., Feigenbaum, J., Ioannidis, J., Keromytis, A.: The KeyNote Trust Management System (Version 2). Internet RFC 2704 edn. (1999)"},{"issue":"3","key":"1_CR22","first-page":"241","volume":"10","author":"P Bonatti","year":"2002","unstructured":"Bonatti, P., Samarati, P.: A unified framework for regulating access and information release on the web. Journal of Computer Security 10(3) (2002) 241\u2013272","journal-title":"Journal of Computer Security"},{"key":"1_CR23","volume-title":"Preventing attribute information leakage in automated trust negotiation. In: Proc. of the 12th","author":"K Irwin","year":"2005","unstructured":"Irwin, K., Yu, T.: Preventing attribute information leakage in automated trust negotiation. In: Proc. of the 12th ACM Conference on Computer and Communications Security, Alexandria, VA, USA (2005)"},{"key":"1_CR24","doi-asserted-by":"publisher","first-page":"474","DOI":"10.1145\/1066100.1066103","volume":"52","author":"N Li","year":"2005","unstructured":"Li, N., Mitchell, J., Winsborough, W.: Beyond proof-of-compliance: Security analysis in trust management. Journal of the ACM 52 (2005) 474\u2013514","journal-title":"Journal of the ACM"},{"key":"1_CR25","unstructured":"Ni, J., Li, N., Winsborough, W.: Automated trust negotiation using cryptographic credentials. In: Proc. of the 12th ACM Conference on Computer and Communications Security, Alexandria, VA, USA (2005)"},{"issue":"1","key":"1_CR26","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/605434.605435","volume":"6","author":"T Yu","year":"2003","unstructured":"Yu, T., Winslett, M., Seamons, K.: Supporting structured credentials and sensitive policies trough interoperable strategies for automated trust. ACM Transactions on Information and System Security (TISSEC) 6(1) (February 2003) 1\u201342","journal-title":"ACM Transactions on Information and System Security (TISSEC)"},{"key":"1_CR27","unstructured":"Seamons, K.E., Winsborough, W., Winslett, M.: Internet credential acceptance policies. In: Proc. of the Workshop on Logic Programming for Internet Applications, Leuven, Belgium (July 1997)"},{"key":"1_CR28","volume-title":"Requirements for policy languages for trust negotiation. In: Proc. of the","author":"K.E Seamons","year":"2002","unstructured":"Seamons, K.E., Winslett, M., Yu, T., Smith, B., Child, E., Jacobson, J., Mills, H., Yu, L.: Requirements for policy languages for trust negotiation. In: Proc. of the 3rd International Workshop on Policies for Distributed Systems and Networks (POLICY 2002), Monterey, CA (June 2002)"},{"key":"1_CR29","unstructured":"Winslett, M., Ching, N., Jones, V., Slepchin, I.: Assuring security and privacy for digital library transactions on the web: Client and server security policies. In: Proc. of the ADL \u201997 \u2014 Forum on Research and Tech. Advances in Digital Libraries, Washington, DC (May 1997)"},{"key":"1_CR30","unstructured":"Yu, T., Ma, X., Winslett, M.: An efficient complete strategy for automated trust negotiation over the internet. In: Proc. of the 7th ACM Computer and Communication Security, Athens, Greece (November 2000)"},{"key":"1_CR31","volume-title":"Limiting the disclosure of access control policies during automated trust negotiation. In: Proc. of the Symposium on","author":"K Seamons","year":"2001","unstructured":"Seamons, K., Winslett, M., Yu, T.: Limiting the disclosure of access control policies during automated trust negotiation. In: Proc. of the Symposium on Network and Distributed System Security, San Diego, CA (April 2001)"},{"key":"1_CR32","unstructured":"Yu, T., Winslett, M., Seamons, K.: Interoperable strategies in automated trust negotiation. In: Proc. of the 8th ACM Conference on Computer and Communications Security, Philadelphia, Pennsylvania (November 2001)"},{"key":"1_CR33","unstructured":"Yu, T., Winslett, M.: A unified scheme for resource protection in automated trust negotiation. In: Proc. of the IEEE Symposium on Security and Privacy, Berkeley, California (May 2003)"},{"key":"1_CR34","unstructured":"Ryutov, T., Zhou, L., Neuman, C., Leithead, T., Seamons, K.: Adaptive trust negotiation and access control. In: Proc. of the 10th ACM Symposium on Access Control Models and Technologies, Stockholm, Sweden (June 2005)"},{"key":"1_CR35","unstructured":"Gladman, B., Ellison, C., Bohm, N.: Digital signatures, certificates and electronic commerce. http:\/\/www.clark.net\/pub\/cme\/html\/spki.html."