{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,13]],"date-time":"2025-06-13T05:46:20Z","timestamp":1749793580267},"reference-count":26,"publisher":"Sociedade Brasileira de Computacao - SB","issue":"1","license":[{"start":{"date-parts":[[2015,6,1]],"date-time":"2015-06-01T00:00:00Z","timestamp":1433116800000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/creativecommons.org\/licenses\/by\/4.0"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["J Internet Serv Appl"],"published-print":{"date-parts":[[2015,12]]},"DOI":"10.1186\/s13174-015-0026-4","type":"journal-article","created":{"date-parts":[[2015,5,8]],"date-time":"2015-05-08T08:30:00Z","timestamp":1431073800000},"update-policy":"http:\/\/dx.doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":24,"title":["Access control as a service for the Cloud"],"prefix":"10.5753","volume":"6","author":[{"given":"Nikos","family":"Fotiou","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Apostolis","family":"Machas","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"George C","family":"Polyzos","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"George","family":"Xylomenos","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"3742","published-online":{"date-parts":[[2015,6,1]]},"reference":[{"key":"26_CR1","doi-asserted-by":"crossref","unstructured":"PwC: Global State of Information Security Survey (2012). PwC: Global State of Information Security Survey (2012).","DOI":"10.1016\/S1353-4858(12)70064-8"},{"issue":"1","key":"26_CR2","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1016\/j.jnca.2010.07.006","volume":"34","author":"S Subashini","year":"2011","unstructured":"Subashini S, Kavitha V: A survey on security issues in service delivery models of cloud computing. J Netw Comput Appl 2011, 34(1):1\u201311. 10.1016\/j.jnca.2010.07.006","journal-title":"J Netw Comput Appl"},{"key":"26_CR3","unstructured":"Gorniak S (ed) (2010) Priorities for research on current and emerging network trends. ENISA. . https:\/\/www.enisa.europa.eu\/activities\/identity-and-trust\/library\/deliverables\/procent"},{"key":"26_CR4","unstructured":"Catteddu D, Hogben G (eds) (2009) Cloud Computing Benefits, risks and recommendations for information security. ENISA. . https:\/\/downloads.cloudsecurityalliance.org\/initiatives\/top_threats\/The_Notorious_Nine_Cloud_Computing_Top_Threats_in_2013.pdf"},{"key":"26_CR5","unstructured":"Cloud Security Alliance (2013) The Notorious Nine Cloud Computing Top Threats in 2013. . https:\/\/cloudsecurityalliance.org\/"},{"key":"26_CR6","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/1456396.1456397","volume-title":"Proc. of the 6th ACM Workshop on Formal Methods in Security Engineering","author":"A Armando","year":"2008","unstructured":"Armando A, Carbone R, Compagna L, Cuellar J, Tobarra L: Formal analysis of SAML 2.0 web browser single sign-on: breaking the SAML-based single sign-on for google apps. In Proc. of the 6th ACM Workshop on Formal Methods in Security Engineering. ACM, New York, NY; 2008:1\u201310. 10.1145\/1456396.1456397"},{"key":"26_CR7","first-page":"21","volume-title":"Proc. of the 21st USENIX Security Symposium","author":"J Somorovsky","year":"2012","unstructured":"Somorovsky J, Mayer A, Schwenk J, Kampmann M, Jensen M: On breaking SAML: Be whoever you want to be. In Proc. of the 21st USENIX Security Symposium. USENIX Association, Berkeley, CA; 2012:21\u201321."},{"key":"26_CR8","doi-asserted-by":"crossref","first-page":"13","DOI":"10.1109\/INFCOMW.2014.6849161","volume-title":"Computer Communications Workshops (INFOCOM WKSHPS), 2014 IEEE Conference On","author":"N Fotiou","year":"2014","unstructured":"Fotiou N, Machas A, Polyzos GC, Xylomenos G: Access control delegation for the cloud. In Computer Communications Workshops (INFOCOM WKSHPS), 2014 IEEE Conference On. IEEE, Canada; 2014:13\u201318. 10.1109\/INFCOMW.2014.6849161"},{"key":"26_CR9","doi-asserted-by":"crossref","first-page":"735","DOI":"10.1145\/1866307.1866414","volume-title":"Proceedings of the 17th ACM Conference on Computer and Communications Security. CCS \u201910","author":"G Wang","year":"2010","unstructured":"Wang G, Liu Q, Wu J: Hierarchical attribute-based encryption for fine-grained access control in cloud storage services. In Proceedings of the 17th ACM Conference on Computer and Communications Security. CCS \u201910. ACM, New York, NY, USA; 2010:735\u2013737. 10.1145\/1866307.1866414"},{"key":"26_CR10","doi-asserted-by":"crossref","unstructured":"Zhou L, Varadharajan V, Hitchens M (2011) Enforcing role-based access control for secure data storage in the cloud. Comput J.doi:10.1093\/comjnl\/bxr080, . http:\/\/comjnl.oxfordjournals.org\/content\/early\/2011\/09\/02\/comjnl.bxr080.abstract","DOI":"10.1093\/comjnl\/bxr080"},{"key":"26_CR11","doi-asserted-by":"crossref","first-page":"89","DOI":"10.1109\/CloudCom.2010.44","volume-title":"Cloud Computing Technology and Science (CloudCom), 2010 IEEE Second International Conference On","author":"J Li","year":"2010","unstructured":"Li J, Zhao G, Chen X, Xie D, Rong C, Li W, Tang L, Tang Y: Fine-grained data access control systems with user accountability in cloud computing. In Cloud Computing Technology and Science (CloudCom), 2010 IEEE Second International Conference On. IEEE Computer Society, Washington, DC; 2010:89\u201396. 