• DocumentCode
    1918424
  • Title

    A Hierarchical Framework for Secure and Scalable EHR Sharing and Access Control in Multi-cloud

  • Author

    Huang, Jie ; Sharaf, Mohamed ; Huang, Chin-Tser

  • Author_Institution
    Dept. of Comput. Sci. & Eng., Univ. of South Carolina Columbia, Columbia, SC, USA
  • fYear
    2012
  • fDate
    10-13 Sept. 2012
  • Firstpage
    279
  • Lastpage
    287
  • Abstract
    Nowadays Electronic Health Records (EHRs) is a preferred method to store patients´ health records. The emergence of cloud computing services provides users with flexible access, large storage capability and low costs, which motivate EHR maintainers to consider migrating EHR data from their own storage to the cloud. However, securing EHRs in cloud is a major challenge. Several security properties need to be satisfied, such as data privacy, fine-grained access control and scalable access between different clouds. In this paper, we propose a secure and scalable framework for EHR data sharing which combines Identity-based Encryption and Attribute-based Encryption together to enforce access control policies. Through this framework a fine-grained access control scheme on EHR can be enforced and scalable access between different clouds is enabled. We also propose a novel design to address the problem of improper data access caused by a user with multiple roles and access rights to an EHR.
  • Keywords
    authorisation; cloud computing; cryptography; data privacy; medical information systems; EHR data sharing; access control policy; attribute-based encryption; cloud computing service; data access; data privacy; electronic health record; fine-grained access control; identity-based encryption; multicloud; patient health record; scalable EHR sharing; scalable access; secure EHR sharing; security property; storage capability; Access control; Databases; Encryption; Medical services; Public key; Servers; Electronic Health Records; attribute-based encryption; fine-grained access control; identity-based encryption; interleaving roles; multi-cloud computing;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Parallel Processing Workshops (ICPPW), 2012 41st International Conference on
  • Conference_Location
    Pittsburgh, PA
  • ISSN
    1530-2016
  • Print_ISBN
    978-1-4673-2509-7
  • Type

    conf

  • DOI
    10.1109/ICPPW.2012.42
  • Filename
    6337492