An attribute based access control scheme for secure sharing of electronic health records

H. S. G. Pussewalage, V. Oleshchuk
{"title":"An attribute based access control scheme for secure sharing of electronic health records","authors":"H. S. G. Pussewalage, V. Oleshchuk","doi":"10.1109/HealthCom.2016.7749516","DOIUrl":null,"url":null,"abstract":"Electronic health records (EHRs) play a vital role in modern health industry, allowing the possibility of flexible sharing of health information in the quest of provisioning advanced and efficient healthcare services for the users. Although sharing of EHRs has significant benefits, given that such records contain lot of sensitive information, secure sharing of EHRs is of paramount importance. Thus, there is a need for the realization of sophisticated access control mechanisms for secure sharing of EHRs, which has attracted significant interest from the research community. The most prominent access control schemes for sharing of EHRs found in literature are role based and such solutions have the drawback of requiring the users to be registered in the system. Therefore, we propose a secure attribute based EHR sharing scheme using selective disclosure of attributes, which can meet the security requirements of EHRs. The proposed model is policy based and the access decisions are made based on the possibility of a user for being able to provide a proof that the user possesses a set of attributes that satisfies the access policy referenced to the access requested resource. Furthermore, the proposed model is capable of granting access for registered users in the system as well as unregistered but legitimate users, paving the way towards realizing a secure and flexible EHR sharing scheme.","PeriodicalId":167022,"journal":{"name":"2016 IEEE 18th International Conference on e-Health Networking, Applications and Services (Healthcom)","volume":"23 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2016-09-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"22","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2016 IEEE 18th International Conference on e-Health Networking, Applications and Services (Healthcom)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/HealthCom.2016.7749516","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 22

Abstract

Electronic health records (EHRs) play a vital role in modern health industry, allowing the possibility of flexible sharing of health information in the quest of provisioning advanced and efficient healthcare services for the users. Although sharing of EHRs has significant benefits, given that such records contain lot of sensitive information, secure sharing of EHRs is of paramount importance. Thus, there is a need for the realization of sophisticated access control mechanisms for secure sharing of EHRs, which has attracted significant interest from the research community. The most prominent access control schemes for sharing of EHRs found in literature are role based and such solutions have the drawback of requiring the users to be registered in the system. Therefore, we propose a secure attribute based EHR sharing scheme using selective disclosure of attributes, which can meet the security requirements of EHRs. The proposed model is policy based and the access decisions are made based on the possibility of a user for being able to provide a proof that the user possesses a set of attributes that satisfies the access policy referenced to the access requested resource. Furthermore, the proposed model is capable of granting access for registered users in the system as well as unregistered but legitimate users, paving the way towards realizing a secure and flexible EHR sharing scheme.
查看原文
分享 分享
微信好友 朋友圈 QQ好友 复制链接
本刊更多论文
用于安全共享电子健康记录的基于属性的访问控制方案
电子健康记录(EHRs)在现代医疗行业中发挥着至关重要的作用,它允许灵活地共享健康信息,从而为用户提供先进、高效的医疗服务。虽然共享电子病历有很大的好处,但鉴于这些记录包含大量敏感信息,安全共享电子病历至关重要。因此,有必要实现复杂的访问控制机制来安全共享电子病历,这已经引起了研究界的极大兴趣。文献中发现的用于共享电子病历的最突出的访问控制方案是基于角色的,这种解决方案的缺点是需要用户在系统中注册。因此,我们提出了一种基于安全属性的电子病历共享方案,该方案采用选择性的属性公开,能够满足电子病历的安全要求。所建议的模型是基于策略的,访问决策是基于用户能够提供证明的可能性来做出的,证明用户拥有一组属性,这些属性满足访问请求资源所引用的访问策略。此外,所建议的模型能够为系统中的注册用户以及未注册但合法的用户授予访问权限,为实现安全灵活的电子病历共享方案铺平了道路。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 去求助
来源期刊
自引率
0.00%
发文量
0
期刊最新文献
A hybrid quality evaluation approach based on fuzzy inference system for medical video streaming over small cell technology Mobile self-management application for COPD patients with comorbidities: A usability study A hierarchical lazy smoking detection algorithm using smartwatch sensors Analysis of thigh cross-sectional proportion using the portable ultrasound imaging system Computer-aided diagnosis in medical imaging: Review of legal barriers to entry for the commercial systems
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
已复制链接
已复制链接
快去分享给好友吧!
我知道了
×
扫码分享
扫码分享
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1