Secure Updatable Storage Access Control System for EHRs in the Cloud

被引:5
|
作者
Wang, Jingwei [1 ,2 ]
Yin, Xinchun [3 ,4 ]
Ning, Jianting [1 ]
Xu, Shengmin [1 ]
Xu, Guowen [5 ]
Huang, Xinyi [6 ]
机构
[1] Fujian Normal Univ, Fuzhou 350007, Peoples R China
[2] Yangzhou Univ, Sch Informat Engn, Yangzhou 225127, Peoples R China
[3] Yangzhou Univ, Guangling Coll, Yangzhou 225128, Peoples R China
[4] Guangdong Prov Key Lab Informat Secur Technol, Guangzhou 510275, Peoples R China
[5] Univ Elect Sci & Technol China, Sch Comp Sci & Engn, Chengdu 611731, Peoples R China
[6] Hong Kong Univ Sci & Technol, Thrust Artificial Intelligence, Informat Hub, Guangzhou 999077, Peoples R China
基金
中国国家自然科学基金;
关键词
Index Terms-Electronic health record; dynamic access control; outsourced decryption; updatable storage; attribute-based encryption; conjunctive normal form; ENCRYPTION; FRAMEWORK; EFFICIENT; SENSOR;
D O I
10.1109/TSC.2022.3232230
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With an increasing number of IoT devices being deployed in healthcare, massive amounts of electronic health records (EHRs) are generated and shared in the cloud. To preserve data privacy, one promising data-sharing tool named attribute-based encryption (ABE) has been widely employed. However, it is a challenge to achieve flexible data sharing without loss of confidentiality when authorized users are dynamic. Another challenge is how to guarantee fleet data access time when resource-limited devices are used. In this article, a dynamic access policy ABE (DAP-ABE) system for EHRs in the cloud is proposed. The cloud server can update the access policy without sensitive information, while decryption keys of authorized users do not need to be updated. Authorized users enjoy approximately 0.07 ms data access by outsourcing the majority of the decryption overhead to the cloud server. Furthermore, a verification procedure is embedded in DAP-ABE to check the identities of patients in the data sharing stage, which ensures that no malicious user can upload invalid EHRs. Extensive experiments demonstrate the feasibility and efficiency of the DAP-ABE system.
引用
收藏
页码:2939 / 2953
页数:15
相关论文
共 50 条
  • [1] Developing Secure Cloud Storage System Using Access Control Models
    Ubale, S. A.
    Apte, S. S.
    Bokefode, J. D.
    PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON DATA ENGINEERING AND COMMUNICATION TECHNOLOGY, ICDECT 2016, VOL 2, 2017, 469 : 141 - 147
  • [2] Blockchain based Secure Data Storage and Access Control System using Cloud
    Desai, Shubham
    Deshmukh, Onkar
    Shelke, Rahul
    Choudhary, Harish
    Sambhare, S. S.
    Yadav, Arjunsingh
    2019 5TH INTERNATIONAL CONFERENCE ON COMPUTING, COMMUNICATION, CONTROL AND AUTOMATION (ICCUBEA), 2019,
  • [3] A robust and secure multi-authority access control system for cloud storage
    Jin Gu
    Jianqiang Shen
    Baoyun Wang
    Peer-to-Peer Networking and Applications, 2021, 14 : 1488 - 1499
  • [4] A Survey: Secure Cloud Data Storage and Access Control System Using Blockchain
    Patel, Kashyap
    Modi, Ritiksha
    Sharma, Shital
    Patel, Minal
    SOFT COMPUTING FOR SECURITY APPLICATIONS, ICSCS 2022, 2023, 1428 : 195 - 207
  • [5] A robust and secure multi-authority access control system for cloud storage
    Gu, Jin
    Shen, Jianqiang
    Wang, Baoyun
    PEER-TO-PEER NETWORKING AND APPLICATIONS, 2021, 14 (03) : 1488 - 1499
  • [6] Sanitizable Access Control System for Secure Cloud Storage Against Malicious Data Publishers
    Susilo, Willy
    Jiang, Peng
    Lai, Jianchang
    Guo, Fuchun
    Yang, Guomin
    Deng, Robert H.
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2022, 19 (03) : 2138 - 2148
  • [7] An access control and authentication scheme for secure data sharing in the decentralized cloud storage system
    Khatiwada, Pankaj
    Yang, Bian
    2022 5TH CONFERENCE ON CLOUD AND INTERNET OF THINGS, CIOT, 2022, : 137 - 144
  • [8] Secure, efficient and revocable multi-authority access control system in cloud storage
    Li, Qi
    Ma, Jianfeng
    Li, Rui
    Liu, Ximeng
    Xiong, Jinbo
    Chen, Danwei
    COMPUTERS & SECURITY, 2016, 59 : 45 - 59
  • [9] Enabling Ciphertext Deduplication for Secure Cloud Storage and Access Control
    Tang, Heyi
    Cui, Yong
    Guan, Chaowen
    Wu, Jianping
    Weng, Jian
    Ren, Kui
    ASIA CCS'16: PROCEEDINGS OF THE 11TH ACM ASIA CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2016, : 59 - 70
  • [10] Detection of Access Control Violations in the Secure Sharing of Cloud Storage
    Batista de Carvalho, Carlos Andre
    de Castro Andrade, Rossana Maria
    Agoulmine, Nazim
    de Castro, Miguel Franklin
    CLOSER: PROCEEDINGS OF THE 8TH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING AND SERVICES SCIENCE, 2018, : 124 - 135