首页> 外文期刊>Journal of High Speed Networks >Symmetric key-based patient controlled secured electronic health record management protocol
【24h】

Symmetric key-based patient controlled secured electronic health record management protocol

机译:基于对称密钥的患者控制的安全电子病历管理协议

获取原文
获取原文并翻译 | 示例
       

摘要

In our progressive era of technology, digitization is becoming the link between businesses, people, processes, and data. Since digitization is now a common practice for storing and retrieving data, Electronic Health Record (EHR) management services are rapidly becoming popular as it allows users to store and access their data anywhere at any time. EHR management is bringing many benefits including easy storage, cost effectiveness, shareable with health professionals to a remote location, etc. However it is very challenging to adopt cloud-based EHR services, due to the risk of data breaches and the resulting compromise of patient data. Since EHR stores very sensitive data, a number of security properties including privacy, secrecy, integrity, authenticity and availability of data must be ensured during data transmission, storing and sharing with health professionals. In this study, we have studied symmetric key based technique in designing EHR management protocol. The protocol allows the patient to handle the responsibility of authorizing data access, thus this is a patient-centric protocol. Attributes (e.g., specialization, location, affiliated hospital, etc.) of a health professional is used to delegate access to EHR of a patient, and thus attribute-based access control has been achieved. The protocol we have designed is then validated using AVISPA, an industry-strength security protocol validation tool. AVISPA has confirmed our protocol free from known attacks and confirmed the desired security properties as well.
机译:在我们不断发展的技术时代,数字化正在成为业务,人员,流程和数据之间的链接。由于数字化现在已成为存储和检索数据的一种普遍做法,因此电子健康记录(EHR)管理服务迅速普及,因为它允许用户随时随地存储和访问其数据。电子病历管理带来许多好处,包括易于存储,成本效益,可与卫生专业人员共享到远程位置等。然而,由于存在数据泄露风险和由此导致的患者危害,采用基于云的电子病历服务非常具有挑战性数据。由于EHR存储非常敏感的数据,因此在数据传输,存储和与卫生专业人员共享期间,必须确保许多安全属性,包括隐私,保密,完整性,真实性和数据可用性。在这项研究中,我们研究了在设计EHR管理协议时基于对称密钥的技术。该协议允许患者处理授权访问数据的责任,因此这是以患者为中心的协议。卫生专业人员的属性(例如专业,位置,附属医院等)用于委派患者对EHR的访问权限,从而实现了基于属性的访问控制。然后,我们使用行业实力强大的安全协议验证工具AVISPA对我们设计的协议进行验证。 AVISPA已确认我们的协议不受已知攻击的影响,并且还确认了所需的安全性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号