Comparison of RBAC and ABAC Security Models for Private Cloud


Protecting the resources from unauthorized users is a big challenge in cloud computing. Role based access control (RBAC) model is a standard method for data access control. It is widely implemented access control in many cloud platforms. As the number of roles increase, the complexity is increased. To get rid of limitations of RBAC, the attribute base access control model has been introduced which has more flexibility. Here permissions are directly associated with the roles. By combining both RBAC and ABAC, a hybrid access control scheme is evolved which is more scalable and dynamic. This paper introduces the various data access control models and compare their characteristics. The characteristics of all these security models are compared.



