...
首页> 外文期刊>Future generation computer systems >On the design and analysis of protocols for Personal Health Record storage on Personal Data Server devices
【24h】

On the design and analysis of protocols for Personal Health Record storage on Personal Data Server devices

机译:关于在个人数据服务器设备上存储个人健康记录的协议的设计和分析

获取原文
获取原文并翻译 | 示例
           

摘要

AbstractThe electronic Personal Health Records (PHRs) such as medical history, lab reports, and insurance are stored in systems such as Microsoft Health Vault where a medical care provider or a patient is responsible for uploading and managing the health information. Storing PHRs in such a manner prohibits the patients from having complete control over their data and also may make the PHR system the target of security attacks. Towards this end, we proposed a new architecture, namely Personal Data Server overlay, where the data is stored on a set of Secure Portable Tokens (SPTs) that are under the control of individual users. SPTs are cheap, portable, and secure devices that combine the computing power and tamper-resistant properties of the smart cards and the storage capacity of NAND flash memory chips and they can act as a Personal Data Server (PDS).We need formal assurance of data availability when information is stored in PDS overlays. Thus, data must be replicated at multiple PDSs. We propose a data replication protocol that ensures that the PHRs for each user have replicas in the PDS overlay. It is crucial to ensure correctness of the data replication protocol. Consequently, we formalize the protocol using the Unified Modeling Language (UML) and specify a number of desirable properties. We need to provide formal assurance of these properties in an automated manner. We demonstrate how the UML model can be transformed into Alloy using the UML-to-Alloy transformations. This obviates the need for the protocol designer to know Alloy. The analysis uncovers a significant error in the protocol. Uncovering such errors help refine the protocol and ensures its correctness before deployment.HighlightsThe architecture of Personal Data Server overlay is presented.The data is replicated in user-controlled secure portable tokens.Properties of the protocol are demonstrated using UML and Alloy.
机译: 摘要 电子病历,实验室报告和保险等电子个人健康记录(PHR)存储在诸如Microsoft Health Vault之类的系统中,医疗提供者或患者负责上载和管理健康信息。以这种方式存储PHR会阻止患者完全控制其数据,也可能使PHR系统成为安全攻击的目标。为此,我们提出了一种新的体系结构,即“个人数据服务器覆盖”,其中数据存储在一组受个人用户控制的安全便携式令牌(SPT)上。 SPT是便宜,便携式和安全的设备,结合了智能卡的计算能力和防篡改特性以及NAND闪存芯片的存储容量,它们可以充当个人数据服务器(PDS)。 当信息存储在PDS叠加层中时,我们需要正式保证数据的可用性。因此,必须在多个PDS上复制数据。我们提出一种数据复制协议,以确保每个用户的PHR在PDS覆盖图中具有副本。确保数据复制协议的正确性至关重要。因此,我们使用统一建模语言(UML)将协议形式化,并指定了许多理想的属性。我们需要以自动化的方式对这些属性提供正式保证。我们演示了如何使用UML到合金的转换将UML模型转换为Alloy。这消除了协议设计者了解Alloy的需要。分析发现协议中存在重大错误。发现此类错误有助于改进协议并确保其在部署之前的正确性。 突出显示 显示了个人数据服务器覆盖的体系结构。 将数据复制到用户控制的安全便携式令牌中。 使用UML和Alloy演示了协议的属性。

著录项

  • 来源
    《Future generation computer systems》 |2018年第3期|467-482|共16页
  • 作者单位

    Department of Computer Science, Colorado State University;

    Department of Computer Science, Colorado State University;

    Department of Computer Science, Colorado State University;

    Department of Computer Science, Colorado State University;

  • 收录信息 美国《科学引文索引》(SCI);美国《工程索引》(EI);
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    PHR; PDS; Alloy; UML;

    机译:PHR;PDS;合金;UML;

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号