},{"issue":"1","key":"1_CR36","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/504909.504910","volume":"5","author":"P Bonatti","year":"2002","unstructured":"Bonatti, P., De Capitani di Vimercati, S., Samarati, P.: An algebra for composing access control policies. ACM Transactions on Information and System Security 5(1) (February 2002) 1\u201335","journal-title":"ACM Transactions on Information and System Security"},{"issue":"4","key":"1_CR37","first-page":"1","volume":"14","author":"M Abadi","year":"1992","unstructured":"Abadi, M., Lamport, L.: Composing specifications. ACM Transactions on Programming Languages 14(4) (October 1992) 1\u201360","journal-title":"ACM Transactions on Programming Languages"},{"key":"1_CR38","unstructured":"Hosmer, H.: Metapolicies II. In: Proc. of the 15th National Computer Security Conference, Baltimore, MD (October 1992)"},{"key":"1_CR39","doi-asserted-by":"publisher","first-page":"289","DOI":"10.1007\/3-540-48749-2_14","volume":"1603","author":"T Jaeger","year":"2001","unstructured":"Jaeger, T.: Access control in configurable systems. Lecture Notes in Computer Science 1603 (2001) 289\u2013316","journal-title":"Lecture Notes in Computer Science"},{"key":"1_CR40","unstructured":"McLean, J.: The algebra of security. In: Proc. of the 1988 IEEE Computer Society Symposium on Security and Privacy, Oakland, CA, USA (April 1988)"},{"key":"1_CR41","doi-asserted-by":"publisher","DOI":"10.1109\/NSPW.1994.656208","volume-title":"Modeling the multipolicy machine. In: Proc. of the New Security Paradigm Workshop","author":"D Bell","year":"1994","unstructured":"Bell, D.: Modeling the multipolicy machine. In: Proc. of the New Security Paradigm Workshop, Little Compton, Rhode Island, USA (August 1994)"},{"issue":"2","key":"1_CR42","first-page":"101","volume":"17","author":"E. Bertino","year":"1999","unstructured":"Bertino, E., Jajodia, S., Samarati, P.: A flexible authorization mechanism for relational data management systems. ACM Transactions on Information Systems 17(2) (April 1999) 101\u2013140","journal-title":"ACM Transactions on Information Systems"},{"issue":"2","key":"1_CR43","doi-asserted-by":"publisher","first-page":"214","DOI":"10.1145\/383891.383894","volume":"26","author":"S Jajodia","year":"2001","unstructured":"Jajodia, S., Samarati, P., Sapino, M., Subrahmanian, V.: Flexible support for multiple access control policies. ACM Transactions on Database Systems 26(2) (June 2001) 214\u2013260","journal-title":"ACM Transactions on Database Systems"},{"key":"1_CR44","unstructured":"Jajodia, S., Samarati, P., Subrahmanian, V., Bertino, E.: A unified framework for enforcing multiple access control policies. In: Proc. of the 1997 ACM International SIGMOD Conference on Management of Data, Tucson, AZ (May 1997)"},{"key":"1_CR45","unstructured":"Li, N., Feigenbaum, J., Grosof, B.: A logic-based knowledge representation for authorization with delegation. In: Proc. of the 12th IEEE Computer Security Foundations Workshop, Washington, DC, USA (July 1999)"},{"issue":"2,3","key":"1_CR46","first-page":"107","volume":"2","author":"T. Woo","year":"1993","unstructured":"Woo, T., Lam, S.: Authorizations in distributed systems: A new approach. Journal of Computer Security 2(2,3) (1993) 107\u2013136","journal-title":"Journal of Computer