{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,2,26]],"date-time":"2025-02-26T05:34:44Z","timestamp":1740548084556,"version":"3.38.0"},"reference-count":45,"publisher":"Elsevier BV","issue":"5","license":[{"start":{"date-parts":[[2011,5,1]],"date-time":"2011-05-01T00:00:00Z","timestamp":1304208000000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/2.zoppoz.workers.dev:443\/https\/www.elsevier.com\/tdm\/userlicense\/1.0\/"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Future Generation Computer Systems"],"published-print":{"date-parts":[[2011,5]]},"DOI":"10.1016\/j.future.2010.09.008","type":"journal-article","created":{"date-parts":[[2010,9,25]],"date-time":"2010-09-25T08:40:11Z","timestamp":1285404011000},"page":"574-586","source":"Crossref","is-referenced-by-count":2,"title":["RAR: A role-and-risk based flexible framework for secure collaboration"],"prefix":"10.1016","volume":"27","author":[{"given":"Jinwei","family":"Hu","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ruixuan","family":"Li","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Zhengding","family":"Lu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jianfeng","family":"Lu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xiaopu","family":"Ma","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"78","reference":[{"key":"10.1016\/j.future.2010.09.008_br000005","series-title":"Proceedings of the 12th IEEE International Symposium on High Performance Distributed Computing","first-page":"48","article-title":"Security for grid services","author":"Welch","year":"2003"},{"issue":"3","key":"10.1016\/j.future.2010.09.008_br000010","doi-asserted-by":"crossref","first-page":"224","DOI":"10.1145\/501978.501980","article-title":"Proposed NIST standard for role-based access control","volume":"4","author":"Ferraiolo","year":"2001","journal-title":"ACM Transactions on Information and System Security"},{"issue":"2","key":"10.1016\/j.future.2010.09.008_br000015","doi-asserted-by":"crossref","first-page":"38","DOI":"10.1109\/2.485845","article-title":"Role-based access control models","volume":"29","author":"Sandhu","year":"1996","journal-title":"IEEE Computer"},{"key":"10.1016\/j.future.2010.09.008_br000020","doi-asserted-by":"crossref","unstructured":"L. Notargiacomo, Role-based access control in ORACLE7 and trusted ORACLE7, in: ACM Workshop on Role-Based Access Control, 1995.","DOI":"10.1145\/270152.270185"},{"key":"10.1016\/j.future.2010.09.008_br000025","doi-asserted-by":"crossref","unstructured":"R.S. Sandhu, V. Bhamidipati, An oracle implementation of the PRA97 model for permission-role assignment, in: ACM Workshop on Role-Based Access Control, 1998, pp. 13\u201321.","DOI":"10.1145\/286884.286889"},{"key":"10.1016\/j.future.2010.09.008_br000030","doi-asserted-by":"crossref","unstructured":"A. Schaad, J.D. Moffett, J. Jacob, The role-based access control system of a European bank: a case study and discussion, in: Proceedings of the 6th ACM Symposium on Access Control Models and Technologies, 2001, pp. 3\u20139.","DOI":"10.1145\/373256.373257"},{"key":"10.1016\/j.future.2010.09.008_br000035","doi-asserted-by":"crossref","unstructured":"S. Du, J.B.D. Joshi, Supporting authorization query and inter-domain role mapping in presence of hybrid role hierarchy, in: Proceedings of the 11th ACM Symposium on Access Control Models and Technologies, 2006, pp. 228\u2013236.","DOI":"10.1145\/1133058.1133090"},{"key":"10.1016\/j.future.2010.09.008_br000040","unstructured":"J. Hu, R. Li, Z. Lu, Establishing RBAC-based secure interoperability in decentralized multi-domain environments, in: Proceedings of the 10th International Conference on Information Security and Cryptology, ICISC 2007, in: LNCS, Seoul, South Korea, vol. 4817, 2007, pp. 49\u201363."},{"key":"10.1016\/j.future.2010.09.008_br000045","doi-asserted-by":"crossref","unstructured":"J. Jin, G.