Skip to main content

Glossary

Fine Grained Access Control (FGAC)

Synonym:
FGAC

Fine-grained access control offers additional ways of controlling access to data on Amazon Elasticsearch Service. After a resource-based access policy allows a request to reach a domain endpoint, fine-grained access control evaluates the user credentials and either authenticates the user or denies the request. If fine-grained access control authenticates the user, it fetches all roles mapped to that user and uses the complete set of permissions to determine how to handle the request.