• DocumentCode
    2589952
  • Title

    A web-based wireless mobile system design of security and privacy framework for u-Healthcare

  • Author

    Yu, Weider D. ; Gummadikayala, Roopa ; Mudumbi, Sriram

  • Author_Institution
    Comput. Eng. Dept., San Jose State Univ., San Jose, CA
  • fYear
    2008
  • fDate
    7-9 July 2008
  • Firstpage
    96
  • Lastpage
    101
  • Abstract
    The research project aims at designing and implementing a Web based wireless mobile system security and privacy framework that is centered on the concepts of ubiquitous healthcare services provided to the patients in rural or remote areas from distant hospitals. With this system framework, a physician can securely access and carry the patient information from a mobile device, update the patient information offline on the mobile device and synchronize the data with the server at a later time. The system provides high security to the highly sensitive patient health records. It provides various layers of security and privacy controls to access the patient information. This framework also maintains security levels both at system level and user level to constrain any attacks on the system. Data on the mobile device also is protected from being tampered or hacked using password protections and encryption. This application framework demonstrates a multi-tiered SOA (service oriented architecture) involving mobile client, Web services, security agents, business logic layer, data access layer and database in secured environments. This framework uses SAML (Security Assertion Markup Language) security assertions for exchanging the secured user identification information between the server and mobile clients. Due to the length of the paper for the entire research project, the original paper is divided into two papers; the first paper emphasizes the system architecture and design and the second paper emphasizes the implementation and performance evaluation.
  • Keywords
    Web services; cryptography; data privacy; database management systems; health care; mobile computing; records management; software architecture; Security Assertion Markup Language security assertions; Web services; business logic layer; data access layer; data hacking; data synchronization; database; encryption; mobile client; multitiered service oriented architecture; password protections; patient health records; performance evaluation; privacy framework; security agents; system architecture; u-healthcare; ubiquitous healthcare services; wireless mobile system design; Communication system security; Cryptography; Data security; Hospitals; Information security; Medical services; Privacy; Protection; Service oriented architecture; Web services; Privacy; Security; Web-Based System; Wireless Mobile; u-Healthcare;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    e-health Networking, Applications and Services, 2008. HealthCom 2008. 10th International Conference on
  • Conference_Location
    Singapore
  • Print_ISBN
    978-1-4244-2280-7
  • Electronic_ISBN
    978-1-4244-2281-4
  • Type

    conf

  • DOI
    10.1109/HEALTH.2008.4600118
  • Filename
    4600118