{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,9,7]],"date-time":"2024-09-07T22:55:27Z","timestamp":1725749727113},"publisher-location":"Berlin, Heidelberg","reference-count":25,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783642410291"},{"type":"electronic","value":"9783642410307"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2013]]},"DOI":"10.1007\/978-3-642-41030-7_25","type":"book-chapter","created":{"date-parts":[[2013,9,20]],"date-time":"2013-09-20T06:32:41Z","timestamp":1379658761000},"page":"342-359","source":"Crossref","is-referenced-by-count":5,"title":["Federated Authorization for Software-as-a-Service Applications"],"prefix":"10.1007","author":[{"given":"Maarten","family":"Decat","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Bert","family":"Lagaisse","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Dimitri","family":"Van Landuyt","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Bruno","family":"Crispo","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Wouter","family":"Joosen","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"25_CR1","unstructured":"Security Assertion Markup Language (SAML) v2.0 (March 2005), \n                    \n                      http:\/\/www.oasis-open.org\/standards#samlv2.0"},{"key":"25_CR2","unstructured":"OpenID Authentication 2.0 - Final (December 2007), \n                    \n                      http:\/\/openid.net\/specs\/openid-authentication-2_0.html"},{"key":"25_CR3","unstructured":"3-D Secure - Wikipedia, the free encyclopedia (July 2013), \n                    \n                      http:\/\/en.wikipedia.org\/wiki\/3-D_Secure"},{"key":"25_CR4","unstructured":"E-Health Information Platforms (E-HIP) (July 2013), \n                    \n                      http:\/\/distrinet.cs.kuleuven.be\/research\/projects\/showProject.do?projectID=E-HIP"},{"key":"25_CR5","unstructured":"Healthcare professional\u2019s collaboration Space (Share4Health) (July 2013), \n                    \n                      http:\/\/distrinet.cs.kuleuven.be\/research\/projects\/showProject.do?projectID=Share4Health"},{"key":"25_CR6","unstructured":"Permission, User Management and Availability for multi-tenant SaaS applications (PUMA) (July 2013), \n                    \n                      http:\/\/distrinet.cs.kuleuven.be\/research\/projects\/showProject.do?projectID=PUMA"},{"key":"25_CR7","doi-asserted-by":"crossref","unstructured":"Alam, M., Zhang, X., Khan, K., Ali, G.: xDAuth: a scalable and lightweight framework for cross domain access control and delegation. In: ACM SACMAT, pp. 31\u201340 (2011)","DOI":"10.1145\/1998441.1998447"},{"key":"25_CR8","doi-asserted-by":"crossref","unstructured":"Ardagna, C.A., De Capitani di Vimercati, S., Neven, G., Paraboschi, S., Preiss, F.-S., Samarati, P., Verdicchio, M.: Enabling privacy-preserving credential-based access control with xacml and saml. In: IEEE CIT, pp. 1090\u20131095 (2010)","DOI":"10.1109\/CIT.2010.199"},{"key":"25_CR9","doi-asserted-by":"crossref","unstructured":"Asghar, M.R., Ion, M., Russello, G., Crispo, B.: ESPOON: Enforcing encrypted security policies in outsourced environments. In: 2011 Sixth International Conference on Availability, Reliability and Security, ARES, pp. 99\u2013108. IEEE (2011)","DOI":"10.1109\/ARES.2011.23"},{"key":"25_CR10","unstructured":"Ashley, P., Hada, S., Karjoth, G., Powers, C., Schunter, M.: Enterprise privacy authorization language (EPAL). Technical report, IBM (2003)"},{"key":"25_CR11","unstructured":"European Commision. Directive 95\/46\/EC. Directive of the European Parliament and of the Council of 24 October 1995 on the protection of individuals with regard to the processing of personal data and on the free movement of such data (1995)"},{"key":"25_CR12","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"18","DOI":"10.1007\/3-540-44569-2_2","volume-title":"Policies for Distributed Systems and Networks","author":"N. Damianou","year":"2001","unstructured":"Damianou, N., Dulay, N., Lupu, E., Sloman, M.: The Ponder policy specification language. In: Sloman, M., Lobo, J., Lupu, E.C. (eds.) POLICY 2001. LNCS, vol.