Access Control Policy
Term · Cybersecurity · MLC-T-CYB-000037
1. Policies that describe who is allowed to access the data and/or which parts of the data.
2. an access control paradigm whereby access rights are granted to users through the use of policies which combine attributes together. The policies can use any type of attributes (user attributes, resource attributes, environment attribute etc.
3. High-level requirements that specify how access is managed and who may access information under what circumstances.
4. The set of rules that define the conditions under which an access may take place.
| Identifier | MLC-T-CYB-000037 |
|---|---|
| Field | Cybersecurity |
| Abbreviation | ABAC |
| Synonyms | ACP |
| References | NIST SP 800-226; NIST SP 800-192; NISTIR 7316; NIST CSRC Glossary |
Record as JSON
{
"id": "MLC-T-CYB-000037",
"term": "Access Control Policy",
"field": "Cybersecurity",
"definition": "1. Policies that describe who is allowed to access the data and/or which parts of the data.\n\n2. an access control paradigm whereby access rights are granted to users through the use of policies which combine attributes together. The policies can use any type of attributes (user attributes, resource attributes, environment attribute etc.\n\n3. High-level requirements that specify how access is managed and who may access information under what circumstances.\n\n4. The set of rules that define the conditions under which an access may take place.",
"abbreviation": "ABAC",
"synonyms": [
"ACP"
],
"references": [
"NIST SP 800-226",
"NIST SP 800-192",
"NISTIR 7316",
"NIST CSRC Glossary"
],
"url": "https://mlchart.com/terminology/cybersecurity/access-control-policy/"
}
Record 37 of 4,693 in Cybersecurity terminology (MLC-0102). Request the full dataset.