Lavida: Large-Universe, Verifiable, and Dynamic Fine-Grained Access Control for E-Health Cloud

被引:0
|
作者
Zhao, Jun [1 ]
Zhang, Kai [2 ]
Gong, Junqing [1 ]
Qian, Haifeng [1 ]
机构
[1] East China Normal Univ, Software Engn Inst, Shanghai 200062, Peoples R China
[2] Shanghai Univ Elect Power, Coll Comp Sci & Technol, Shanghai 201306, Peoples R China
基金
中国国家自然科学基金;
关键词
Cryptography; Access control; Hospitals; Systems architecture; Software engineering; Privacy; Encryption; E-health cloud; attribute-based proxy re-encryption; large-universe; partially hidden policy; verifiability; PROXY RE-ENCRYPTION; SECURE;
D O I
10.1109/TIFS.2024.3350925
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Electronic healthcare (E-health) cloud system enables electronic health records (EHRs) sharing and improves efficiency of diagnosis and treatment. In order to address EHRs confidentiality and authorized user access control in E-health cloud, attribute-based proxy re-encryption (ABPRE) has been widely employed which provides dynamic fine-grained access control over encrypted EHRs. Unfortunately, existing ABPRE schemes still have the following defects: 1) capacity of attribute-universe is defined at setup; 2) verifiable mechanism for re-encryption reveals EHRs about patients; 3) traditional access policy reveals sensitive information pertaining to patients. This paper focuses on these issues and presents large-universe, verifiable and privacy-preserving dynamic fine-grained access control scheme for E-health cloud. More details, we solve limitation of attribute-universe to large-universe, which means that attributes aren't required to be enumerated at setup. Considering disclosure of underlying EHRs in verifiable mechanism, scheme introduces non-interactive zero-knowledge proof as verifiable mechanism that supports public validation and doesn't leak EHRs of patients. Furthermore, partially hidden policy is employed to protect privacy of patients in policy, which divides attribute into attribute name and attribute value, displaying attribute name and hiding attribute value. Finally, experimental evaluation is given that demonstrates the more comprehensive functionality of our scheme without sacrificing significant computational overhead.
引用
收藏
页码:2732 / 2745
页数:14
相关论文
共 50 条
  • [21] Secure and fine-grained access control on e-healthcare records in mobile cloud computing
    Liu, Yi
    Zhang, Yinghui
    Ling, Jie
    Liu, Zhusong
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2018, 78 : 1020 - 1026
  • [22] A License Management and Fine-Grained Verifiable Data Access Control System for Online Catering
    Ni, Xiaoze
    Feng, Jian
    Jiang, Renkai
    He, Yajie
    Liu, Tao
    Chen, Ting
    Qiu, Sen
    [J]. IEEE TRANSACTIONS ON COMPUTATIONAL SOCIAL SYSTEMS, 2023, 10 (06) : 3586 - 3601
  • [23] BlurSense: Dynamic Fine-Grained Access Control for Smartphone Privacy
    Cappos, Justin
    Wang, Lai
    Weiss, Richard
    Yang, Yi
    Zhuang, Yanyan
    [J]. 2014 IEEE SENSORS APPLICATIONS SYMPOSIUM (SAS), 2014, : 329 - 332
  • [24] Fine-Grained Access Control in the Era of Cloud Computing: An Analytical Review
    Albulayhi, Khalid
    Abuhussein, Abdullah
    Alsubaei, Faisal
    Sheldon, Frederick T.
    [J]. 2020 10TH ANNUAL COMPUTING AND COMMUNICATION WORKSHOP AND CONFERENCE (CCWC), 2020, : 748 - 755
  • [25] Fine-Grained Access Control ensuring Data Privacy in OpenStack Cloud
    John, Naveen Thomas M.
    Thomas, Manoj V.
    [J]. 2017 INTERNATIONAL CONFERENCE ON INTELLIGENT COMPUTING, INSTRUMENTATION AND CONTROL TECHNOLOGIES (ICICICT), 2017, : 1669 - 1674
  • [26] Achieving fine-grained access control and integrity auditing in cloud storage
    [J]. Yuan, S. (ysm1005@163.com), 1600, Binary Information Press, P.O. Box 162, Bethel, CT 06801-0162, United States (09):
  • [27] Authentication and Access Control in e-Health Systems in the Cloud
    Kahani, Nafiseh
    Elgazzar, Khalid
    Cordy, James R.
    [J]. 2016 IEEE 2ND INTERNATIONAL CONFERENCE ON BIG DATA SECURITY ON CLOUD (BIGDATASECURITY), IEEE INTERNATIONAL CONFERENCE ON HIGH PERFORMANCE AND SMART COMPUTING (HPSC), AND IEEE INTERNATIONAL CONFERENCE ON INTELLIGENT DATA AND SECURITY (IDS), 2016, : 13 - 23
  • [28] Fine-Grained Access Control for Electronic Health Record Systems
    Pham Thi Bach Hue
    Wohlgemuth, Sven
    Echizen, Isao
    Dong Thi Bich Thuy
    Nguyen Dinh Thu
    [J]. U- AND E-SERVICE, SCIENCE AND TECHNOLOGY, 2010, 124 : 31 - +
  • [29] A Secure Access Control Model for E-health Cloud
    Singh, Ashish
    Chandra, Umesh
    Kumar, Shivesh
    Chatterjee, Kakali
    [J]. PROCEEDINGS OF THE 2019 IEEE REGION 10 CONFERENCE (TENCON 2019): TECHNOLOGY, KNOWLEDGE, AND SOCIETY, 2019, : 2329 - 2334
  • [30] Inference Attack-Resistant E-Healthcare Cloud System with Fine-Grained Access Control
    Zhang, Wei
    Lin, Yaping
    Wu, Jie
    Zhou, Ting
    [J]. IEEE TRANSACTIONS ON SERVICES COMPUTING, 2021, 14 (01) : 167 - 178