{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,2,13]],"date-time":"2025-02-13T05:05:15Z","timestamp":1739423115102,"version":"3.37.0"},"publisher-location":"Berlin, Heidelberg","reference-count":54,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783642041631"},{"type":"electronic","value":"9783642041648"}],"license":[{"start":{"date-parts":[[2009,1,1]],"date-time":"2009-01-01T00:00:00Z","timestamp":1230768000000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2009]]},"DOI":"10.1007\/978-3-642-04164-8_3","type":"book-chapter","created":{"date-parts":[[2009,9,14]],"date-time":"2009-09-14T16:10:48Z","timestamp":1252944648000},"page":"21-42","source":"Crossref","is-referenced-by-count":1,"title":["Component-Based Security Policy Design with Colored Petri Nets"],"prefix":"10.1007","author":[{"given":"Hejiao","family":"Huang","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"H\u00e9l\u00e8ne","family":"Kirchner","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"issue":"2","key":"3_CR1","doi-asserted-by":"publisher","first-page":"153","DOI":"10.1016\/S0304-3975(01)00368-1","volume":"286","author":"E. Astesiano","year":"2002","unstructured":"Astesiano, E., Bidoit, M., Kirchner, H., Krieg-Br\u00fcckner, B., Mosses, P.D., Sannella, D., Tarlecki, A.: Casl: the common algebraic specification language. Theor. Comput. Sci.\u00a0286(2), 153\u2013196 (2002)","journal-title":"Theor. Comput. Sci."},{"key":"3_CR2","doi-asserted-by":"crossref","unstructured":"Barker, S., Fern\u00e1ndez, M.: Term rewriting for access control. In: DBSec, pp. 179\u2013193 (2006)","DOI":"10.1007\/11805588_13"},{"key":"3_CR3","doi-asserted-by":"crossref","unstructured":"Bauer, L., Ligatti, J., Walker, D.: Composing security policies with polymer. In: PLDI, pp. 305\u2013314 (2005)","DOI":"10.1145\/1065010.1065047"},{"issue":"2\/3","key":"3_CR4","first-page":"229","volume":"ii. 4","author":"D. Bell","year":"1996","unstructured":"Bell, D., LaPadula, L.: Secure computer systems: A mathematical model. Journal of Computer Security\u00a0ii. 4(2\/3), 229\u2013263 (1996)","journal-title":"Journal of Computer Security"},{"issue":"3","key":"3_CR5","doi-asserted-by":"publisher","first-page":"231","DOI":"10.1145\/293910.293151","volume":"23","author":"E. Bertino","year":"1998","unstructured":"Bertino, E., Bettini, C., Ferrari, E., Samarati, P.: An access control model supporting periodicity constraints and temporal reasoning. ACM Trans. Database Syst.\u00a023(3), 231\u2013285 (1998)","journal-title":"ACM Trans. Database Syst."},{"key":"3_CR6","doi-asserted-by":"crossref","unstructured":"Bertolissi, C., Fern\u00e1ndez, M.: An algebraic-functional framework for distributed access control. In: International Conference on Risks and Security of Internet and Systems (CRISIS 2008), Tozeur, Tunisia. Proceedings IEEE Xplorer to appear (2008)","DOI":"10.1109\/CRISIS.2008.4757458"},{"key":"3_CR7","volume-title":"Proceedings of PPDP 2008","author":"C. Bertolissi","year":"2008","unstructured":"Bertolissi, C., Fern\u00e1ndez, M.: A rewriting framework for the composition of access control policies. In: Proceedings of PPDP 2008, Valencia. ACM Press, New York (2008)"},{"key":"3_CR8","unstructured":"Biba, K.: Integrity considerations for secure computer systems. Technical Report TR-3153, Mitre, Bedford, MA (1975)"},{"issue":"1","key":"3_CR9","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/504909.504910","volume":"5","author":"P. Bonatti","year":"2002","unstructured":"Bonatti, P., De Capitani di Vimercati, S., Samarati, P.: An algebra for composing access control policies. ACM Trans. Inf. Syst. Secur.\u00a05(1), 1\u201335 (2002)","journal-title":"ACM Trans. Inf. Syst. Secur."