Securing medical data by role-based user policy with partially homomorphic encryption in AWS cloud

被引:4
|
作者
Boomija, M. D. [1 ]
Raja, S. V. Kasmir [1 ]
机构
[1] SRM Inst Sci & Technol, Dept CSE, Kattankulathur, Tamil Nadu, India
关键词
Partially homomorphic encryption; Cloud security; Access policy; AWS S3; IAM; Elastic Beanstalk; ACCESS-CONTROL; STORAGE;
D O I
10.1007/s00500-022-06950-y
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Cloud technology provides services for storing and accessing a large amount of data with ease of access and less cost. Sensitive data such as patients' electronic health information should be encrypted before outsourcing into the cloud. Many traditional encryption methods are used for protecting data in the cloud, but unable to perform computation on encrypted data. Homomorphic encryption operates directly on the ciphertext. In this study, a Secure Partially Homomorphic Encryption (SPHE) algorithm is proposed to secure the outsourced data and perform multiplication and division operations on the ciphertext. The access control policy in the cloud environment is more flexible. An attacker can easily collect sensitive data by abusing the access policy of another user. Therefore, the database privacy is compromised. Creating a role hierarchy and managing the session is difficult in the cloud environment. The above issues motivate us to develop a model which is the integration of the proposed scheme SPHE with role-based user policy. The model is implemented in Eclipse IDE (Integrated Development Environment) and AWS (Amazon Web Service) Toolkit for Eclipse and deployed in Amazon Elastic Beanstalk (EB) environment. This model is particularly used for securing the patient e-health details and performing computation on outsourced data. The patient details are encrypted by the algorithm SPHE and uploaded in AWS S3 (Simple Storage Service) bucket. The users are created by AWS Identity and Access Management (IAM) service and the access level policy is defined based on user roles in EB environment. The proposed model performance is studied by comparing with other partially homomorphic methods Elgamal, Pailler, and Benaloh. This model achieves data integrity and data confidentiality using the role-based user policy with SPHE.
引用
收藏
页码:559 / 568
页数:10
相关论文
共 50 条
  • [41] Privacy Protection and Security for Medical Images Using Homomorphic Encryption Based Reversible Data Hiding
    Liu, Jianyi
    Zhao, Kaifeng
    Zhang, Ru
    [J]. BASIC & CLINICAL PHARMACOLOGY & TOXICOLOGY, 2019, 124 : 27 - 28
  • [42] A fully homomorphic–elliptic curve cryptography based encryption algorithm for ensuring the privacy preservation of the cloud data
    G. Prabu Kanna
    V. Vasudevan
    [J]. Cluster Computing, 2019, 22 : 9561 - 9569
  • [43] Securing Organization's Data: A Role-Based Authorized Keyword Search Scheme With Efficient Decryption
    Sultan, Nazatul Haque
    Laurent, Maryline
    Varadharajan, Vijay
    [J]. IEEE TRANSACTIONS ON CLOUD COMPUTING, 2023, 11 (01) : 25 - 43
  • [44] Efficient Multi-keyword Ranked Search over Outsourced Cloud Data based on Homomorphic Encryption
    Nie, Mengxi
    Ran, Peng
    Yang, HaoMiao
    [J]. 2016 8TH INTERNATIONAL CONFERENCE ON COMPUTER AND AUTOMATION ENGINEERING (ICCAE 2016), 2016, 56
  • [45] Achieving Secure Role-Based Access Control on Encrypted Data in Cloud Storage
    Zhou, Lan
    Varadharajan, Vijay
    Hitchens, Michael
    [J]. IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2013, 8 (12) : 1947 - 1960
  • [46] Enhancing Cloud Based Information System Security Using the Role and Identity Based Access Control with Fully Homomorphic Encryption
    Altameem, Torki
    [J]. JOURNAL OF MEDICAL IMAGING AND HEALTH INFORMATICS, 2016, 6 (06) : 1445 - 1450
  • [47] Ciphertext-Policy Attribute-Based Encryption with Multi-Keyword Search over Medical Cloud Data
    Yin, Changchun
    Wang, Hao
    Zhou, Lu
    Fang, Liming
    [J]. 2020 IEEE 19TH INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS (TRUSTCOM 2020), 2020, : 277 - 284
  • [48] Expressive Ciphertext Policy Attribute-Based Searchable Encryption for Medical Records in Cloud
    Wu, Qing
    Ma, Xujin
    Zhang, Leyou
    Chen, Yanru
    [J]. Ma, Xujin (mxj419@126.com), 1600, Femto Technique Co., Ltd. (23): : 461 - 472
  • [49] A fully homomorphic-elliptic curve cryptography based encryption algorithm for ensuring the privacy preservation of the cloud data
    Kanna, G. Prabu
    Vasudevan, V.
    [J]. CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2019, 22 (Suppl 4): : S9561 - S9569
  • [50] Trust-based Secure Cloud Data Storage with Cryptographic Role-based Access Control
    Zhou, Lan
    Varadharajan, Vijay
    Hitchens, Michael
    [J]. PROCEEDINGS OF THE 10TH INTERNATIONAL CONFERENCE ON SECURITY AND CRYPTOGRAPHY (SECRYPT 2013), 2013, : 62 - 73