Security"},{"issue":"2","key":"1_CR47","doi-asserted-by":"publisher","first-page":"286","DOI":"10.1145\/762476.762481","volume":"6","author":"D Wijesekera","year":"2003","unstructured":"Wijesekera, D., Jajodia, S.: A propositional policy algebra for access control. ACM Transactions on Information and System Security 6(2) (May 2003) 286\u2013325","journal-title":"ACM Transactions on Information and System Security"},{"key":"1_CR48","unstructured":"Damiani, E., De Capitani di Vimercati, S., Foresti, S., Jajodia, S., Paraboschi, S., Samarati, P.: An experimental evaluation of multi-key strategies for data outsourcing. In: Proc. of the 22nd IFIP TC-11 International Information Security Conference (SEC 2007), Sandton, South Africa (May 2007)"},{"key":"1_CR49","unstructured":"Zych, A., Petkovic, M.: Key management method for cryptographically enforced access control. In: Proc. of the 1st Benelux Workshop on Information and System Security, Antwerpen, Belgium (2006)"},{"key":"1_CR50","volume-title":"Controlling access to published data using cryptography. In: Proc. of the 29th","author":"G Miklau","year":"2003","unstructured":"Miklau, G., Suciu, D.: Controlling access to published data using cryptography. In: Proc. of the 29th VLDB Conference, Berlin, Germany (September 2003)"},{"key":"1_CR51","volume-title":"On key assignment for hierarchical access control","author":"J Crampton","year":"2006","unstructured":"Crampton, J., Martin, K., Wild, P.: On key assignment for hierarchical access control. In: In Proc. of the 19th IEEE Computer Security Foundations Workshop (CSFW\u201906), Los Alamitos, CA, USA (2006)"},{"key":"1_CR52","unstructured":"Sandhu, R.: On some cryptographic solutions for access control in a tree hierarchy. In: Proc. of the 1987 Fall Joint Computer Conference on Exploring Technology: Today and Tomorrow, Dallas, Texas, USA (1987)"},{"key":"1_CR53","doi-asserted-by":"publisher","first-page":"411","DOI":"10.1109\/TSE.1980.230489","volume":"6","author":"E Gudes","year":"1980","unstructured":"Gudes, E.: The design of a cryptography based secure file system. IEEE Transactions on Software Engineering 6 (1980) 411\u2013420","journal-title":"IEEE Transactions on Software Engineering"},{"key":"1_CR54","doi-asserted-by":"publisher","first-page":"95","DOI":"10.1016\/0020-0190(88)90099-3","volume":"27","author":"R Sandhu","year":"1988","unstructured":"Sandhu, R.: Cryptographic implementation of a tree hierarchy for access control. Information Processing Letters 27 (1988) 95\u201398","journal-title":"Information Processing Letters"},{"key":"1_CR55","unstructured":"Atallah, M., Frikken, K., Blanton, M.: Dynamic and efficient key management for access hierarchies. In: Proc. of the 12th ACM conference on Computer and Communications Security (CCS05), Alexandria, VA, USA (2005)"},{"key":"1_CR56","unstructured":"Damiani, E., De Capitani di Vimercati, S., Foresti, S., Jajodia, S., Paraboschi, S., Samarati, P.: Selective data encryption in outsourced dynamic environments. In: Proc. of the Second International Workshop on Views On Designing Complex Architectures (VODCA 2006). Electronic Notes in Theoretical Computer Science, Bertinoro, Italy, Elsevier (2006)"},{"key":"1_CR57","unstructured":"Wang, H., Lakshmanan, L.V.S.: Efficient secure query evaluation over encrypted XML databases. In: Proc. of the 32nd VLDB Conference, Seoul, Korea (September 2006)"}],"container-title":["Handbook of Database Security"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-0-387-48533-1_1","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,5,8]],"date-time":"2026-05-08T15:39:30Z","timestamp":1778254770000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-0-387-48533-1_1"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2008]]},"ISBN":["9780387485324","9780387485331"],"references-count":57,"URL":"https:\/\/doi.org\/10.1007\/978-0-387-48533-1_1","relation":{},"subject":[],"published":{"date-parts":[[2008]]}}}