},{"key":"3_CR10","volume-title":"Proceedings IEEE International Workshop on Policies for Distributed Systems and Networks, (POLICY)","author":"P. Bonatti","year":"2005","unstructured":"Bonatti, P., Olmedilla, D.: Driving and monitoring provisional trust negotiation with metapolicies. In: Proceedings IEEE International Workshop on Policies for Distributed Systems and Networks (POLICY). IEEE Society, Los Alamitos (2005)"},{"issue":"3","key":"3_CR11","doi-asserted-by":"publisher","first-page":"241","DOI":"10.3233\/JCS-2002-10303","volume":"10","author":"P. Bonatti","year":"2002","unstructured":"Bonatti, P., Samarati, P.: A uniform framework for regulating service access and information release on the web. Journal of Computer Security\u00a010(3), 241\u2013272 (2002)","journal-title":"Journal of Computer Security"},{"key":"3_CR12","doi-asserted-by":"crossref","unstructured":"Brewer, D.F.C., Nash, M.J.: The chinese wall security policy. In: Proc. IEEE Symposium on Security and Privacy, pp. 206\u2013214 (1989)","DOI":"10.1109\/SECPRI.1989.36295"},{"key":"3_CR13","doi-asserted-by":"publisher","first-page":"12","DOI":"10.1145\/1314436.1314439","volume-title":"FMSE 2007: Proceedings of the 2007 ACM workshop on Formal methods in security engineering","author":"G. Bruns","year":"2007","unstructured":"Bruns, G., Dantas, D., Huth, M.: A simple and expressive semantic framework for policy composition in access control. In: FMSE 2007: Proceedings of the 2007 ACM workshop on Formal methods in security engineering, pp. 12\u201321. ACM Press, New York (2007)"},{"key":"3_CR14","first-page":"163","volume-title":"21st IEEE Computer Security Foundations Symposium (CSF)","author":"G. Bruns","year":"2008","unstructured":"Bruns, G., Huth, M.: Access-control policies via belnap logic: Effective and efficient composition and analysis. In: 21st IEEE Computer Security Foundations Symposium (CSF), pp. 163\u2013176. IEEE Computer Society Press, Los Alamitos (2008)"},{"key":"3_CR15","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/3-540-36532-X_1","volume-title":"Software Security \u2013 Theories and Systems","author":"R. Campbell","year":"2003","unstructured":"Campbell, R., Al-Muhtadi, J., Naldurg, P., Sampemane, G., Mickunas, M.D.: Towards security and privacy for pervasive computing. In: Okada, M., Pierce, B.C., Scedrov, A., Tokuda, H., Yonezawa, A. (eds.) ISSS 2002. LNCS, vol.\u00a02609, pp. 1\u201315. Springer, Heidelberg (2003)"},{"key":"3_CR16","doi-asserted-by":"crossref","unstructured":"Cholvy, L., Cuppens, F.: Analyzing consistency of security policies. In: IEEE Symposium on Security and Privacy, pp. 103\u2013112 (1997)","DOI":"10.1109\/SECPRI.1997.601324"},{"key":"3_CR17","unstructured":"Choppy, C., Petrucci, L.: Towards a methodology for modeling with Petri nets. In: Proc. Workshop on Practical Use of Coloured Petri Nets (CPN 2004), pp. 39\u201356 (2004)"},{"key":"3_CR18","series-title":"Electronic Notes in Theoretical Computer Science","volume-title":"Security and Rewriting Techniques, 3rd International Workshop SecRet 2008","author":"H. Cirstea","year":"2008","unstructured":"Cirstea, H., Moreau, P., Santana de Oliveira, A.: Rewrite based specification of access control policies. In: Dougherty, D., Escobar, S. (eds.) Security and Rewriting Techniques, 3rd International Workshop SecRet 2008. Electronic Notes in Theoretical Computer Science. Elsevier, Amsterdam (2008)"},{"key":"3_CR19","first-page":"186","volume-title":"CSFW","author":"F. Cuppens","year":"2005","unstructured":"Cuppens, F., Cuppens-Boulahia, N., Sans, T.: A security model with non-atomic actions and deadlines. In: CSFW, pp. 186\u2013196. IEEE Society, Los Alamitos (2005)"},{"key":"3_CR20","volume-title":"FMSE 2007: Proceedings of the 2007 ACM workshop on Formal methods in security engineering","author":"A.S. Oliveira de","year":"2007","unstructured":"de Oliveira, A.S., Wang, E.K., Kirchner, C., Kirchner, H.: Weaving rewrite-based access control policies. In: FMSE 2007: Proceedings of the 2007 ACM workshop on Formal methods in security engineering. ACM, New York (2007)"},{"issue":"5","key":"3_CR21","doi-asserted-by":"publisher","first-page":"1099","DOI":"10.1109\/TKDE.2003.1232267","volume":"15","author":"Y. Deng","year":"2003","unstructured":"Deng, Y., Wang, J.C., Tsai, J., Beznosov, K.: