Attribute-Based Access Control

ABAC

Kind: model

Layer: Security Core

Aliases: ABAC

Record: architecture:attribute-based-access-control

Severity: contextual

Scope: user, resource, context

Canonical: Ontology

A conceptual representation of access control, Attribute-Based Access Control (ABAC), in which a policy decides from attributes of the subject, the resource and the environment.

Listed in Architecture principles, after Role-Based Access Control (RBAC) and before Input Validation.

Requires

Reinforces

Enables

Conflicts with

In tension with

Tensions

Violated by

Refactored by

Severity

Category

Refactors

Linked from