首页> 外文学位 >A role and attribute based encryption approach to privacy and security in cloud based health services.
【24h】

A role and attribute based encryption approach to privacy and security in cloud based health services.

机译:基于角色和属性的加密方法,用于基于云的健康服务中的隐私和安全性。

获取原文
获取原文并翻译 | 示例

摘要

Cloud computing is a rapidly emerging computing paradigm which replaces static and expensive data centers, network and software infrastructure with dynamically scalable "cloud based" services offered by third party providers on an on-demand basis. However, with the potential for seemingly limitless scalability and reduced infrastructure costs comes new issues regarding security and privacy as processing and storage tasks are delegated to potentially untrustworthy cloud providers. For the eHealth industry this loss of control makes adopting the cloud problematic when compliance with privacy laws (such HIPAA, PIPEDA and PHIPA) is required and limits third party access to patient records.;This thesis presents a RBAC enabled solution to cloud privacy and security issues resulting from this loss of control to a potentially untrustworthy third party cloud provider, which remains both scalable and distributed. This is accomplished through four major components presented, implemented and evaluated within this thesis; the DOSGi based Health Cloud eXchange (HCX) architecture for managing and exchanging EHRs between authorized users, the Role Based Access Control as a Service (RBACaaS) model and web service providing RBAC policy enforcement and services to cloud applications, the Role Based Single Sign On (RBSSO) protocol, and the Distributed Multi-Authority Ciphertext-Policy Shared Attribute-Based Encryption (DMACPSABE) scheme for limiting access to sensitive records dependent on attributes (or roles) assigned to users. We show that when these components are combined the resulting system is both scalable (scaling at least linearly with users, request, records and attributes), secure and provides a level of protection from the cloud provider which preserves the privacy of user's records from any third party. Additionally, potential use cases are presented for each component as well as the overall system.
机译:云计算是一种快速兴起的计算范例,它可以由第三方提供商按需提供动态可扩展的“基于云”的服务,从而代替了静态且昂贵的数据中心,网络和软件基础架构。但是,由于看似无限的可扩展性和降低的基础架构成本的潜力,随之而来的是有关安全性和隐私性的新问题,因为处理和存储任务委托给了潜在的不可信任的云提供商。对于电子医疗保健行业来说,这种失控使得在需要遵守隐私法规(例如HIPAA,PIPEDA和PHIPA)时限制了采用云计算的难度,并限制了第三方对患者记录的访问。失去控制权给潜在的不可信任的第三方云提供商所造成的问题,该第三方云提供商仍然具有可扩展性和分布式性。这是通过本文提出,实施和评估的四个主要部分完成的。基于DOSGi的用于在授权用户之间管理和交换EHR的Health Cloud eXchange(HCX)架构,基于角色的访问控制即服务(RBACaaS)模型以及为云应用程序提供RBAC策略实施和服务的Web服务,基于角色的单点登录(RBSSO)协议和分布式多权限密文策略共享基于属性的加密(DMACPSABE)方案,用于限制对敏感记录的访问,这些敏感记录取决于分配给用户的属性(或角色)。我们表明,将这些组件组合在一起后,结果系统既具有可伸缩性(至少与用户,请求,记录和属性线性地伸缩),安全并且提供了来自云提供商的保护级别,从而可以保护用户记录不受任何第三方的影响派对。此外,还为每个组件以及整个系统提供了潜在的用例。

著录项

  • 作者

    Servos, Daniel.;

  • 作者单位

    Lakehead University (Canada).;

  • 授予单位 Lakehead University (Canada).;
  • 学科 Information Technology.;Computer Science.;Health Sciences Health Care Management.
  • 学位 M.S.
  • 年度 2012
  • 页码 241 p.
  • 总页数 241
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

  • 入库时间 2022-08-17 11:42:58

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号