An approach for modeling and analysis of security system architectures. IEEE Transactions on Knowledge and Data Engineering\u00a015(5), 1099\u20131119 (2003)","journal-title":"IEEE Transactions on Knowledge and Data Engineering"},{"key":"3_CR22","series-title":"Lecture Notes in Artificial Intelligence","doi-asserted-by":"publisher","first-page":"632","DOI":"10.1007\/11814771_51","volume-title":"Automated Reasoning","author":"D.J. Dougherty","year":"2006","unstructured":"Dougherty, D.J., Fisler, K., Krishnamurthi, S.: Specifying and reasoning about dynamic access-control policies. In: Furbach, U., Shankar, N. (eds.) IJCAR 2006. LNCS (LNAI), vol.\u00a04130, pp. 632\u2013646. Springer, Heidelberg (2006)"},{"key":"3_CR23","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"578","DOI":"10.1007\/978-3-540-74835-9_38","volume-title":"Computer Security \u2013 ESORICS 2007","author":"D.J. Dougherty","year":"2007","unstructured":"Dougherty, D.J., Kirchner, C., Kirchner, H., Santana de Oliveira, A.: Modular access control via strategic rewriting. In: Biskup, J., L\u00f3pez, J. (eds.) ESORICS 2007. LNCS, vol.\u00a04734, pp. 578\u2013593. Springer, Heidelberg (2007)"},{"key":"3_CR24","first-page":"3","volume-title":"Fourth International Symposium on Information Assurance and Security (IAS 2008)","author":"L. Habib","year":"2008","unstructured":"Habib, L., Jaume, M., Morisset, C.: A formal comparison of the bell & lapadula and rbac models. In: Fourth International Symposium on Information Assurance and Security (IAS 2008), pp. 3\u20138. IEEE Computer Society Press, Los Alamitos (2008)"},{"key":"3_CR25","doi-asserted-by":"crossref","unstructured":"Halpern, J.Y., Weissman, V.: Using first-order logic to reason about policies. In: CSFW, pp. 187\u2013201 (2003)","DOI":"10.1109\/CSFW.2003.1212713"},{"issue":"8","key":"3_CR26","doi-asserted-by":"publisher","first-page":"461","DOI":"10.1145\/360303.360333","volume":"19","author":"M.A. Harrison","year":"1976","unstructured":"Harrison, M.A., Ruzzo, W.L., Ullman, J.D.: Protection in operating systems. Commun. ACM\u00a019(8), 461\u2013471 (1976)","journal-title":"Commun. ACM"},{"key":"3_CR27","unstructured":"Huang, H.J.: Enhancing the Property-Preserving Petri Net Process Algebra for Component-based System Design (with Application to Designing Multi-agent Systems and Manufacturing Systems). PhD thesis, Department of Computer Science, City University of Hong Kong (2004)"},{"key":"3_CR28","unstructured":"Huang, H.J., Kirchner, H.: Modular security policy design based on extended Petri nets. Technical Report inria-00396924, INRIA (2009), http:\/\/hal.inria.fr\/inria-00396924\/fr\/"},{"issue":"2","key":"3_CR29","doi-asserted-by":"publisher","first-page":"214","DOI":"10.1145\/383891.383894","volume":"26","author":"S. Jajodia","year":"2001","unstructured":"Jajodia, S., Samarati, P., Sapino, M.L., Subrahmanian, V.S.: Flexible support for multiple access control policies. ACM Trans. Database Syst.\u00a026(2), 214\u2013260 (2001)","journal-title":"ACM Trans. Database Syst."},{"key":"3_CR30","series-title":"Lecture Notes in Artificial Intelligence","doi-asserted-by":"publisher","first-page":"458","DOI":"10.1007\/11893004_59","volume-title":"Knowledge-Based Intelligent Information and Engineering Systems","author":"B. Jarvis","year":"2006","unstructured":"Jarvis, B., Jain, L.: Trust in LORA: Towards a formal definition of trust in BDI agents. In: Gabrys, B., Howlett, R.J., Jain, L.C. (eds.) KES 2006. LNCS (LNAI), vol.\u00a04252, pp. 458\u2013463. Springer, Heidelberg (2006)"},{"key":"3_CR31","unstructured":"Jaume, M., Morisset, C.: Towards a formal specification of access control. In: Degano, P., Kusters, R., Vigano, L., Zdancewic, S. (eds.) Proceedings of the Joint Workshop on Foundations of Computer Security and Automated Reasoning for Security Protocol Analysis FCS-ARSPA 2006, pp. 213\u2013232 (2006)"},{"key":"3_CR32","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-60794-3","volume-title":"Coloured Petri Nets: Basic Concepts, Analysis Methods and Practical Use","author":"K. Jensen","year":"1997","unstructured":"Jensen, K.: Coloured Petri Nets: Basic Concepts, Analysis Methods and Practical Use, vol.