-J. Ahn, Role-based access management for ad-hoc collaborative sharing, in: Proceedings of the 11th ACM Symposium on Access Control Models and Technologies, 2006, pp. 200\u2013209.","DOI":"10.1145\/1133058.1133086"},{"key":"10.1016\/j.future.2010.09.008_br000050","doi-asserted-by":"crossref","unstructured":"J. Li, J. Huai, C. Hu, PEACE-VO: a secure policy-enabled collaboration framework for virtual organizations, in: Proceedings of the 26th IEEE Symposium on Reliable Distributed Systems, 2007, pp. 199\u2013208.","DOI":"10.1109\/SRDS.2007.12"},{"issue":"11","key":"10.1016\/j.future.2010.09.008_br000055","doi-asserted-by":"crossref","first-page":"1557","DOI":"10.1109\/TKDE.2005.185","article-title":"Secure interoperation in a multidomain environment employing RBAC policies","volume":"17","author":"Shafiq","year":"2005","journal-title":"IEEE Transactions on Knowledge and Data Engineering"},{"key":"10.1016\/j.future.2010.09.008_br000060","series-title":"Proceedings of the 8th International Conference on Peer-to-Peer Computing","first-page":"150","article-title":"Proactive role discovery in mediator-free environments","author":"Shehab","year":"2008"},{"issue":"1","key":"10.1016\/j.future.2010.09.008_br000065","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/1294148.1294153","article-title":"Web services discovery in secure collaboration environments","volume":"8","author":"Shehab","year":"2007","journal-title":"ACM Transactions on Internet Technology"},{"key":"10.1016\/j.future.2010.09.008_br000070","doi-asserted-by":"crossref","unstructured":"J. Hu, R. Li, Z. Lu, On role mappings for RBAC-based secure interoperation, in: Proceedings of the 3rd International Conference on Network & System Security, NSS 2009, Gold Coast, Australia, 2009, pp. 270\u2013277.","DOI":"10.1109\/NSS.2009.76"},{"year":"2003","series-title":"Computer Security\u2014Art and Science","author":"Bishop","key":"10.1016\/j.future.2010.09.008_br000075"},{"key":"10.1016\/j.future.2010.09.008_br000080","doi-asserted-by":"crossref","unstructured":"D.D. Clark, D.R. Wilson, A comparison of commercial and military computer security policies, in: Proceedings of the 1987 IEEE Symposium on Security and Privacy, 1987, pp. 184\u2013194.","DOI":"10.1109\/SP.1987.10001"},{"issue":"4","key":"10.1016\/j.future.2010.09.008_br000085","doi-asserted-by":"crossref","first-page":"207","DOI":"10.1145\/382912.382913","article-title":"Role-based authorization constraints specification","volume":"3","author":"Ahn","year":"2000","journal-title":"ACM Transactions on Information and System Security"},{"key":"10.1016\/j.future.2010.09.008_br000090","doi-asserted-by":"crossref","unstructured":"N. Li, Z. Bizri, M.V. Tripunitara, On mutually-exclusive roles and separation of duty, in: Proceedings of the 11th ACM Conference on Computer and Communications Security, 2004, pp. 42\u201351.","DOI":"10.1145\/1030083.1030091"},{"key":"10.1016\/j.future.2010.09.008_br000095","doi-asserted-by":"crossref","unstructured":"H. Chen, N. Li, Constraint generation for separation of duty, in: Proceedings of the 11th ACM Symposium on Access Control Models and Technologies, 2006, pp. 130\u2013138.","DOI":"10.1145\/1133058.1133077"},{"key":"10.1016\/j.future.2010.09.008_br000100","series-title":"Proceedings of 10th ACM Symposium on Access Control Models and Technologies","first-page":"159","article-title":"SERAT: SEcure role mApping technique for decentralized secure interoperability","author":"Shehab","year":"2005"},{"key":"10.1016\/j.future.2010.09.008_br000105","series-title":"Proceedings of the 12th ACM Conference on Computer and Communications Security","first-page":"158","article-title":"Understanding and developing role-based administrative models","author":"Crampton","year":"2005"},{"issue":"2","key":"10.1016\/j.future.2010.09.008_br000110","doi-asserted-by":"crossref","first-page":"201","DOI":"10.1145\/762476.762478","article-title":"Administrative scope: a foundation for role-based administrative models","volume":"6","author":"Crampton","year":"2003","journal-title":"ACM Transactions on Information and System Security"},{"issue":"1","key":"10.1016\/j.future.2010.09.008_br000115","doi-asserted-by":"crossref","first-page":"105","DOI":"10.1145\/300830.300839","article-title":"The