# Role Based Access Control Rbac
**Source:** https://glossary.keenfunnel.com/terms/role-based-access-control-rbac
**Language:** Arabic

---

## شرح تقني

RBAC separates users, roles, permissions, sessions, and constraints. Role hierarchies can inherit permissions, while separation-of-duty rules prevent conflicting assignments or activations. Roles should reflect stable job responsibilities and be governed through approval and review.

## الأهمية التجارية

RBAC simplifies permission administration at scale, supports least privilege, and provides an auditable connection between job responsibilities and system access.

## مثال على التنفيذ

A finance-analyst role can view invoices and reports, while a payment-approver role can authorise payments. Separation-of-duty rules prevent one user from holding both capabilities without exception approval.

## القيود والمفاهيم الخاطئة الشائعة

Poor role design causes role explosion or excessive access. RBAC handles contextual and fine-grained decisions less naturally than attribute-based approaches and still requires lifecycle management and access reviews.

## المواضيع

الأمن السيبراني هندسة الأنظمة

## المصادر

NIST — Role Based Access Control — NIST IR 6192 — https://csrc.nist.gov/pubs/ir/6192/final

## ناقش أنظمتك

هل تحتاج إلى مساعدة في تنفيذ هذا المفهوم أو تقييمه؟ تقوم Keenfunnel بتصميم أنظمة الذكاء الاصطناعي المتصلة والأتمتة والبيانات.

احجز جلسة استكشافية