Multi-part file encryption for electronic health records cloud

X. Hei, Shan Lin
{"title":"Multi-part file encryption for electronic health records cloud","authors":"X. Hei, Shan Lin","doi":"10.1145/2633651.2637473","DOIUrl":null,"url":null,"abstract":"The rapid advancements of mobile technologies promote many applications for public health, such as continuous health monitoring. The inherent mobility of these applications imposes new security and privacy challenges. Since mobile devices usually use public network, such as WiFi, to transfer patient data, patient data is exposed to various security breaches. Moreover, patient data stored on cloud servers are also exposed to malicious attacks. Therefore, it's crucial to encrypt patient data for secure transfer and storage. To address this problem, we present a new access control model for managing patient data. Our approach utilizes a key server for key assignment, which associates a key with each user based on his specific role in medical applications. The doctors, nurses, family members, and insurance companies of a patient can access different sets of patient data from cloud given their keys. Different from existing attribute based encryption, which protects data from inappropriate disclosure for individual files, our design provides a fine-grained access control scheme that protects any specified part of a file. Our role-based access control provides high security, accuracy, and update flexibility for patient data management. Performance evaluations of our solution are stated in the paper.","PeriodicalId":150900,"journal":{"name":"International Workshop on Pervasive Wireless Healthcare","volume":"18 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2014-08-11","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"3","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"International Workshop on Pervasive Wireless Healthcare","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1145/2633651.2637473","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 3

Abstract

The rapid advancements of mobile technologies promote many applications for public health, such as continuous health monitoring. The inherent mobility of these applications imposes new security and privacy challenges. Since mobile devices usually use public network, such as WiFi, to transfer patient data, patient data is exposed to various security breaches. Moreover, patient data stored on cloud servers are also exposed to malicious attacks. Therefore, it's crucial to encrypt patient data for secure transfer and storage. To address this problem, we present a new access control model for managing patient data. Our approach utilizes a key server for key assignment, which associates a key with each user based on his specific role in medical applications. The doctors, nurses, family members, and insurance companies of a patient can access different sets of patient data from cloud given their keys. Different from existing attribute based encryption, which protects data from inappropriate disclosure for individual files, our design provides a fine-grained access control scheme that protects any specified part of a file. Our role-based access control provides high security, accuracy, and update flexibility for patient data management. Performance evaluations of our solution are stated in the paper.
查看原文
分享 分享
微信好友 朋友圈 QQ好友 复制链接
本刊更多论文
电子健康记录云的多部分文件加密
移动技术的快速发展促进了公共卫生的许多应用,例如持续健康监测。这些应用程序固有的移动性带来了新的安全和隐私挑战。由于移动设备通常使用公共网络(如WiFi)传输患者数据,因此患者数据面临各种安全漏洞。此外,存储在云服务器上的患者数据也容易受到恶意攻击。因此,对患者数据进行加密以实现安全传输和存储至关重要。为了解决这个问题,我们提出了一个新的访问控制模型来管理患者数据。我们的方法利用密钥服务器进行密钥分配,该服务器根据每个用户在医疗应用程序中的特定角色将密钥与每个用户关联。病人的医生、护士、家庭成员和保险公司只要有钥匙,就可以从云端访问不同的病人数据集。与现有的基于属性的加密不同,我们的设计提供了一种细粒度的访问控制方案,可以保护文件的任何指定部分。我们基于角色的访问控制为患者数据管理提供了高安全性、准确性和更新灵活性。本文对该方案进行了性能评价。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 去求助
来源期刊
自引率
0.00%
发文量
0
期刊最新文献
Toward automated categorization of mobile health and fitness applications Mobile health: medication abuse and addiction Multi-part file encryption for electronic health records cloud Designing user-specific plug-n-play into body area networks Energy constraint-aware routing protocol for data transmission in ad hoc medical care networks
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
已复制链接
已复制链接
快去分享给好友吧!
我知道了
×
扫码分享
扫码分享
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1