ARBAC97 model for role-based administration of roles","volume":"2","author":"Sandhu","year":"1999","journal-title":"ACM Transactions on Information and System Security"},{"key":"10.1016\/j.future.2010.09.008_br000120","doi-asserted-by":"crossref","unstructured":"D.A. Agarwal, O. Chevassut, M.R. Thompson, G. Tsudik, An integrated solution for secure group communication in wide-area networks, in: Proceedings of the Sixth IEEE Symposium on Computers and Communications, 2001, pp. 22\u201328.","DOI":"10.1109\/ISCC.2001.935350"},{"issue":"5","key":"10.1016\/j.future.2010.09.008_br000125","doi-asserted-by":"crossref","first-page":"709","DOI":"10.1016\/S0167-739X(02)00036-5","article-title":"A practical approach to the interGroup protocols","volume":"18","author":"Berket","year":"2002","journal-title":"Future Generation Computer Systems"},{"issue":"3","key":"10.1016\/j.future.2010.09.008_br000130","first-page":"193","article-title":"Request-driven role mapping framework for secure interoperation in multi-domain environments","volume":"23","author":"Li","year":"2008","journal-title":"International Journal of Computer Systems Science and Engineering"},{"key":"10.1016\/j.future.2010.09.008_br000135","series-title":"Proceedings of 12th ACM Conference on Computer and Communications Security","first-page":"58","article-title":"Secure collaboration in mediator-free environments","author":"Shehab","year":"2005"},{"key":"10.1016\/j.future.2010.09.008_br000140","series-title":"Proceedings of the 13th ACM Symposium on Access Control Models and Technologies","first-page":"11","article-title":"Migrating to optimal RBAC with minimal perturbation","author":"Vaidya","year":"2008"},{"key":"10.1016\/j.future.2010.09.008_br000145","series-title":"Proceedings of the 13th ACM Conference on Computer and Communications Security","first-page":"144","article-title":"RoleMiner: mining roles using subset enumeration","author":"Vaidya","year":"2006"},{"key":"10.1016\/j.future.2010.09.008_br000150","doi-asserted-by":"crossref","unstructured":"M.A.C. Dekker, J. Crampton, S. Etalle, RBAC administration in distributed systems, in: Proceedings of the 13th ACM Symposium on Access Control Models and Technologies, 2008, pp. 93\u2013102.","DOI":"10.1145\/1377836.1377852"},{"issue":"2","key":"10.1016\/j.future.2010.09.008_br000155","doi-asserted-by":"crossref","first-page":"171","DOI":"10.1145\/254180.254190","article-title":"A survey of approximately optimal solutions to some covering and packing problems","volume":"29","author":"Paschos","year":"1997","journal-title":"ACM Computing Surveys"},{"key":"10.1016\/j.future.2010.09.008_br000160","doi-asserted-by":"crossref","unstructured":"Q. Ni, E. Bertino, Aggregating uncertain access risk estimations from different sources, in: Proceedings of the 5th International Conference on Collaborative Computing: Networking, Applications and Worksharing, Crystal City, Washington DC, USA, 2009, pp. 1\u201310.","DOI":"10.4108\/ICST.COLLABORATECOM2009.8272"},{"key":"10.1016\/j.future.2010.09.008_br000165","series-title":"Proceedings of the 2007 IEEE Symposium on Security and Privacy","first-page":"222","article-title":"Fuzzy multi-level security: an experiment on quantified risk-adaptive access control","author":"Cheng","year":"2007"},{"key":"10.1016\/j.future.2010.09.008_br000170","doi-asserted-by":"crossref","unstructured":"W. Han, Q. Ni, H. Chen, Apply measurable risk to strengthen security of a role-based delegation supporting workflow system, in: Proceedings of the 10th IEEE International Symposium on Policies for Distributed Systems and Networks, POLICY2009, 2009.","DOI":"10.1109\/POLICY.2009.26"},{"key":"10.1016\/j.future.2010.09.008_br000175","series-title":"Proceedings of the 13th European Symposium on Research in Computer Security","first-page":"35","article-title":"Online risk assessment of intrusion scenarios using D\u2013S evidence theory","author":"Mu","year":"2008"},{"key":"10.1016\/j.future.2010.09.008_br000180","series-title":"Proceedings