{"id":"https://openalex.org/W2045637941","doi":"https://doi.org/10.1109/isias.2010.5604043","title":"Specification of attribute relations for access control policies and constraints using Policy Machine","display_name":"Specification of attribute relations for access control policies and constraints using Policy Machine","publication_year":2010,"publication_date":"2010-08-01","ids":{"openalex":"https://openalex.org/W2045637941","doi":"https://doi.org/10.1109/isias.2010.5604043","mag":"2045637941"},"language":"en","primary_location":{"id":"doi:10.1109/isias.2010.5604043","is_oa":false,"landing_page_url":"https://doi.org/10.1109/isias.2010.5604043","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2010 Sixth International Conference on Information Assurance and Security","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5091259454","display_name":"Vincent C. Hu","orcid":"https://orcid.org/0000-0002-1646-0584"},"institutions":[{"id":"https://openalex.org/I1321296531","display_name":"National Institute of Standards and Technology","ror":"https://ror.org/05xpvk416","country_code":"US","type":"funder","lineage":["https://openalex.org/I1321296531","https://openalex.org/I1343035065"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Vincent C. Hu","raw_affiliation_strings":["National Institute for Standards and Technology, Gaithersburg, MD, USA","National Institute of Standards & Technology, Gaithersburg, Maryland, USA"],"affiliations":[{"raw_affiliation_string":"National Institute for Standards and Technology, Gaithersburg, MD, USA","institution_ids":["https://openalex.org/I1321296531"]},{"raw_affiliation_string":"National Institute of Standards & Technology, Gaithersburg, Maryland, USA","institution_ids":["https://openalex.org/I1321296531"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5111740773","display_name":"David Ferraiolo","orcid":null},"institutions":[{"id":"https://openalex.org/I1321296531","display_name":"National Institute of Standards and Technology","ror":"https://ror.org/05xpvk416","country_code":"US","type":"funder","lineage":["https://openalex.org/I1321296531","https://openalex.org/I1343035065"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"David D. Ferraiolo","raw_affiliation_strings":["National Institute for Standards and Technology, Gaithersburg, MD, USA","National Institute of Standards & Technology, Gaithersburg, Maryland, USA"],"affiliations":[{"raw_affiliation_string":"National Institute for Standards and Technology, Gaithersburg, MD, USA","institution_ids":["https://openalex.org/I1321296531"]},{"raw_affiliation_string":"National Institute of Standards & Technology, Gaithersburg, Maryland, USA","institution_ids":["https://openalex.org/I1321296531"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5090713458","display_name":"Serban I. Gavrila","orcid":null},"institutions":[{"id":"https://openalex.org/I1321296531","display_name":"National Institute of Standards and Technology","ror":"https://ror.org/05xpvk416","country_code":"US","type":"funder","lineage":["https://openalex.org/I1321296531","https://openalex.org/I1343035065"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Serban Gavrila","raw_affiliation_strings":["National Institute for Standards and Technology, Gaithersburg, MD, USA","National Institute of Standards & Technology, Gaithersburg, Maryland, USA"],"affiliations":[{"raw_affiliation_string":"National Institute for Standards and Technology, Gaithersburg, MD, USA","institution_ids":["https://openalex.org/I1321296531"]},{"raw_affiliation_string":"National Institute of Standards & Technology, Gaithersburg, Maryland, USA","institution_ids":["https://openalex.org/I1321296531"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5091259454"],"corresponding_institution_ids":["https://openalex.org/I1321296531"],"apc_list":null,"apc_paid":null,"fwci":1.8643,"has_fulltext":false,"cited_by_count":2,"citation_normalized_percentile":{"value":0.89894041,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":94},"biblio":{"volume":null,"issue":null,"first_page":"32","last_page":"35"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10927","display_name":"Access Control and Trust","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/3312","display_name":"Sociology and Political Science"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}},"topics":[{"id":"https://openalex.org/T10927","display_name":"Access Control and Trust","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/3312","display_name":"Sociology and Political Science"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}},{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9842000007629395,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10456","display_name":"Multi-Agent Systems and Negotiation","score":0.9715999960899353,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/xacml","display_name":"XACML","score":0.9601476788520813},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8381620645523071},{"id":"https://openalex.org/keywords/access-control","display_name":"Access control","score":0.8326978087425232},{"id":"https://openalex.org/keywords/role-based-access-control","display_name":"Role-based access control","score":0.6751656532287598},{"id":"https://openalex.org/keywords/relation","display_name":"Relation (database)","score":0.5491443276405334},{"id":"https://openalex.org/keywords/specification-language","display_name":"Specification