10.1109\/CloudCom.2010.44"},{"key":"26_CR12","first-page":"1","volume-title":"INFOCOM, 2010 Proceedings IEEE","author":"S Yu","year":"2010","unstructured":"Yu S, Wang C, Ren K, Lou W: Achieving secure, scalable, and fine-grained data access control in cloud computing. In INFOCOM, 2010 Proceedings IEEE. IEEE Press, Piscataway, NJ; 2010:1\u20139."},{"key":"26_CR13","unstructured":"OASIS (2013) eXtensible Access Control Markup Language (XACML) Version 3.0.22. . http:\/\/docs.oasis-open.org\/xacml\/3.0\/xacml-3.0-core-spec-en.html"},{"key":"26_CR14","doi-asserted-by":"crossref","first-page":"89","DOI":"10.1145\/1180405.1180418","volume-title":"Proceedings of the 13th ACM Conference on Computer and Communications Security. CCS \u201906","author":"V Goyal","year":"2006","unstructured":"Goyal V, Pandey O, Sahai A, Waters B: Attribute-based encryption for fine-grained access control of encrypted data. In Proceedings of the 13th ACM Conference on Computer and Communications Security. CCS \u201906. ACM, New York, NY, USA; 2006:89\u201398."},{"key":"26_CR15","doi-asserted-by":"crossref","first-page":"11","DOI":"10.1145\/1179529.1179532","volume-title":"Proc. of the 2nd ACM Workshop on Digital Identity Management","author":"D Recordon","year":"2006","unstructured":"Recordon D, Reed D: OpenID 2.0: a platform for user-centric identity management. In Proc. of the 2nd ACM Workshop on Digital Identity Management. ACM, New York, NY; 2006:11\u201316. 10.1145\/1179529.1179532"},{"key":"26_CR16","unstructured":"Hardt D (ed) (2012) The OAuth 2.0 authorization framework. RFC 6749. . https:\/\/tools.ietf.org\/html\/rfc6749"},{"key":"26_CR17","volume-title":"Proc of the IEEE 4th International Conference on Cloud Computing Technology and Science","author":"D Nunez","year":"2012","unstructured":"Nunez D, Agudo I, Lopez J: Integrating OpenID with proxy re-encryption to enhance privacy in cloud-based identity services. In Proc of the IEEE 4th International Conference on Cloud Computing Technology and Science. IEEE Computer Society, Washington, DC, USA; 2012."},{"key":"26_CR18","doi-asserted-by":"crossref","unstructured":"Khan RH, Ylitalo J, Ahmed AS (2011) OpenID authentication as a service in OpenStack In: Proc. of the 7th International Conference on Information Assurance and Security, 372\u2013377.. IEEE. (doi:\/\/10.1109\/ISIAS.2011. 6122782).","DOI":"10.1109\/ISIAS.2011.6122782"},{"key":"26_CR19","doi-asserted-by":"crossref","unstructured":"Yavatkar R, Pendarakis D, Guerin R (2000) A framework for policy-based admission control. RFC 2753. . https:\/\/tools.ietf.org\/html\/rfc2753","DOI":"10.17487\/rfc2753"},{"key":"26_CR20","unstructured":"Durham D (ed) (2000) The COPS (Common Open Policy Service) Protocol. RFC 2748. . https:\/\/tools.ietf.org\/html\/rfc2748"},{"key":"26_CR21","unstructured":"Cantor S, Kemp J, Philpott R, Maler E (eds) (2005) Assertions and protocols for the OASIS Security Assertion Markup Language (SAML) v2.0. OASIS. . https:\/\/docs.oasis-open.org\/security\/saml\/v2.0\/saml-core-2.0-os.pdf"},{"key":"26_CR22","unstructured":"Openstack homepage. . last accessed 27 Apr. 2015. http:\/\/www.openstack.org\/"},{"key":"26_CR23","unstructured":"Google Drive homepage. , last accessed 27 Apr. 2015. https:\/\/drive.google.com"},{"key":"26_CR24","unstructured":"Google Keyczar homepage. , last accessed 27 Apr. 2015. https:\/\/github.com\/google\/keyczar"},{"key":"26_CR25","unstructured":"Google App Engine homepage. , last accessed 27 Apr. 2015. https:\/\/developers.google.com\/appengine\/"},{"key":"26_CR26","first-page":"365","volume-title":"Proc. of the IEEE Symposium on Security and Privacy","author":"R Wang","year":"2012","unstructured":"Wang R, Chen S, Wang X: Signing me onto your accounts through facebook and google: A traffic-guided security study of commercially deployed single-sign-on web services. In Proc. of the IEEE Symposium on Security and Privacy. IEEE Computer Society, Washington, DC, USA; 2012:365\u2013379."}],"container-title":["Journal of Internet Services and Applications"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1186\/s13174-015-0026-4.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/article\/10.1186\/s13174-015-0026-4\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1186\/s13174-015-0026-4","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,2,9]],"date-time":"2022-02-09T22:15:15Z","timestamp":1644444915000},"score":1,"resource":{"primary":{"URL":"http:\/\/www.jisajournal.com\/content\/6\/1\/11"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2015,6,1]]},"references-count":26,"journal-issue":{"issue":"1","published-print":{"date-parts":[[2015,12]]}},"alternative-id":["26"],"URL":"https:\/\/doi.org\/10.1186\/s13174-015-0026-4","relation":{},"ISSN":["1867-4828","1869-0238"],"issn-type":[{"value":"1867-4828","type":"print"},{"value":"1869-0238","type":"electronic"}],"subject":[],"published":{"date-parts":[[2015,6,1]]},"article-number":"11"}}