Application of Attribute Based Access Control Model for Industrial Control Systems

Erkan Yalcinkaya 1,* Antonio Maffei 1 Mauro Onori 1

1. Department of Production Engineering, Royal Institute of Technology, Stockholm, Sweden

* Corresponding author.


Received: 11 Aug. 2016 / Revised: 28 Oct. 2016 / Accepted: 1 Dec. 2016 / Published: 8 Feb. 2017

Index Terms

Attribute based access control (ABAC), industrial control systems (ICS), fine grained authorization, central policy enforcement


The number of reported security vulnerabilities and incidents related to the industrial control systems (ICS) has increased recent years. As argued by several researchers, authorization issues and poor access control are key incident vectors. The majority of ICS are not designed security in mind and they usually lack strong and granular access control mechanisms. The attribute based access control (ABAC) model offers high authorization granularity, central administration of access policies with centrally consolidated and monitored logging properties. This research proposes to harness the ABAC model to address the present and future ICS access control challenges. The proposed solution is also implemented and rigorously tested to demonstrate the feasibility and viability of ABAC model for ICS.

Erkan Yalcinkaya, Antonio Maffei, Mauro Onori, "Application of Attribute Based Access Control Model for Industrial Control Systems", International Journal of Computer Network and Information Security(IJCNIS), Vol.9, No.2, pp.12-21, 2017. DOI:10.5815/ijcnis.2017.02.02


