Customer Service:
Mon - Fri: 8:30 am - 6 pm EST


INCITS 494-2012

Information Technology - Role Based Access Control Policy Enhanced

Role Based Access Control (RBAC) has been criticized for the difficulty of setting up an initial role structure and for inflexibility in rapidly changing domains. A pure RBAC solution may provide inadequate support for dynamic attributes, such as time of day, which might need to be considered when determining user permissions. This RBAC Policy-Enhanced standard (to be referenced as RPE) provides a framework and functional specifications to handle the relationship between roles and dynamic constraints. Some of the administrative and user permission review advantages of RBAC are retained while allowing the access control system to work in a rapidly changing environment

Content Provider
InterNational Committee for Information Technology Standards [incits]

Others Also Bought

Information Technology - Role Based Access Control
Information Technology - Requirements for the Implementation and Interoperability of Role Based Access Control ...
Information Technology - Next Generation Access Control - Functional Architecture (NGAC-FA)
Document History
Included in Packages
This standard is not included in any packages.
Amendments & Corrections
We have no amendments or corrections for this standard.

As the voice of the U.S. standards and conformity assessment system, the American National Standards Institute (ANSI) empowers its members and constituents to strengthen the U.S. marketplace position in the global economy while helping to assure the safety and health of consumers and the protection of the environment.