{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,29]],"date-time":"2026-03-29T15:26:25Z","timestamp":1774797985101,"version":"3.50.1"},"publisher-location":"New York, NY, USA","reference-count":24,"publisher":"ACM","license":[{"start":{"date-parts":[[2015,12,7]],"date-time":"2015-12-07T00:00:00Z","timestamp":1449446400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"name":"B-CCENTRE"},{"name":"iMinds,"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2015,12,7]]},"DOI":"10.1145\/2818000.2818009","type":"proceedings-article","created":{"date-parts":[[2015,12,11]],"date-time":"2015-12-11T17:06:08Z","timestamp":1449853568000},"page":"291-300","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":24,"title":["Entity-Based Access Control"],"prefix":"10.1145","author":[{"given":"Jasper","family":"Bogaerts","sequence":"first","affiliation":[{"name":"iMinds-DistriNet KU Leuven, 3001 Leuven, Belgium"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Maarten","family":"Decat","sequence":"additional","affiliation":[{"name":"iMinds-DistriNet KU Leuven, 3001 Leuven, Belgium"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Bert","family":"Lagaisse","sequence":"additional","affiliation":[{"name":"iMinds-DistriNet KU Leuven, 3001 Leuven, Belgium"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Wouter","family":"Joosen","sequence":"additional","affiliation":[{"name":"iMinds-DistriNet KU Leuven, 3001 Leuven, Belgium"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2015,12,7]]},"reference":[{"key":"e_1_3_2_1_1_1","volume-title":"http:\/\/www.rubydoc.info\/gems\/cancan\/","author":"Bates R.","year":"2015","unstructured":"R. Bates . Ruby CanCan . http:\/\/www.rubydoc.info\/gems\/cancan\/ , 2015 . {Online; accessed 4-February-2015}. R. Bates. Ruby CanCan. http:\/\/www.rubydoc.info\/gems\/cancan\/, 2015. {Online; accessed 4-February-2015}."},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1007\/11915072_80"},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.1145\/320434.320440"},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1145\/2613087.2613094"},{"key":"e_1_3_2_1_5_1","first-page":"1","volume-title":"Workshop on the Application of Engineering Principles to System Security Design","author":"Win B. De","year":"2002","unstructured":"B. De Win , F. Piessens , W. Joosen , and T. Verhanneman . On the importance of the separation-of-concerns principle in secure software engineering . In Workshop on the Application of Engineering Principles to System Security Design , pages 1 -- 10 , 2002 . B. De Win, F. Piessens, W. Joosen, and T. Verhanneman. On the importance of the separation-of-concerns principle in secure software engineering. In Workshop on the Application of Engineering Principles to System Security Design, pages 1--10, 2002."},{"key":"e_1_3_2_1_6_1","volume-title":"KU Leuven","author":"Decat M.","year":"2014","unstructured":"M. Decat , J. Bogaerts , B. Lagaisse , and W. Joosen . The e-document case study: functional analysis and access control requirements. Technical report , KU Leuven , 2014 . M. Decat, J. Bogaerts, B. Lagaisse, and W. Joosen. The e-document case study: functional analysis and access control requirements. Technical report, KU Leuven, 2014."},{"key":"e_1_3_2_1_7_1","volume-title":"KU Leuven","author":"Decat M.","year":"2014","unstructured":"M. Decat , J. Bogaerts , B. Lagaisse , and W. Joosen . The workforce management case study: functional analysis and access control requirements. Technical report , KU Leuven , 2014 . M. Decat, J. Bogaerts, B. Lagaisse, and W. Joosen. The workforce management case study: functional analysis and access control requirements. Technical report, KU Leuven, 2014."},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1145\/501978.501980"},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1145\/1943513.1943539"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1109\/SKG.2008.76"},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1109\/POLICY.2011.50"},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.1109\/TKDE.2012.97"},{"key":"e_1_3_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.6028\/NIST.SP.800-162"},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1007\/11836025_15"},{"key":"e_1_3_2_1_15_1","first-page":"23","author":"Moeys J.","year":"2015","unstructured":"J. Moeys and M. Decat . Simple Tree-structured Attribute-based Policy Language (STAPL). https:\/\/github.com\/stapl-dsl , 2015 . {Online; accessed 23 -September-2015}. J. Moeys and M. Decat. Simple Tree-structured Attribute-based Policy Language (STAPL). https:\/\/github.com\/stapl-dsl, 2015. {Online; accessed 23-September-2015}.","journal-title":"Simple Tree-structured Attribute-based Policy Language (STAPL). https:\/\/github.com\/stapl-dsl"},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1145\/1998441.1998451"},{"key":"e_1_3_2_1_17_1","unstructured":"OASIS. eXtensible Access Control Markup Language (XACML) Standard Version 3.0. http:\/\/docs.oasis-open.org\/xacml\/3.0\/xacml-3.0-core-spec-os-en.pdf 2013.  OASIS. eXtensible Access Control Markup Language (XACML) Standard Version 3.0. http:\/\/docs.oasis-open.org\/xacml\/3.0\/xacml-3.0-core-spec-os-en.pdf 2013."},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-35743-5_13"},{"key":"e_1_3_2_1_19_1","volume-title":"NDSS","volume":"1","author":"Ribeiro C.","year":"2001","unstructured":"C. Ribeiro , A. Zuquete , P. Ferreira , and P. Guedes . SPL: An Access Control Language for Security Policies and Complex Constraints . In NDSS , volume 1 , 2001 . C. Ribeiro, A. Zuquete, P. Ferreira, and P. Guedes. SPL: An Access Control Language for Security Policies and Complex Constraints. In NDSS, volume 1, 2001."},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1007\/3-540-45608-2_3"},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.1145\/1456492.1456499"},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1109\/CSAC.2005.59"},{"key":"e_1_3_2_1_23_1","volume-title":"August","author":"Vollbrecht J.","year":"2000","unstructured":"J. Vollbrecht , P. Calhoun , S. Farrell , L. Gommans , G. Gross , B. de Bruijn , C. de Laat , M. Holdrege , and D. Spence . RFC 2904: AAA Authorization Framework , August 2000 . J. Vollbrecht, P. Calhoun, S. Farrell, L. Gommans, G. Gross, B. de Bruijn, C. de Laat, M. Holdrege, and D. Spence. RFC 2904: AAA Authorization Framework, August 2000."},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICWS.2005.25"}],"event":{"name":"ACSAC 2015: 2015 Annual Computer Security Applications Conference","location":"Los Angeles CA USA","acronym":"ACSAC 2015","sponsor":["ACSA Applied Computing Security Assoc"]},"container-title":["Proceedings of the 31st Annual Computer Security Applications Conference"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2818000.2818009","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/2818000.2818009","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T05:43:26Z","timestamp":1750225406000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2818000.2818009"}},"subtitle":["supporting more expressive access control policies"],"short-title":[],"issued":{"date-parts":[[2015,12,7]]},"references-count":24,"alternative-id":["10.1145\/2818000.2818009","10.1145\/2818000"],"URL":"https:\/\/doi.org\/10.1145\/2818000.2818009","relation":{},"subject":[],"published":{"date-parts":[[2015,12,7]]},"assertion":[{"value":"2015-12-07","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}