...
首页> 外文期刊>International Journal of Distributed Sensor Networks >Privacy-aware relationship semantics–based XACML access control model for electronic health records in hybrid cloud
【24h】

Privacy-aware relationship semantics–based XACML access control model for electronic health records in hybrid cloud

机译:基于隐私感知关系语义的XACML访问控制模型在混合云中的电子健康记录

获取原文
           

摘要

State-of-the-art progress in cloud computing encouraged the healthcare organizations to outsource the management of electronic health records to cloud service providers using hybrid cloud. A hybrid cloud is an infrastructure consisting of a private cloud (managed by the organization) and a public cloud (managed by the cloud service provider). The use of hybrid cloud enables electronic health records to be exchanged between medical institutions and supports multipurpose usage of electronic health records. Along with the benefits, cloud-based electronic health records also raise the problems of security and privacy specifically in terms of electronic health records access. A comprehensive and exploratory analysis of privacy-preserving solutions revealed that most current systems do not support fine-grained access control or consider additional factors such as privacy preservation and relationship semantics. In this article, we investigated the need of a privacy-aware fine-grained access control model for the hybrid cloud. We propose a privacy-aware relationship semantics–based XACML access control model that performs hybrid relationship and attribute-based access control using extensible access control markup language. The proposed approach supports fine-grained relation-based access control with state-of-the-art privacy mechanism named Anatomy for enhanced multipurpose electronic health records usage. The proposed (privacy-aware relationship semantics–based XACML access control model) model provides and maintains an efficient privacy versus utility trade-off. We formally verify the proposed model (privacy-aware relationship semantics–based XACML access control model) and implemented to check its effectiveness in terms of privacy-aware electronic health records access and multipurpose utilization. Experimental results show that in the proposed (privacy-aware relationship semantics–based XACML access control model) model, access policies based on relationships and electronic health records anonymization can perform well in terms of access policy response time and space storage.
机译:云计算方面的最新进展鼓励医疗保健组织使用混合云将电子健康记录的管理外包给云服务提供商。混合云是由私有云(由组织管理)和公共云(由云服务提供商管理)组成的基础架构。混合云的使用使电子医疗记录可以在医疗机构之间进行交换,并支持电子医疗记录的多用途使用。除了这些好处外,基于云的电子病历还特别在电子病历访问方面引发了安全性和隐私性问题。对隐私保护解决方案的全面探索性分析表明,大多数当前系统不支持细粒度的访问控制,也不考虑诸如隐私保护和关系语义之类的其他因素。在本文中,我们调查了对混合云使用具有隐私保护意识的细粒度访问控制模型的需求。我们提出了一种基于隐私感知关系语义的XACML访问控制模型,该模型使用可扩展的访问控制标记语言执行混合关系和基于属性的访问控制。所提出的方法使用名为 Anatomy的最新隐私机制来支持基于细粒度关系的访问控制,以增强多功能电子病历的使用。提出的(基于隐私感知关系语义的XACML访问控制模型)模型提供并维护了有效的隐私与实用程序之间的权衡。我们正式验证了所提出的模型(基于隐私感知关系语义的XACML访问控制模型),并已实施以检查其在感知隐私的电子健康记录访问和多用途利用方面的有效性。实验结果表明,在所提出的(基于隐私感知的关系语义的XACML访问控制模型)模型中,基于关系和电子病历匿名化的访问策略在访问策略响应时间和空间存储方面可以表现良好。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号