{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,3,26]],"date-time":"2025-03-26T18:32:44Z","timestamp":1743013964414,"version":"3.40.3"},"publisher-location":"Cham","reference-count":22,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783319308050"},{"type":"electronic","value":"9783319308067"}],"license":[{"start":{"date-parts":[[2016,1,1]],"date-time":"2016-01-01T00:00:00Z","timestamp":1451606400000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2016]]},"DOI":"10.1007\/978-3-319-30806-7_16","type":"book-chapter","created":{"date-parts":[[2016,3,28]],"date-time":"2016-03-28T07:24:01Z","timestamp":1459149841000},"page":"251-259","source":"Crossref","is-referenced-by-count":0,"title":["Idea: Supporting Policy-Based Access Control on Database Systems"],"prefix":"10.1007","author":[{"given":"Jasper","family":"Bogaerts","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Bert","family":"Lagaisse","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Wouter","family":"Joosen","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"16_CR1","unstructured":"Oracle Virtual Private Database (VPD). \n                    http:\/\/docs.oracle.com\/cd\/B28359_01\/network.111\/b28531\/vpd.htm\n                    \n                  . (Accessed 02 September 2015)"},{"key":"16_CR2","unstructured":"Axiomatics. Data Access Filter (ADAF). \n                    http:\/\/www.axiomatics.com\/solutions\/products\/authorization-for-databases\/197-axiomatics-data-access-filter-adaf.html\n                    \n                  . (Accessed 2 October 2015)"},{"issue":"1","key":"16_CR3","doi-asserted-by":"publisher","first-page":"2","DOI":"10.1109\/TDSC.2005.9","volume":"2","author":"E Bertino","year":"2005","unstructured":"Bertino, E., Sandhu, R.: Database security-concepts, approaches, and challenges. IEEE Trans. Dependable Secure Comput. 2(1), 2\u201319 (2005)","journal-title":"IEEE Trans. Dependable Secure Comput."},{"key":"16_CR4","doi-asserted-by":"crossref","unstructured":"Bogaerts, J., Decat, M., Lagaisse, B., Joosen, W.: Control, entity-based access: supporting more expressive access control policies. In: Proceedings of the 31st Annual Computer Security Applications Conference (2015)","DOI":"10.1145\/2818000.2818009"},{"key":"16_CR5","doi-asserted-by":"crossref","unstructured":"Carminati, B., Ferrari, E., Cao, J., Tan, K.L.: A framework to enforce access control over data streams. In: ACM TISSEC (2010)","DOI":"10.1145\/1805974.1805984"},{"key":"16_CR6","doi-asserted-by":"crossref","unstructured":"Cook, W.R., Rai, S., Safe query objects: statically typed objects as remotely executable queries. In: 27th International Conference on Software Engineering, ICSE, Proceedings, pp. 97\u2013106. IEEE (2005)","DOI":"10.1145\/1062455.1062488"},{"key":"16_CR7","unstructured":"De Win, B., Piessens, F., Joosen, W., Verhanneman, T.: On the importance of the separation-of-concerns principle in secure software engineering. In: Workshop on the Application of Engineering Principles to System Security Design (2002)"},{"key":"16_CR8","doi-asserted-by":"crossref","unstructured":"Decat, M., Bogaerts, J., Lagaisse, B., Joosen, W.: Amusa: middleware for efficient access control management of multi-tenant SaaS applications. In: Proceedings of the 30th Annual ACM Symposium on Applied Computing. ACM (2015)","DOI":"10.1145\/2695664.2695708"},{"key":"16_CR9","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"crossref","first-page":"378","DOI":"10.1007\/978-3-319-13841-1_21","volume-title":"Information Systems Security","author":"R Gay","year":"2014","unstructured":"Gay, R., Hu, J., Mantel, H.: CliSeAu: securing distributed java programs by cooperative dynamic enforcement. In: Prakash, A., Shyamasundar, R. (eds.) ICISS 2014. LNCS, vol. 8880, pp. 378\u2013398. Springer, Heidelberg (2014)"},{"key":"16_CR10","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"35","DOI":"10.1007\/978-3-540-78731-0_3","volume-title":"The Internet of Things","author":"E Grummt","year":"2008","unstructured":"Grummt, E., M\u00fcller, M.: Fine-grained access control for EPC