DocumentCode
2589952
Title
A web-based wireless mobile system design of security and privacy framework for u-Healthcare
Author
Yu, Weider D. ; Gummadikayala, Roopa ; Mudumbi, Sriram
Author_Institution
Comput. Eng. Dept., San Jose State Univ., San Jose, CA
fYear
2008
fDate
7-9 July 2008
Firstpage
96
Lastpage
101
Abstract
The research project aims at designing and implementing a Web based wireless mobile system security and privacy framework that is centered on the concepts of ubiquitous healthcare services provided to the patients in rural or remote areas from distant hospitals. With this system framework, a physician can securely access and carry the patient information from a mobile device, update the patient information offline on the mobile device and synchronize the data with the server at a later time. The system provides high security to the highly sensitive patient health records. It provides various layers of security and privacy controls to access the patient information. This framework also maintains security levels both at system level and user level to constrain any attacks on the system. Data on the mobile device also is protected from being tampered or hacked using password protections and encryption. This application framework demonstrates a multi-tiered SOA (service oriented architecture) involving mobile client, Web services, security agents, business logic layer, data access layer and database in secured environments. This framework uses SAML (Security Assertion Markup Language) security assertions for exchanging the secured user identification information between the server and mobile clients. Due to the length of the paper for the entire research project, the original paper is divided into two papers; the first paper emphasizes the system architecture and design and the second paper emphasizes the implementation and performance evaluation.
Keywords
Web services; cryptography; data privacy; database management systems; health care; mobile computing; records management; software architecture; Security Assertion Markup Language security assertions; Web services; business logic layer; data access layer; data hacking; data synchronization; database; encryption; mobile client; multitiered service oriented architecture; password protections; patient health records; performance evaluation; privacy framework; security agents; system architecture; u-healthcare; ubiquitous healthcare services; wireless mobile system design; Communication system security; Cryptography; Data security; Hospitals; Information security; Medical services; Privacy; Protection; Service oriented architecture; Web services; Privacy; Security; Web-Based System; Wireless Mobile; u-Healthcare;
fLanguage
English
Publisher
ieee
Conference_Titel
e-health Networking, Applications and Services, 2008. HealthCom 2008. 10th International Conference on
Conference_Location
Singapore
Print_ISBN
978-1-4244-2280-7
Electronic_ISBN
978-1-4244-2281-4
Type
conf
DOI
10.1109/HEALTH.2008.4600118
Filename
4600118
Link To Document