language","score":0.5236380100250244},{"id":"https://openalex.org/keywords/implementation","display_name":"Implementation","score":0.5162948966026306},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.4725959897041321},{"id":"https://openalex.org/keywords/security-policy","display_name":"Security policy","score":0.465632826089859},{"id":"https://openalex.org/keywords/control","display_name":"Control (management)","score":0.42995285987854004},{"id":"https://openalex.org/keywords/mandatory-access-control","display_name":"Mandatory access control","score":0.4132125973701477},{"id":"https://openalex.org/keywords/distributed-computing","display_name":"Distributed computing","score":0.3746108412742615},{"id":"https://openalex.org/keywords/database","display_name":"Database","score":0.33136165142059326},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.2323785126209259},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.14872893691062927}],"concepts":[{"id":"https://openalex.org/C2779886121","wikidata":"https://www.wikidata.org/wiki/Q288682","display_name":"XACML","level":3,"score":0.9601476788520813},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8381620645523071},{"id":"https://openalex.org/C527821871","wikidata":"https://www.wikidata.org/wiki/Q228502","display_name":"Access control","level":2,"score":0.8326978087425232},{"id":"https://openalex.org/C45567728","wikidata":"https://www.wikidata.org/wiki/Q1702839","display_name":"Role-based access control","level":3,"score":0.6751656532287598},{"id":"https://openalex.org/C25343380","wikidata":"https://www.wikidata.org/wiki/Q277521","display_name":"Relation (database)","level":2,"score":0.5491443276405334},{"id":"https://openalex.org/C201677973","wikidata":"https://www.wikidata.org/wiki/Q1209840","display_name":"Specification language","level":2,"score":0.5236380100250244},{"id":"https://openalex.org/C26713055","wikidata":"https://www.wikidata.org/wiki/Q245962","display_name":"Implementation","level":2,"score":0.5162948966026306},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.4725959897041321},{"id":"https://openalex.org/C154908896","wikidata":"https://www.wikidata.org/wiki/Q2167404","display_name":"Security policy","level":2,"score":0.465632826089859},{"id":"https://openalex.org/C2775924081","wikidata":"https://www.wikidata.org/wiki/Q55608371","display_name":"Control (management)","level":2,"score":0.42995285987854004},{"id":"https://openalex.org/C2777407602","wikidata":"https://www.wikidata.org/wiki/Q1888932","display_name":"Mandatory access control","level":4,"score":0.4132125973701477},{"id":"https://openalex.org/C120314980","wikidata":"https://www.wikidata.org/wiki/Q180634","display_name":"Distributed computing","level":1,"score":0.3746108412742615},{"id":"https://openalex.org/C77088390","wikidata":"https://www.wikidata.org/wiki/Q8513","display_name":"Database","level":1,"score":0.33136165142059326},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.2323785126209259},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.14872893691062927}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/isias.2010.5604043","is_oa":false,"landing_page_url":"https://doi.org/10.1109/isias.2010.5604043","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2010 Sixth International Conference on Information Assurance and Security","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.7400000095367432,"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":11,"referenced_works":["https://openalex.org/W1560550087","https://openalex.org/W1575923508","https://openalex.org/W1975449217","https://openalex.org/W1992761401","https://openalex.org/W1993163335","https://openalex.org/W2134296086","https://openalex.org/W2144794336","https://openalex.org/W2626643089","https://openalex.org/W2996027056","https://openalex.org/W6633609916","https://openalex.org/W6771694190"],"related_works":["https://openalex.org/W2612447197","https://openalex.org/W2371841920","https://openalex.org/W2392187120","https://openalex.org/W2571946640","https://openalex.org/W1920330819","https://openalex.org/W2149886529","https://openalex.org/W2375359387","https://openalex.org/W2298912813","https://openalex.org/W2381142801","https://openalex.org/W318167434"],"abstract_inverted_index":{"Attribute":[0],"relations":[1,49],"in":[2,50,62,66],"access":[3,16,23,29,83,99],"control":[4,17,24,30,84,100],"mechanisms":[5],"or":[6],"languages":[7],"allow":[8],"accurate":[9],"and":[10,32,41,77],"efficient":[11],"specification":[12,33,46],"of":[13,21,47,60,69,79,82],"some":[14],"popular":[15],"models.":[18],"However,":[19],"most":[20],"the":[22,45,58,67,70,91,103],"systems":[25],"including":[26],"today's":[27],"de-facto":[28],"protocol":[31],"language,":[34],"XACML,":[35],"does":[36],"not":[37],"provide":[38],"sufficient":[39],"syntactic":[40],"semantic":[42],"support":[43],"for":[44],"attribute":[48,92],"their":[51],"scheme.":[52],"In":[53,86],"this":[54],"paper,":[55],"we":[56,88],"show":[57],"deficiencies":[59],"XACML":[61],"specifying":[63],"such":[64],"capabilities":[65],"implementations":[68],"Multilevel":[71],"Security,":[72],"Hierarchical":[73],"Role":[74],"Based":[75],"policies":[76],"Separation":[78],"Duty":[80],"requirements":[81],"systems.":[85],"comparison,":[87],"then":[89],"demonstrate":[90],"relation":[93],"mechanism":[94,101],"provided":[95],"by":[96],"a":[97],"relation-based":[98],"-":[102],"Policy":[104],"Machine.":[105]},"counts_by_year":[{"year":2012,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
