All glossary terms
AGlossary

Attribute Based Access Control (ABAC)

ABAC is an authorization model that evaluates attributes of the subject, resource, requested action and environment against policy rules before granting or denying access.

Attribute Based Access Control (ABAC) is an authorization model that evaluates attributes of the subject, resource, requested action and environment against policy rules before granting or denying access. Attributes can include department, employment status, data classification, device posture, location and time.

In IGA, ABAC supports fine-grained and context-aware decisions that are difficult to represent with roles alone. Its effectiveness depends on accurate, timely and well-governed attributes.