\u00a01995, pp. 18\u201338. Springer, Heidelberg (2001)"},{"key":"25_CR13","doi-asserted-by":"crossref","unstructured":"Decat, M., Lagaisse, B., Joosen, W.: Toward efficient and confidentiality-aware federation of access control policies. In: Proceedings of the 7th Workshop on Middleware for Next Generation Internet Computing. ACM (2012)","DOI":"10.1145\/2405178.2405182"},{"key":"25_CR14","unstructured":"Cole, G., et al.: Service Provisioning Markup Language (SPML) Version 2.0. OASIS Committee Specification (2006)"},{"key":"25_CR15","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"350","DOI":"10.1007\/978-3-642-25821-3_18","volume-title":"Middleware 2011","author":"G. Gheorghe","year":"2011","unstructured":"Gheorghe, G., Crispo, B., Carbone, R., Desmet, L., Joosen, W.: Deploy, adjust and readjust: Supporting dynamic reconfiguration of policy enforcement. In: Kon, F., Kermarrec, A.-M. (eds.) Middleware 2011. LNCS, vol.\u00a07049, pp. 350\u2013369. Springer, Heidelberg (2011)"},{"key":"25_CR16","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"41","DOI":"10.1007\/978-3-642-31540-4_4","volume-title":"Data and Applications Security and Privacy XXVI","author":"X. Jin","year":"2012","unstructured":"Jin, X., Krishnan, R., Sandhu, R.: A Unified Attribute-Based Access Control Model Covering DAC, MAC and RBAC. In: Cuppens-Boulahia, N., Cuppens, F., Garcia-Alfaro, J. (eds.) DBSec 2012. LNCS, vol.\u00a07371, pp. 41\u201355. Springer, Heidelberg (2012)"},{"issue":"2","key":"25_CR17","doi-asserted-by":"publisher","first-page":"232","DOI":"10.1145\/762476.762479","volume":"6","author":"G. Karjoth","year":"2003","unstructured":"Karjoth, G.: Access control with IBM Tivoli access manager. ACM TISSEC\u00a06(2), 232\u2013257 (2003)","journal-title":"ACM TISSEC"},{"key":"25_CR18","unstructured":"Lawrence, K., Kaler, C., Nadalin, A., Monzillo, R., Hallam-Baker, P.: Web Services Security: SOAP Message Security 1.1 (WS-Security) (2006)"},{"key":"25_CR19","doi-asserted-by":"publisher","first-page":"37","DOI":"10.1145\/1655121.1655130","volume-title":"Proceedings of the 2009 ACM Workshop on Secure Web Services, SWS 2009","author":"M. Lischka","year":"2009","unstructured":"Lischka, M., Endo, Y., S\u00e1nchez Cuenca, M.: Deductive policies with XACML. In: Proceedings of the 2009 ACM Workshop on Secure Web Services, SWS 2009, pp. 37\u201344. ACM, New York (2009)"},{"key":"25_CR20","unstructured":"Lockhart, H., Parducci, B., Rissanen, E.: SAML 2.0 Profile of XACML, Version 2.0"},{"issue":"6","key":"25_CR21","first-page":"50","volume":"53","author":"P. Mell","year":"2009","unstructured":"Mell, P., Grance, T.: The NIST definition of cloud computing. National Institute of Standards and Technology\u00a053(6), 50 (2009)","journal-title":"National Institute of Standards and Technology"},{"key":"25_CR22","unstructured":"Moses, T., et al.: eXtensible Access Control Markup Language (XACML) Version 2.0. OASIS Standard, 200502 (2005)"},{"key":"25_CR23","unstructured":"Pearlman, L., Welch, V., Foster, I., Kesselman, C., Tuecke, S.: A community authorization service for group collaboration. In: Proceedings of the Third International Symposium on Policies for Distributed Systems and Networks, pp. 50\u201359. IEEE (2002)"},{"key":"25_CR24","doi-asserted-by":"crossref","unstructured":"Stihler, M., Santin, A.O., Calsavara, A., Marcon, A.L.: Distributed usage control architecture for business coalitions. In: IEEE International Conference on Communications, ICC 2009, pp. 1\u20136. IEEE (2009)","DOI":"10.1109\/ICC.2009.5198940"},{"key":"25_CR25","unstructured":"Wei, Q.: Towards improving the availability and performance of enterprise authorization systems. PhD thesis, University of British Columbia (2009)"}],"container-title":["Lecture Notes in Computer Science","On the Move to Meaningful Internet Systems: OTM 2013 Conferences"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-642-41030-7_25","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,5,17]],"date-time":"2019-05-17T08:18:21Z","timestamp":1558081101000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-642-41030-7_25"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2013]]},"ISBN":["9783642410291","9783642410307"],"references-count":25,"URL":"https:\/\/doi.org\/10.1007\/978-3-642-41030-7_25","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2013]]}}}