{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,9,9]],"date-time":"2024-09-09T14:12:39Z","timestamp":1725891159447},"publisher-location":"Berlin, Heidelberg","reference-count":27,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783540857341"},{"type":"electronic","value":"9783540857358"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"DOI":"10.1007\/978-3-540-85735-8_5","type":"book-chapter","created":{"date-parts":[[2008,8,22]],"date-time":"2008-08-22T12:47:03Z","timestamp":1219409223000},"page":"38-47","source":"Crossref","is-referenced-by-count":7,"title":["Patterns and Pattern Diagrams for Access Control"],"prefix":"10.1007","author":[{"given":"Eduardo B.","family":"Fernandez","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"G\u00fcnther","family":"Pernul","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Maria M.","family":"Larrondo-Petrie","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"5_CR1","doi-asserted-by":"crossref","unstructured":"Fernandez, E.B., Larrondo-Petrie, M.M., Sorgente, T., VanHilst, M.: A methodology to develop secure systems using patterns. In: Mouratidis, H., Giorgini, P. (eds.) Integrating security and software engineering: Advances and future vision, pp. 107\u2013126. IDEA Press (2006)","DOI":"10.4018\/978-1-59904-147-6.ch005"},{"key":"5_CR2","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"48","DOI":"10.1007\/11767138_5","volume-title":"Advanced Information Systems Engineering","author":"H. Mouratidis","year":"2006","unstructured":"Mouratidis, H., Jurjens, J., Fox, J.: Towards a Comprehensive Framework for Secure Systems Development. In: Dubois, E., Pohl, K. (eds.) CAiSE 2006. LNCS, vol.\u00a04001, pp. 48\u201362. Springer, Heidelberg (2006)"},{"key":"5_CR3","unstructured":"Yoshioka, N.: A development method based on security patterns. Presentation, NII, Tokyo (2006)"},{"key":"5_CR4","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"crossref","first-page":"225","DOI":"10.1007\/978-3-540-31970-2_18","volume-title":"Databases in Networked Information Systems","author":"S. Capitani di Vimercati De","year":"2005","unstructured":"De Capitani di Vimercati, S., Samarati, P., Jajodia, S.: Policies, models, and languages for access control. In: Bhalla, S. (ed.) DNIS 2005. LNCS, vol.\u00a03433, pp. 225\u2013237. Springer, Heidelberg (2005)"},{"issue":"5","key":"5_CR5","doi-asserted-by":"publisher","first-page":"397","DOI":"10.1002\/spe.513","volume":"33","author":"S. Capitani di Vimercati De","year":"2003","unstructured":"De Capitani di Vimercati, S., Paraboschi, S., Samarati, P.: Access control: principles and solutions. Software - Practice and Experience\u00a033(5), 397\u2013421 (2003)","journal-title":"Software - Practice and Experience"},{"key":"5_CR6","volume-title":"Computer Security","author":"D. Gollmann","year":"2006","unstructured":"Gollmann, D.: Computer Security. John Wiley & Sons, New York (2006)"},{"key":"5_CR7","volume-title":"Secure Computing: Threats and Safeguards","author":"R.C. Summers","year":"1997","unstructured":"Summers, R.C.: Secure Computing: Threats and Safeguards. McGraw-Hill, New York (1997)"},{"issue":"8","key":"5_CR8","doi-asserted-by":"publisher","first-page":"461","DOI":"10.1145\/360303.360333","volume":"19","author":"M. Harrison","year":"1976","unstructured":"Harrison, M., Ruzzo, W., Ullman, J.: Protection in Operating Systems. Communications of the ACM\u00a019(8), 461\u2013471 (1976)","journal-title":"Communications of the