A Hierarchical Multi Blockchain for Fine Grained Access to Medical Data

被引:24
|
作者
Malamas, Vangelis [1 ]
Kotzanikolaou, Panayiotis [1 ]
Dasaklis, Thomas K. [1 ]
Burmester, Mike [2 ]
机构
[1] Univ Piraeus, Dept Informat, Piraeus 18534, Greece
[2] Florida State Univ, Dept Comp Sci, Tallahassee, FL 32306 USA
来源
IEEE ACCESS | 2020年 / 8卷
关键词
Stakeholders; Encryption; Hospitals; Data privacy; Medical data; attribute based encryption; fine-grained access control; blockchain; smart contracts; multichain; tailored forensics; distributed trust management; revocation; ATTRIBUTE-BASED ENCRYPTION; HEALTH; PRIVACY; SECURITY; FRAMEWORK; SCHEME;
D O I
10.1109/ACCESS.2020.3011201
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The health care ecosystem involves various interconnected stakeholders with different, and sometimes conflicting security and privacy needs. Sharing medical data, sometimes generated by remote medical devices, is a challenging task. Although several solutions exist in the literature covering functional requirements such as interoperability and scalability, as well as security & privacy requirements such as fine-grained access control and data privacy, balancing between them is not a trivial task as off-the-shelf solutions do not exist. On one hand, centralized cloud architectures provide scalability and interoperable access, but make strong trust assumptions. On the other, decentralized blockchain based solutions favor data privacy and independent trust management, but typically do not support dynamic changes of the underlying trust domains. To cover this gap, in this paper, we present a novel hierarchical multi expressive blockchain architecture. At the top layer, a proxy blockchain enables independently managed trust authorities to interoperate. End-users from different health care domains, such as hospitals or device manufacturers are able to access and securely exchange medical data, provided that a commonly agreed domain-wise access policy is enforced. At the bottom layer, one or more domain blockchains allow each domain (e.g. a hospital or device manufacturer) to enforce their policy and allow fine-grained access control with attribute-based encryption. This architecture is designed to provide the autonomous management of trusted medical data/devices and the transactions of mutually untrusted stakeholders, as well as an inherent forensics mechanism tailored for granular auditing. Smart contracts are used to enforce decentralized policies. Ciphertext-policy attribute based encryption (CP-ABE) is used to distribute the decryption process among end users and the system, as well as support an efficient credential revocation mechanism. We demonstrate the efficiency of the proposed architecture through a proof of concept implementation. Finally we analyse the major security and performance characteristics.
引用
收藏
页码:134393 / 134412
页数:20
相关论文
共 50 条
  • [1] Fine-Grained Data Access Control for Collaborative Process Execution on Blockchain
    Marangone, Edoardo
    Di Ciccio, Claudio
    Weber, Ingo
    [J]. BUSINESS PROCESS MANAGEMENT: BLOCKCHAIN, ROBOTIC PROCESS AUTOMATION, AND CENTRAL AND EASTERN EUROPE FORUM, 2022, 459 : 51 - 67
  • [2] Blockchain-based Bidirectional Updates on Fine-grained Medical Data
    Li, Chunmiao
    Cao, Yang
    Hu, Zhenjiang
    Yoshikawa, Masatoshi
    [J]. 2019 IEEE 35TH INTERNATIONAL CONFERENCE ON DATA ENGINEERING WORKSHOPS (ICDEW 2019), 2019, : 22 - 27
  • [3] FADB: A Fine-Grained Access Control Scheme for VANET Data Based on Blockchain
    Li, Hui
    Pei, Lishuang
    Liao, Dan
    Chen, Song
    Zhang, Ming
    Xu, Du
    [J]. IEEE ACCESS, 2020, 8 : 85190 - 85203
  • [4] BDSS: Blockchain-based Data Sharing Scheme With Fine-grained Access Control And Permission Revocation In Medical Environment
    Zhang, Lejun
    Zou, Yanfei
    Yousuf, Muhammad Hassam
    Wang, Weizheng
    Jin, Zilong
    Su, Yansen
    Seokhoon, Kim
    [J]. KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, 2022, 16 (05): : 1634 - 1652
  • [5] Secure Storage and Deletion Based on Blockchain for Cloud Data with Fine-grained Access Control
    Zhou Yousheng
    Chen Lujun
    [J]. JOURNAL OF ELECTRONICS & INFORMATION TECHNOLOGY, 2021, 43 (07) : 1856 - 1863
  • [6] Secure Storage and Deletion Based on Blockchain for Cloud Data with Fine-grained Access Control
    Zhou, Yousheng
    Chen, Lüjun
    [J]. Dianzi Yu Xinxi Xuebao/Journal of Electronics and Information Technology, 2021, 43 (07): : 1856 - 1863
  • [7] A blockchain-based framework for electronic medical records sharing with fine-grained access control
    Sun, Jin
    Ren, Lili
    Wang, Shangping
    Yao, Xiaomin
    [J]. PLOS ONE, 2020, 15 (10):
  • [8] Fine-grained Access Control Method for Blockchain Data Sharing based on Cloud Platform Big Data
    Qiu, Yu
    Sun, Biying
    Dang, Qian
    Du, Chunhui
    Li, Na
    [J]. INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2022, 13 (10) : 24 - 31
  • [9] Blockchain Based Multi-Authority Fine-Grained Access Control System With Flexible Revocation
    Xiao, Meiyan
    Huang, Qiong
    Miao, Ying
    Li, Shunpeng
    Susilo, Willy
    [J]. IEEE TRANSACTIONS ON SERVICES COMPUTING, 2022, 15 (06) : 3143 - 3155
  • [10] Bloccess: Enabling Fine-Grained Access Control Based on Blockchain
    Ding, Yepeng
    Sato, Hiroyuki
    [J]. JOURNAL OF NETWORK AND SYSTEMS MANAGEMENT, 2023, 31 (01)