{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,26]],"date-time":"2026-02-26T00:22:58Z","timestamp":1772065378038,"version":"3.50.1"},"reference-count":59,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"5","license":[{"start":{"date-parts":[[2018,5,1]],"date-time":"2018-05-01T00:00:00Z","timestamp":1525132800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"}],"funder":[{"DOI":"10.13039\/501100000038","name":"Natural Sciences and Engineering Research Council of Canada","doi-asserted-by":"publisher","id":[{"id":"10.13039\/501100000038","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100000038","name":"Ericsson Canada under CRD","doi-asserted-by":"publisher","award":["XC0907"],"award-info":[{"award-number":["XC0907"]}],"id":[{"id":"10.13039\/501100000038","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans.Inform.Forensic Secur."],"published-print":{"date-parts":[[2018,5]]},"DOI":"10.1109\/tifs.2017.2779444","type":"journal-article","created":{"date-parts":[[2017,12,4]],"date-time":"2017-12-04T22:22:25Z","timestamp":1512426145000},"page":"1185-1199","source":"Crossref","is-referenced-by-count":27,"title":["User-Level Runtime Security Auditing for the Cloud"],"prefix":"10.1109","volume":"13","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-6501-4214","authenticated-orcid":false,"given":"Suryadipta","family":"Majumdar","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Taous","family":"Madi","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yushun","family":"Wang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yosr","family":"Jarraya","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Makan","family":"Pourzandi","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Lingyu","family":"Wang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Mourad","family":"Debbabi","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1109\/SERVICES.2012.12"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1145\/2664243.2664274"},{"key":"ref33","article-title":"Attribute based access control and implementation in infrastructure as a service cloud","author":"jin","year":"2014"},{"key":"ref32","first-page":"6","article-title":"Inheritance properties of role hierarchies","author":"jansen","year":"1998","journal-title":"Proc NISSC"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1007\/s10207-013-0205-x"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.6028\/NIST.SP.800-53"},{"key":"ref37","year":"2014","journal-title":"OpenStack in Numbers&#x2014;The Real Stats"},{"key":"ref36","year":"2016","journal-title":"OpenStack Docs Audit Middleware"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1007\/978-1-4471-4129-7"},{"key":"ref34","first-page":"65","article-title":"Sugar: A CSP to SAT translator based on order encoding","author":"tamura","year":"2008","journal-title":"Proc 2nd Int CSP Solver Competition"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1145\/1456396.1456397"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1109\/ICACT.2008.4494089"},{"key":"ref29","year":"2005"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1007\/978-1-4614-3296-8_1"},{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/MIC.2012.14"},{"key":"ref20","author":"jin","year":"2017","journal-title":"Attribute Based Access Control"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-25645-0_14"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1145\/2295136.2295150"},{"key":"ref24","year":"2016","journal-title":"Security Assertion Markup Language (SAML)"},{"key":"ref23","author":"foundation","year":"2016","journal-title":"OpenID The Internet Identity Layer"},{"key":"ref26","first-page":"298","article-title":"Security analysis of the SAML single sign-on browser\/artifact profile","author":"gro\u00df","year":"2003","journal-title":"Proc ACSAC"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2012.30"},{"key":"ref50","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2016.2646913"},{"key":"ref51","doi-asserted-by":"publisher","DOI":"10.1145\/1062455.1062502"},{"key":"ref59","article-title":"Security at scale: Logging in AWS","year":"2013"},{"key":"ref58","doi-asserted-by":"crossref","first-page":"955","DOI":"10.1007\/s11859-007-0039-3","article-title":"Resolution for conflicts of inter-operation in multi-domain environment","volume":"12","author":"zhengding","year":"2007","journal-title":"Wuhan Univ J Natural Sciences"},{"key":"ref57","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2012.01.010"},{"key":"ref56","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2016.2646639"},{"key":"ref55","doi-asserted-by":"publisher","DOI":"10.1109\/TCC.2014.2361527"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2013.2277471"},{"key":"ref53","doi-asserted-by":"publisher","DOI":"10.1145\/2595222"},{"key":"ref52","doi-asserted-by":"publisher","DOI":"10.1109\/COMPSAC.2010.20"},{"key":"ref10","year":"2015","journal-title":"OpenStack Congress"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1145\/2818000.2818034"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1109\/TrustCom.2013.195"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-45744-4_3"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1145\/501978.501980"},{"key":"ref14","article-title":"Guide to attribute based access control (ABAC) definition and considerations (draft)","volume":"800","author":"hu","year":"2013","journal-title":"NIST Special Pub"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-11698-3_5"},{"key":"ref16","year":"2017","journal-title":"Amazon Virtual Private Cloud"},{"key":"ref17","year":"2017","journal-title":"Microsoft Azure Virtual Network"},{"key":"ref18","year":"2017","journal-title":"Google Cloud Platform"},{"key":"ref19","year":"2017","journal-title":"VMWare VCloud Director"},{"key":"ref4","year":"2016","journal-title":"OpenStack User Survey"},{"key":"ref3","year":"2016","journal-title":"CSA STAR Program and Open Certification Framework in 2016 and Beyond"},{"key":"ref6","year":"2012"},{"key":"ref5","year":"2014","journal-title":"Cloud Control Matrix CCM v3 0 1"},{"key":"ref8","doi-asserted-by":"crossref","first-page":"195","DOI":"10.1145\/2857705.2857721","article-title":"Auditing security compliance of the virtualized infrastructure in the cloud: Application to OpenStack","author":"madi","year":"2016","journal-title":"Proc of CODASPY"},{"key":"ref7","year":"2015","journal-title":"OpenStack Open Source Cloud Computing Software"},{"key":"ref49","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2016.2549002"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/CloudCom.2015.80"},{"key":"ref46","first-page":"598","article-title":"Towards a security SLA-based cloud monitoring service","author":"petcu","year":"2014","journal-title":"Proc of CLOSER"},{"key":"ref45","first-page":"99","article-title":"Real time network policy checking using header space analysis","author":"kazemian","year":"2013","journal-title":"Proc NSDI"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1109\/ChinaGrid.2013.13"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1109\/TC.2011.245"},{"key":"ref42","article-title":"Safeguarding the cloud with IBM security solutions","year":"2013"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-14977-6_2"},{"key":"ref44","first-page":"15","article-title":"VeriFlow: Verifying network-wide invariants in real time","author":"khurshid","year":"2013","journal-title":"Proc NSDI"},{"key":"ref43","article-title":"Security audit compliance for cloud computing","author":"doelitzscher","year":"2014"}],"container-title":["IEEE Transactions on Information Forensics and Security"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/10206\/8272400\/08125709.pdf?arnumber=8125709","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,8,9]],"date-time":"2022-08-09T22:14:35Z","timestamp":1660083275000},"score":1,"resource":{"primary":{"URL":"http:\/\/ieeexplore.ieee.org\/document\/8125709\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018,5]]},"references-count":59,"journal-issue":{"issue":"5"},"URL":"https:\/\/doi.org\/10.1109\/tifs.2017.2779444","relation":{},"ISSN":["1556-6013","1556-6021"],"issn-type":[{"value":"1556-6013","type":"print"},{"value":"1556-6021","type":"electronic"}],"subject":[],"published":{"date-parts":[[2018,5]]}}}