Design of RSA-CA Based E-Health System for Supporting HIPAA Privacy-Security Regulations

被引:3
|
作者
Ray, Sangram [1 ]
Biswas, G. P. [1 ]
机构
[1] Indian Sch Mines, Dept Comp Sci & Engn, Dhanbad 826004, Bihar, India
关键词
Health Insurance Portability and Accountability Act (HIPAA); Certificate Authority (CA); Protected Health Information (PHI); e-health security; Medical Center Server (MCS); Public Key Infrastructure (PKI); KEY MANAGEMENT;
D O I
10.1016/j.protcy.2012.10.116
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The privacy and the security regulations are two essential requirements of Health Insurance Portability and Accountability Act (HIPAA), recognized by US congress in 1996 as the US Federal Law followed by global e-health industry, in the protection of healthcare privacy. In this paper, a certificate authority (CA) based duality solution has been proposed to fulfill the HIPAA privacy and security regulations that supports both contract and smart card based systems. It presents a patient-centric e-health system based on RSA based public key certificate that allows secure sharing of healthcare information through internet. Doctors and relevant medical staff must have to take patients' permission for online access to patients' PHI data stored in the national medical center server (MCS). A copy of PHI text-data is stored in patients e-health smart card to support the duality. A random session key is generated in each appointment after prior authentication to upload and retrieve patients' PHI data to or from MCS. One advantage is that the proposed CA based e-health system is easy implementable using existing security standards, tools and products. Discussions regarding the fulfillment of HIPAA regulations and comparison with the existing schemes have been provided to show the better performance of our scheme. (C) 2012 The Authors. Published by Elsevier Ltd. Selection and/or peer-review under responsibility of the Department of Computer Science & Engineering, National Institute of Technology Rourkela
引用
收藏
页码:954 / 961
页数:8
相关论文
共 20 条
  • [1] A Survey on Security & Privacy Design in e-Health
    Ozkar, Mehmet
    Sandikkaya, Mehmet Tahir
    2020 5TH INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND ENGINEERING (UBMK), 2020, : 208 - 213
  • [2] A Certificate Authority (CA)-based cryptographic solution for HIPAA privacy/security regulations
    Ray, Sangram
    Biswas, G. P.
    JOURNAL OF KING SAUD UNIVERSITY-COMPUTER AND INFORMATION SCIENCES, 2014, 26 (02) : 170 - 180
  • [3] Security and Privacy in Cloud-Based E-Health System
    Sivan, Remya
    Zukarnain, Zuriati Ahmad
    SYMMETRY-BASEL, 2021, 13 (05):
  • [4] A Design of Security Framework for Data Privacy in e-Health System using Web Service
    Thiranant, Non
    Sain, Mangal
    Lee, HoonJae
    2014 16TH INTERNATIONAL CONFERENCE ON ADVANCED COMMUNICATION TECHNOLOGY (ICACT), 2014, : 40 - 43
  • [5] Enhanced e-Health Framework for Security and Privacy in Healthcare System
    Shrestha, N. M.
    Alsadoon, Abeer
    Prasad, P. W. C.
    Hourany, L.
    Elchouemi, A.
    2016 SIXTH INTERNATIONAL CONFERENCE ON DIGITAL INFORMATION PROCESSING AND COMMUNICATIONS (ICDIPC), 2016, : 75 - 79
  • [6] Security and privacy issues in e-health cloud-based system: A comprehensive content analysis
    Azeez, Nureni Ayofe
    Van der Vyver, Charles
    EGYPTIAN INFORMATICS JOURNAL, 2019, 20 (02) : 97 - 108
  • [7] Cloud-Based E-Health Systems: Security and Privacy Challenges and Solutions
    Dawoud, Mohanad
    Altilar, D. Turgay
    2017 INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND ENGINEERING (UBMK), 2017, : 861 - 865
  • [8] A Framework for Privacy and Security Model Based on Agents in E-Health Care Systems
    Alanezi, Mohammed Ateeq
    Khan, Z. Faizal
    EMERGING TRENDS IN INTELLIGENT COMPUTING AND INFORMATICS: DATA SCIENCE, INTELLIGENT INFORMATION SYSTEMS AND SMART COMPUTING, 2020, 1073 : 727 - 733
  • [9] A Patient Privacy-aware e-Health System based on Passive RFID
    Yeh, Kuo-Hui
    Lo, N. W.
    Wang, Chieh
    2012 9TH INTERNATIONAL CONFERENCE ON UBIQUITOUS INTELLIGENCE & COMPUTING AND 9TH INTERNATIONAL CONFERENCE ON AUTONOMIC & TRUSTED COMPUTING (UIC/ATC), 2012, : 967 - 972
  • [10] Security and Privacy in IoT-Cloud-Based e-Health Systems-A Comprehensive Review
    Butpheng, Chanapha
    Yeh, Kuo-Hui
    Xiong, Hu
    SYMMETRY-BASEL, 2020, 12 (07):