ACM"},{"issue":"2","key":"5_CR9","doi-asserted-by":"crossref","first-page":"38","DOI":"10.1109\/2.485845","volume":"29","author":"R. Sandhu","year":"1996","unstructured":"Sandhu, R., Coyne, E.J., Feinstein, H.L., Youman, C.E.: Role-based access control models. IEEE Computer\u00a029(2), 38\u201347 (1996)","journal-title":"IEEE Computer"},{"issue":"1","key":"5_CR10","doi-asserted-by":"publisher","first-page":"105","DOI":"10.1145\/300830.300839","volume":"2","author":"R. Sandhu","year":"1999","unstructured":"Sandhu, R., Bhamidipati, V., Munawer, G.: The ARBAC97 model for role-based administration of roles. ACM Transactions on Information and System Security\u00a02(1), 105\u2013135 (1999)","journal-title":"ACM Transactions on Information and System Security"},{"key":"5_CR11","first-page":"50","volume-title":"Proc. of the 14th Annual Computer Security Applications Conference","author":"D. Thomsen","year":"1998","unstructured":"Thomsen, D., O\u2019Brien, R.C., Bogle, J.: Role Based Access Control framework for network enterprises. In: Proc. of the 14th Annual Computer Security Applications Conference, pp. 50\u201358. IEEE Press, New York (1998)"},{"key":"5_CR12","volume-title":"Research Directions in Data and Applications Security XVIII, Proc. of the 18th. Annual IFIP WG 11.3 Working Conference on Data and Applications Security","author":"T. Priebe","year":"2004","unstructured":"Priebe, T., Fernandez, E.B., Mehlau, J.I., Pernul, G.: A pattern system for access control. In: Farkas, C., Samarati, P. (eds.) Research Directions in Data and Applications Security XVIII, Proc. of the 18th. Annual IFIP WG 11.3 Working Conference on Data and Applications Security. Springer, New York (2004)"},{"key":"5_CR13","first-page":"137","volume-title":"Proc. of the 17th Annual Computer Security Applications Conference, ACSAC","author":"R. Chandramouli","year":"2001","unstructured":"Chandramouli, R.: A Framework for Multiple Authorization Types in a Healthcare Application System. In: Proc. of the 17th Annual Computer Security Applications Conference, ACSAC, pp. 137\u2013148. IEEE Press, New York (2001)"},{"key":"5_CR14","doi-asserted-by":"crossref","unstructured":"Zhang, L., Ahn, G.J., Chu, B.T.: A role-based delegation framework for healthcare systems. In: Proc. of the 8th ACM Symposium on Access Control Models and Technologies, SACMAT 2002, pp. 125\u2013134 (2003)","DOI":"10.1145\/507729.507731"},{"key":"5_CR15","doi-asserted-by":"crossref","unstructured":"Thomas, R.K.: Team-Based Access Control (TMAC): A primitive for applying role-based access controls in collaborative environments. In: Proc. of the 2nd ACM Workshop on Role-based access control, RBAC 1997, pp. 13\u201319 (1997)","DOI":"10.1145\/266741.266748"},{"key":"5_CR16","doi-asserted-by":"crossref","unstructured":"Barkley, J., Beznosov, K., Uppal, J.: Supporting relationships in access control using Role Based Access Control. In: Proc. of ACM Role-Based Access Control Workshop, RBAC 1999, pp. 55\u201365 (1999)","DOI":"10.1145\/319171.319177"},{"key":"5_CR17","volume-title":"Security Patterns: Integrating security and systems engineering","author":"M. Schumacher","year":"2006","unstructured":"Schumacher, M., Fernandez, E.B., Hybertson, D., Buschmann, F., Sommerlad, P.: Security Patterns: Integrating security and systems engineering. John Wiley & Sons, New York (2006)"},{"key":"5_CR18","volume-title":"Pattern-Oriented Software Architecture Volume 1: A System of Patterns","author":"F. Buschmann","year":"1996","unstructured":"Buschmann, F., Meunier, R., Rohnert, H., Sommerlad, P., Stal, M.: Pattern-Oriented