of the 24th Annual Computer Security Applications Conference","first-page":"247","article-title":"Permission set mining: discovering practical and useful roles","author":"Zhang","year":"2008"},{"key":"10.1016\/j.future.2010.09.008_br000185","doi-asserted-by":"crossref","unstructured":"I. Molloy, N. Li, T. Li, Z. Mao, Q. Wang, J. Lobo, Evaluating role mining algorithms, in: Proceedings of the 14th ACM Symposium on Access Control Models and Technologies, 2009, pp. 95\u2013104.","DOI":"10.1145\/1542207.1542224"},{"issue":"6","key":"10.1016\/j.future.2010.09.008_br000190","doi-asserted-by":"crossref","first-page":"40","DOI":"10.1109\/MIC.2004.53","article-title":"Access-control language for multidomain environments","volume":"8","author":"Joshi","year":"2004","journal-title":"IEEE Internet Computing"},{"key":"10.1016\/j.future.2010.09.008_br000195","doi-asserted-by":"crossref","unstructured":"S. Piromruen, J.B.D. Joshi, An RBAC framework for time constrained secure interoperation in multi-domain environments, in: Proceedings of the 10th IEEE International Workshop on Object-Oriented Real-Time Dependable Systems, 2005, pp. 36\u201348.","DOI":"10.1109\/WORDS.2005.18"},{"key":"10.1016\/j.future.2010.09.008_br000200","unstructured":"A. Kapadia, J. Al-Muhtadi, R.H. Campbell, M.D. Mickunas, IRBAC 2000: secure interoperability using dynamic role translation, in: Proceedings of the 1st International Conference on Internet Computing, 2000, pp. 231\u2013238."},{"key":"10.1016\/j.future.2010.09.008_br000205","doi-asserted-by":"crossref","unstructured":"L. Chen, J. Crampton, Set covering problems in role-based access control, in: Proceedings of 14th European Symposium on Research in Computer Security, 2009, pp. 689\u2013704.","DOI":"10.1007\/978-3-642-04444-1_42"},{"key":"10.1016\/j.future.2010.09.008_br000210","doi-asserted-by":"crossref","unstructured":"C.-C. Pan, P. Mitra, P. Liu, Semantic access control for information interoperation, in: Proceedings of the 11th ACM Symposium on Access Control Models and Technologies, 2006, pp. 237\u2013246.","DOI":"10.1145\/1133058.1133091"},{"key":"10.1016\/j.future.2010.09.008_br000215","doi-asserted-by":"crossref","unstructured":"N. Dimmock, A. Belokosztolszki, D.M. Eyers, J. Bacon, K. Moody, Using trust and risk in role-based access control policies, in: Proceedings of the 9th ACM Symposium on Access Control Models and Technologies, 2004, pp. 156\u2013162.","DOI":"10.1145\/990036.990062"},{"key":"10.1016\/j.future.2010.09.008_br000220","doi-asserted-by":"crossref","unstructured":"P. Chapin, C. Skalka, X.S. Wang, Risk assessment in distributed authorization, in: FMSE 2005, pp. 33\u201342.","DOI":"10.1145\/1103576.1103581"},{"key":"10.1016\/j.future.2010.09.008_br000225","unstructured":"M.R. Garey, D.S. Johnson, Computers and intractability: a guide to the theory of NP-completeness, 1979."}],"container-title":["Future Generation Computer Systems"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/2.zoppoz.workers.dev:443\/https\/api.elsevier.com\/content\/article\/PII:S0167739X10001780?httpAccept=text\/xml","content-type":"text\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/2.zoppoz.workers.dev:443\/https\/api.elsevier.com\/content\/article\/PII:S0167739X10001780?httpAccept=text\/plain","content-type":"text\/plain","content-version":"vor","intended-application":"text-mining"}],"deposited":{"date-parts":[[2025,2,26]],"date-time":"2025-02-26T02:01:08Z","timestamp":1740535268000},"score":1,"resource":{"primary":{"URL":"https:\/\/2.zoppoz.workers.dev:443\/https\/linkinghub.elsevier.com\/retrieve\/pii\/S0167739X10001780"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2011,5]]},"references-count":45,"journal-issue":{"issue":"5","published-print":{"date-parts":[[2011,5]]}},"alternative-id":["S0167739X10001780"],"URL":"https:\/\/2.zoppoz.workers.dev:443\/https\/doi.org\/10.1016\/j.future.2010.09.008","relation":{},"ISSN":["0167-739X"],"issn-type":[{"type":"print","value":"0167-739X"}],"subject":[],"published":{"date-parts":[[2011,5]]}}}