DocumentCode
1918424
Title
A Hierarchical Framework for Secure and Scalable EHR Sharing and Access Control in Multi-cloud
Author
Huang, Jie ; Sharaf, Mohamed ; Huang, Chin-Tser
Author_Institution
Dept. of Comput. Sci. & Eng., Univ. of South Carolina Columbia, Columbia, SC, USA
fYear
2012
fDate
10-13 Sept. 2012
Firstpage
279
Lastpage
287
Abstract
Nowadays Electronic Health Records (EHRs) is a preferred method to store patients´ health records. The emergence of cloud computing services provides users with flexible access, large storage capability and low costs, which motivate EHR maintainers to consider migrating EHR data from their own storage to the cloud. However, securing EHRs in cloud is a major challenge. Several security properties need to be satisfied, such as data privacy, fine-grained access control and scalable access between different clouds. In this paper, we propose a secure and scalable framework for EHR data sharing which combines Identity-based Encryption and Attribute-based Encryption together to enforce access control policies. Through this framework a fine-grained access control scheme on EHR can be enforced and scalable access between different clouds is enabled. We also propose a novel design to address the problem of improper data access caused by a user with multiple roles and access rights to an EHR.
Keywords
authorisation; cloud computing; cryptography; data privacy; medical information systems; EHR data sharing; access control policy; attribute-based encryption; cloud computing service; data access; data privacy; electronic health record; fine-grained access control; identity-based encryption; multicloud; patient health record; scalable EHR sharing; scalable access; secure EHR sharing; security property; storage capability; Access control; Databases; Encryption; Medical services; Public key; Servers; Electronic Health Records; attribute-based encryption; fine-grained access control; identity-based encryption; interleaving roles; multi-cloud computing;
fLanguage
English
Publisher
ieee
Conference_Titel
Parallel Processing Workshops (ICPPW), 2012 41st International Conference on
Conference_Location
Pittsburgh, PA
ISSN
1530-2016
Print_ISBN
978-1-4673-2509-7
Type
conf
DOI
10.1109/ICPPW.2012.42
Filename
6337492
Link To Document