Guide to Attribute Based Access Control (ABAC) Definition and Considerations [includes updates as of 02-25-2019]
Guide to Attribute Based Access Control (ABAC) Definition and Considerations [includes updates as of 02-25-2019]
复制标题
基于属性的访问控制 (ABAC) 定义和注意事项指南 [包括截至 2019 年 2 月 25 日的更新]
DOI:
--
复制
发表时间:
2019
期刊:
影响因子:
--
通讯作者:
K. Scarfone
中科院分区:
文献类型:
--
作者:
Vincent C. Hu;David F. Ferraiolo;Rick Kuhn;Adam Schnitzer;Kenneth Sandlin;Robert Miller;K. Scarfone
This document provides Federal agencies with a definition of attribute based access control (ABAC). ABAC is a logical access control methodology where authorization to perform a set of operations is determined by evaluating attributes associated with the subject, object, requested operations, and, in some cases, environment conditions against policy, rules, or relationships that describe the allowable operations for a given set of attributes. This document also provides considerations for using ABAC to improve information sharing within organizations and between organizations while maintaining control of that information.