A Patient-Centric Attribute Based Access Control Scheme for Secure Sharing of Personal Health Records Using Cloud Computing

被引:0
|
作者
Pussewalage, Harsha S. Gardiyawasam [1 ]
Oleshchuk, Vladimir A. [1 ]
机构
[1] Univ Agder UiA, Dept Informat & Commun Technol, N-4898 Grimstad, Norway
关键词
D O I
10.1109/CIC.2016.18
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Personal health records (PHR) are an emerging health information exchange model, which facilitates PHR owners to efficiently share their private health data among a variety of users including healthcare professionals as well as family and friends. PHRs are usually outsourced and stored in third-party cloud platforms which relieves PHR owners from the burden of managing their PHR data while achieving better availability of health data. However, outsourcing private health data raises significant privacy concerns because there is a higher risk of leaking health information to unauthorized parties. To ensure PHR owners' control of their outsourced PHR data, attribute based encryption (ABE) mechanisms have been considered. However, such existing PHR solutions suffer from inflexibility in access especially due to the limitations associated with ABE mechanisms. In this paper, we propose a patient-centric, attribute based PHR sharing scheme which can provide flexible access for both professional users such as doctors as well as personal users such as family and friends. In the proposed solution, each PHR file is encrypted and stored in a healthcare cloud along with an attribute based access policy which controls the access to the encrypted resource. We use an attribute based authorization mechanism to authorize access requesting users to access a given PHR resource based on the associated access policy while utilizing a proxy re-encryption scheme to facilitate the authorized users to decrypt the required PHR files. Furthermore, we have demonstrated that the proposed scheme can overcome the access inflexibility issues associated with the existing ABE based PHR sharing schemes while maintaining an adequate level of security and privacy.
引用
收藏
页码:46 / 53
页数:8
相关论文
共 50 条
  • [21] Secure Decentralized Attribute-Based Sharing of Personal Health Records With Blockchain
    Zhang, Leyou
    Zhang, Tianshuai
    Wu, Qing
    Mu, Yi
    Rezaeibagha, Fatemeh
    [J]. IEEE INTERNET OF THINGS JOURNAL, 2021, 9 (14): : 12482 - 12496
  • [22] Secure Decentralized Attribute-Based Sharing of Personal Health Records with Blockchain
    Zhang, Leyou
    Zhang, Tianshuai
    Wu, Qing
    Mu, Yi
    Rezaeibagha, Fatemeh
    [J]. IEEE Internet of Things Journal, 2022, 9 (14) : 12482 - 12496
  • [23] BC-PC-Share: Blockchain-Based Patient-Centric Data Sharing Scheme for PHRs in Cloud Computing
    Lan, Caihui
    Li, Haifeng
    [J]. CMES-COMPUTER MODELING IN ENGINEERING & SCIENCES, 2023, 136 (03): : 2985 - 3010
  • [24] A Blockchain-based access control scheme with multiple attribute authorities for secure cloud data sharing
    Qin, Xuanmei
    Huang, Yongfeng
    Yang, Zhen
    Li, Xing
    [J]. JOURNAL OF SYSTEMS ARCHITECTURE, 2021, 112
  • [25] Personal Health Records Integrity Verification Using Attribute Based Proxy Signature in Cloud Computing
    Liu, Ximeng
    Ma, Jianfeng
    Xiong, Jinbo
    Zhang, Tao
    Li, Qi
    [J]. INTERNET AND DISTRIBUTED COMPUTING SYSTEMS, IDCS 2013, 2013, 8223 : 238 - 251
  • [26] SeSPHR: A Methodology for Secure Sharing of Personal Health Records in the Cloud
    Ali, Mazhar
    Abbas, Assad
    Khan, Muhammad Usman Shahid
    Khan, Samee U.
    [J]. IEEE TRANSACTIONS ON CLOUD COMPUTING, 2021, 9 (01) : 347 - 359
  • [27] An Efficient Hierarchical Attribute Set Based Encryption Scheme with Revocation for Outsourcing Personal Health Records in Cloud Computing
    Perumal, B.
    Rajasekaran, Pallikonda M.
    Duraiyarasan, S.
    [J]. PROCEEDINGS OF THE 2013 INTERNATIONAL CONFERENCE ON ADVANCED COMPUTING & COMMUNICATION SYSTEMS (ICACCS), 2013,
  • [28] Fine-grained Access Control for Personal Health Records in Cloud Computing
    Li, Wei
    Ni, Wei
    Liu, Dongxi
    Liu, Ren Ping
    Wang, Peishun
    Luo, Shoushan
    [J]. 2017 IEEE 85TH VEHICULAR TECHNOLOGY CONFERENCE (VTC SPRING), 2017,
  • [29] Flexible Access Control for Outsourcing Personal Health Services in Cloud Computing using Hierarchical Attribute Set Based Encryption
    Kandasamy, V
    Papitha, E.
    [J]. 2013 INTERNATIONAL CONFERENCE ON INFORMATION COMMUNICATION AND EMBEDDED SYSTEMS (ICICES), 2013, : 569 - 571
  • [30] Secure Personal Health Record System with Attribute-Based Encryption in Cloud Computing
    Yan, Hongyang
    Li, Xuan
    Du, Jiali
    [J]. 2014 NINTH INTERNATIONAL CONFERENCE ON P2P, PARALLEL, GRID, CLOUD AND INTERNET COMPUTING (3PGCIC), 2014, : 329 - 332