information services. In: Floerkemeier, C., Langheinrich, M., Fleisch, E., Mattern, F., Sarma, S.E. (eds.) IOT 2008. LNCS, vol. 4952, pp. 35\u201349. Springer, Heidelberg (2008)"},{"key":"16_CR11","doi-asserted-by":"crossref","unstructured":"Hu, V., Ferraiolo, D., Kuhn, R., Schnitzer, A., Sandlin, K., Miller, R., Scarfone, K.: Guide to Attribute Based Access Control (ABAC) Definition and Considerations. NIST Special Publication (2014)","DOI":"10.6028\/NIST.SP.800-162"},{"key":"16_CR12","unstructured":"Mell, P., Grance, T.: The NIST definition of cloud computing. In: NIST (2009)"},{"key":"16_CR13","unstructured":"Moeys, J., Decat, M.: Simple Tree-structured Attribute-based Policy Language (STAPL). \n                    https:\/\/github.com\/stapl-dsl\n                    \n                  . (Accessed 2 October 2015)"},{"key":"16_CR14","unstructured":"OASIS. eXtensible Access Control Markup Language (XACML) Standard v3.0 (2013). \n                    http:\/\/docs.oasis-open.org\/xacml\/3.0\/xacml-3.0-core-spec-os-en.pdf"},{"key":"16_CR15","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"17","DOI":"10.1007\/978-3-642-03007-9_2","volume-title":"Data and Applications Security XXIII","author":"LE Olson","year":"2009","unstructured":"Olson, L.E., Gunter, C.A., Cook, W.R., Winslett, M.: Implementing reflective access control in SQL. In: Gudes, E., Vaidya, J. (eds.) Data and Applications Security XXIII. LNCS, vol. 5645, pp. 17\u201332. Springer, Heidelberg (2009)"},{"issue":"2","key":"16_CR16","first-page":"1","volume":"5","author":"L Opyrchal","year":"2011","unstructured":"Opyrchal, L., Cooper, J., Poyar, R., Lenahan, B., Zeinner, D.: Bouncer: policy-based fine grained access control in large databases. Int. J. Secur. Appl. 5(2), 1\u201316 (2011)","journal-title":"Int. J. Secur. Appl."},{"issue":"9","key":"16_CR17","doi-asserted-by":"publisher","first-page":"39","DOI":"10.1145\/1151030.1151053","volume":"49","author":"A Pretschner","year":"2006","unstructured":"Pretschner, A., Hilty, M., Basin, D.: Distributed usage control. Commun. ACM 49(9), 39\u201344 (2006)","journal-title":"Commun. ACM"},{"key":"16_CR18","doi-asserted-by":"crossref","unstructured":"Rizvi, S., Mendelzon, A., Sudarshan, S., Roy, P.: Extending query rewriting techniques for fine-grained access control. In: SIGMOD Conference on Management of data. ACM (2004)","DOI":"10.1145\/1007568.1007631"},{"key":"16_CR19","doi-asserted-by":"crossref","unstructured":"Roichman, A., Gudes, E.: Fine-grained access control to web databases. In: Symposium on Access Control Models and Technologies. ACM (2007)","DOI":"10.1145\/1266840.1266846"},{"key":"16_CR20","doi-asserted-by":"crossref","first-page":"137","DOI":"10.1007\/3-540-45608-2_3","volume-title":"Foundations of Security Analysis and Design","author":"Pierangela Samarati","year":"2001","unstructured":"Samarati, P., Vimercati, S., Control, A.: Policies, models, and mechanisms. In: Foundations of Security Analysis and Design, pp. 137\u2013196 (2001)"},{"key":"16_CR21","doi-asserted-by":"crossref","unstructured":"Turkmen, F., Crispo, B.: Performance evaluation of XACML PDP implementations. In: Workshop on Secure Web Services. ACM (2008)","DOI":"10.1145\/1456492.1456499"},{"key":"16_CR22","doi-asserted-by":"crossref","unstructured":"Vollbrecht, J., Calhoun, P., Farrell, S., Gommans, L., Gross, G., de Bruijn, B., de Laat, C., Holdrege, M., Spence, D.: RFC 2904: AAA Authorization Framework, August 2000","DOI":"10.17487\/rfc2904"}],"container-title":["Lecture Notes in Computer Science","Engineering Secure Software and Systems"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-319-30806-7_16","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,6,1]],"date-time":"2019-06-01T18:10:43Z","timestamp":1559412643000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-319-30806-7_16"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2016]]},"ISBN":["9783319308050","9783319308067"],"references-count":22,"URL":"https:\/\/doi.org\/10.1007\/978-3-319-30806-7_16","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2016]]}}}