\u00a01. Springer, Berlin (1997)"},{"key":"3_CR33","unstructured":"Juszczyszyn, K.: Verifying enterprise\u2019s mandatory access control policies with coloured Petri nets. In: Proceedings of the 12th IEEE International Workshops on Enabling Technologies: Infrastructure for Collaborative Enterprises (2003)"},{"key":"3_CR34","first-page":"120","volume-title":"Proceedings IEEE 4th International Workshop on Policies for Distributed Systems and Networks, (POLICY)","author":"A. Kalam","year":"2003","unstructured":"Kalam, A., Baida, R., Balbiani, P., Benferhat, S., Cuppens, F., Deswarte, Y., Miege, A., Saurel, C., Trouessin, G.: Organization based access control. In: Proceedings IEEE 4th International Workshop on Policies for Distributed Systems and Networks (POLICY), pp. 120\u2013131. IEEE Society, Los Alamitos (2003)"},{"key":"3_CR35","volume-title":"Security and Rewriting Techniques, 3rd International Workshop Secret 2008, Electronic Notes in Theoretical Computer Science","author":"C. Kirchner","year":"2008","unstructured":"Kirchner, C., Kirchner, H., Santana de Oliveira, A.: Analysis of rewrite-based access control policies. In: Dougherty, D., Escobar, S. (eds.) Security and Rewriting Techniques, 3rd International Workshop Secret 2008, Electronic Notes in Theoretical Computer Science. Elsevier, Amsterdam (2008)"},{"key":"3_CR36","doi-asserted-by":"crossref","unstructured":"Knorr, K.: Dynamic access control through Petri net workflows. In: Proceedings of 16th Annual Conference on Computer Security Applications, pp. 159\u2013167 (2000)","DOI":"10.1109\/ACSAC.2000.898869"},{"key":"3_CR37","doi-asserted-by":"crossref","unstructured":"Leahu, I., Tiplea, F.: The confluence property for Petri nets and its applications. In: Proceedings of the 8th International Symposium on Symbolic and Numeric Algorithms for Scientific Computing (2006)","DOI":"10.1109\/SYNASC.2006.71"},{"key":"3_CR38","doi-asserted-by":"publisher","first-page":"45","DOI":"10.1145\/1180337.1180342","volume-title":"FMSE","author":"A.J. Lee","year":"2006","unstructured":"Lee, A.J., Boyer, J.P., Olson, L., Gunter, C.A.: Defeasible security policy composition for web services. In: Winslett, M., Gordon, A.D., Sands, D. (eds.) FMSE, pp. 45\u201354. ACM Press, New York (2006)"},{"key":"3_CR39","doi-asserted-by":"crossref","unstructured":"Li, N., Mitchell, J.C.: Datalog with constraints: A foundation for trust management languages. In: PADL, pp. 58\u201373 (2003)","DOI":"10.1007\/3-540-36388-2_6"},{"key":"3_CR40","unstructured":"Mak, W.: Verifying Property Preservation for Component-based Software Systems (A Petri-net Based Methodology). PhD thesis, Department of Computer Science, City University of Hong Kong (2001)"},{"key":"3_CR41","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"367","DOI":"10.1007\/3-540-44988-4_21","volume-title":"Application and Theory of Petri Nets 2000","author":"K. Mortensen","year":"2000","unstructured":"Mortensen, K.: Automatic code generation method based on coloured Petri net models applied on an access control system. In: Nielsen, M., Simpson, D. (eds.) ICATPN 2000. LNCS, vol.\u00a01825, pp. 367\u2013386. Springer, Heidelberg (2000)"},{"key":"3_CR42","unstructured":"Moses, T.: Extensible access control markup language (XACML) version 2.0. Technical report, OASIS (February 2005)"},{"key":"3_CR43","doi-asserted-by":"crossref","unstructured":"Mosses, P.D.: Component-based description of programming languages. In: Visions of Computer Science, Electronic Proceedings, pp. 275\u2013286. BCS (2008)","DOI":"10.14236\/ewic\/VOCS2008.23"},{"issue":"4","key":"3_CR44","doi-asserted-by":"publisher","first-page":"541","DOI":"10.1109\/5.24143","volume":"77","author":"T. Murata","year":"1985","unstructured":"Murata, T.: Petri nets: Properties, analysis, and applications. Proceedings of IEEE\u00a077(4), 541\u2013580 (1985)","journal-title":"Proceedings of IEEE"},{"key":"3_CR45","unstructured":"Santana de Oliveira, A.: R\u00e9\u00e9criture et modularit\u00e9 pour les politiques de s\u00e9curit\u00e9. PhD thesis, UHP Nancy 1 (2008)"},{"key":"3_CR46","doi-asserted-by":"crossref","unstructured":"Shafiq, B., Masood, A., Joshi, J., Ghafoor, A.: A role-based access control policy verification framework for real-time systems. In: Proceedings of the 10th IEEE International Workshop on Object-Oriented Real-Time Dependable Systems (2005)","DOI":"10.1109\/WORDS.2005.11"},{"issue":"2","key":"3_CR47","doi-asserted-by":"publisher","first-page":"38","DOI":"10.1109\/2.485845","volume":"29","author":"R. Shandu","year":"1996","unstructured":"Shandu, R., Coyne, E., Feinstein, H., Youman, C.: Role-based access control models. IEEE Computer\u00a029(2), 38\u201347 (1996)","journal-title":"IEEE Computer"},{"key":"3_CR48","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"250","DOI":"10.1007\/3-540-45541-8_9","volume-title":"Unifying Petri Nets","author":"M.-O. Stehr","year":"2001","unstructured":"Stehr, M.-O., Meseguer, J., Olveczky, P.C.: Rewriting logic as a unifying framework for Petri nets. In: Ehrig, H., Juh\u00e1s, G., Padberg, J., Rozenberg, G. (eds.) APN 2001. LNCS, vol.\u00a02128, pp. 250\u2013303. Springer, Heidelberg (2001)"},{"issue":"4","key":"3_CR49","first-page":"305","volume":"34","author":"F. Tiplea","year":"1988","unstructured":"Tiplea, F., Jucan, T., Masalagiu, C.: Term rewriting systems and Petri nets. Analele Stiintifice ale Universitatii Al. I. Cuza\u00a034(4), 305\u2013317 (1988)","journal-title":"Analele Stiintifice ale Universitatii Al. I. Cuza"},{"key":"3_CR50","doi-asserted-by":"publisher","first-page":"160","DOI":"10.1145\/1133058.1133081","volume-title":"SACMAT","author":"M.C. Tschantz","year":"2006","unstructured":"Tschantz, M.C., Krishnamurthi, S.: Towards reasonability properties for access-control policy languages. In: Ferraiolo, D.F., Ray, I. (eds.) SACMAT, pp. 160\u2013169. ACM Press, New York (2006)"},{"issue":"3","key":"3_CR51","doi-asserted-by":"crossref","first-page":"257","DOI":"10.3233\/FUN-2001-46305","volume":"46","author":"R. Verma","year":"2001","unstructured":"Verma, R., Rusinowitch, M., Lugiez, D.: Algorithms and reductions for rewriting problems. Fundamental Informatics\u00a046(3), 257\u2013276 (2001)","journal-title":"Fundamental Informatics"},{"issue":"2","key":"3_CR52","doi-asserted-by":"publisher","first-page":"286","DOI":"10.1145\/762476.762481","volume":"6","author":"D. Wijesekera","year":"2003","unstructured":"Wijesekera, D., Jajodia, S.: A propositional policy algebra for access control. ACM Trans. Inf. Syst. Secur.\u00a06(2), 286\u2013325 (2003)","journal-title":"ACM Trans. Inf. Syst. Secur."},{"key":"3_CR53","doi-asserted-by":"crossref","unstructured":"Zhang, Z., Hong, F., Liao, J.: Modeling chinese wall policy using colored Petri nets. In: Proceedings of the 6th IEEE International Conference on Computer and Information Technology (2006)","DOI":"10.1109\/CIT.2006.123"},{"key":"3_CR54","doi-asserted-by":"crossref","unstructured":"Zhang, Z., Hong, F., Xiao, H.: Verification of strict integrity policy via Petri nets. In: Proceedings of the International Conference on Systems and Networks Communication (2006)","DOI":"10.1109\/ICSNC.2006.76"}],"container-title":["Lecture Notes in Computer Science","Semantics and Algebraic Specification"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-642-04164-8_3","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,2,12]],"date-time":"2025-02-12T04:11:41Z","timestamp":1739333501000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-642-04164-8_3"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2009]]},"ISBN":["9783642041631","9783642041648"],"references-count":54,"URL":"https:\/\/doi.org\/10.1007\/978-3-642-04164-8_3","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2009]]}}}