Software Architecture Volume 1: A System of Patterns. John Wiley & Sons, New York (1996)"},{"key":"5_CR19","volume-title":"Design Patterns: Elements of Reusable Object-Oriented Software","author":"E. Gamma","year":"1994","unstructured":"Gamma, E., Helm, R., Johnson, R., Vlissides, J.: Design Patterns: Elements of Reusable Object-Oriented Software. Addison-Wesley, Boston (1994)"},{"key":"5_CR20","doi-asserted-by":"crossref","unstructured":"Fernandez, E.B., Summers, R.C., Coleman, C.B.: An authorization model for a shared data base. In: Proc. of the 1975 ACM SIGMOD International Conference, pp. 23\u201331 (1975)","DOI":"10.1145\/500080.500084"},{"key":"5_CR21","unstructured":"Fernandez, E.B., Pan, R.: A pattern language for security models. In: Proc. of the 8th Pattern Languages of Programs Conference, PLOP 2001, pp. 11\u201315 (2001), http:\/\/jerry.cs.uiuc.edu\/~plop\/plop2001\/accepted_submissions\/PLoP2001\/ebfernandezandrpan0\/PLoP2001_ebfernandezandrpan0_1.pdf"},{"key":"5_CR22","volume-title":"Database Security and Integrity (Systems Programming Series)","author":"E.B. Fernandez","year":"1981","unstructured":"Fernandez, E.B., Summers, R.C., Wood, C.: Database Security and Integrity (Systems Programming Series). Addison-Wesley, Reading (1981)"},{"key":"5_CR23","doi-asserted-by":"crossref","unstructured":"Fernandez, E.B., Pernul, G.: Patterns for Session-Based Access Control. In: Proc. of the Conference on Pattern Languages of Programs, PLoP 2006 (2006)","DOI":"10.1145\/1415472.1415482"},{"key":"5_CR24","doi-asserted-by":"crossref","unstructured":"Delessy, N., Fernandez, E.B., Larrondo-Petrie, M.M.: A pattern language for identity management. In: Proceedings of the 2nd IEEE International Multiconference on Computing in the Global Information Technology, ICCGI 2007 (2007)","DOI":"10.1109\/ICCGI.2007.5"},{"key":"5_CR25","unstructured":"Koch, M., Parisi-Presicce, F.: Access Control Policy Specification in UML. In: Proc. of Critical Systems Development with UML, satellite workshop of UML 2002. TUM-I0208, pp. 63\u201378 (2002)"},{"key":"5_CR26","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"183","DOI":"10.1007\/3-540-45393-8_14","volume-title":"Conceptual Modeling - ER 2000","author":"E.B. Fernandez","year":"2000","unstructured":"Fernandez, E.B., Yuan, X.: Semantic analysis pattern. In: Laender, A.H.F., Liddle, S.W., Storey, V.C. (eds.) ER 2000. LNCS, vol.\u00a01920, pp. 183\u2013195. Springer, Heidelberg (2000)"},{"key":"5_CR27","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"342","DOI":"10.1007\/978-3-540-78849-2_35","volume-title":"Progress in WWW Research and Development","author":"E.B. Fernandez","year":"2008","unstructured":"Fernandez, E.B., Washizaki, H., Yoshioka, N., Kubo, A., Fukazawa, Y.: Classifying security patterns. In: Zhang, Y., Yu, G., Bertino, E., Xu, G. (eds.) APWeb 2008. LNCS, vol.\u00a04976, pp. 342\u2013347. Springer, Heidelberg (2008)"}],"container-title":["Lecture Notes in Computer Science","Trust, Privacy and Security in Digital Business"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-540-85735-8_5.pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2020,11,24]],"date-time":"2020-11-24T02:34:22Z","timestamp":1606185262000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-540-85735-8_5"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[null]]},"ISBN":["9783540857341","9783540857358"],"references-count":27,"URL":"https:\/\/doi.org\/10.1007\/978-3-540-85735-8_5","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[]}}