A Hierarchical Multi Blockchain for Fine Grained Access to Medical Data

被引:31
作者
Malamas, Vangelis [1 ]
Kotzanikolaou, Panayiotis [1 ]
Dasaklis, Thomas K. [1 ]
Burmester, Mike [2 ]
机构
[1] Univ Piraeus, Dept Informat, Piraeus 18534, Greece
[2] Florida State Univ, Dept Comp Sci, Tallahassee, FL 32306 USA
关键词
Stakeholders; Encryption; Hospitals; Data privacy; Medical data; attribute based encryption; fine-grained access control; blockchain; smart contracts; multichain; tailored forensics; distributed trust management; revocation; ATTRIBUTE-BASED ENCRYPTION; HEALTH; PRIVACY; SECURITY; FRAMEWORK; SCHEME;
D O I
10.1109/ACCESS.2020.3011201
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The health care ecosystem involves various interconnected stakeholders with different, and sometimes conflicting security and privacy needs. Sharing medical data, sometimes generated by remote medical devices, is a challenging task. Although several solutions exist in the literature covering functional requirements such as interoperability and scalability, as well as security & privacy requirements such as fine-grained access control and data privacy, balancing between them is not a trivial task as off-the-shelf solutions do not exist. On one hand, centralized cloud architectures provide scalability and interoperable access, but make strong trust assumptions. On the other, decentralized blockchain based solutions favor data privacy and independent trust management, but typically do not support dynamic changes of the underlying trust domains. To cover this gap, in this paper, we present a novel hierarchical multi expressive blockchain architecture. At the top layer, a proxy blockchain enables independently managed trust authorities to interoperate. End-users from different health care domains, such as hospitals or device manufacturers are able to access and securely exchange medical data, provided that a commonly agreed domain-wise access policy is enforced. At the bottom layer, one or more domain blockchains allow each domain (e.g. a hospital or device manufacturer) to enforce their policy and allow fine-grained access control with attribute-based encryption. This architecture is designed to provide the autonomous management of trusted medical data/devices and the transactions of mutually untrusted stakeholders, as well as an inherent forensics mechanism tailored for granular auditing. Smart contracts are used to enforce decentralized policies. Ciphertext-policy attribute based encryption (CP-ABE) is used to distribute the decryption process among end users and the system, as well as support an efficient credential revocation mechanism. We demonstrate the efficiency of the proposed architecture through a proof of concept implementation. Finally we analyse the major security and performance characteristics.
引用
收藏
页码:134393 / 134412
页数:20
相关论文
共 57 条
[1]  
Akinyele J. A., 2011, PROC 1 ACM WORKSHOP, P75
[2]   Charm: a framework for rapidly prototyping cryptosystems [J].
Akinyele, Joseph A. ;
Garman, Christina ;
Miers, Ian ;
Pagano, Matthew W. ;
Rushanan, Michael ;
Green, Matthew ;
Rubin, Aviel D. .
JOURNAL OF CRYPTOGRAPHIC ENGINEERING, 2013, 3 (02) :111-128
[3]   A Security Model for Preserving the Privacy of Medical Big Data in a Healthcare Cloud Usinga Fog Computing Facility With Pairing-Based Cryptography [J].
Al Hamid, Hadeal Abdulaziz ;
Rahman, Sk Md Mizanur ;
Hossain, M. Shamim ;
Almogren, Ahmad ;
Alamri, Atif .
IEEE ACCESS, 2017, 5 :22313-22328
[4]  
Al Omar Abdullah, 2017, Security, Privacy and Anonymity in Computation, Communication and Storage, SpaCCS 2017: International Workshops. Proceedings: LNCS 10658, P534, DOI 10.1007/978-3-319-72395-2_49
[5]  
Amofa S, 2018, 2018 IEEE 20TH INTERNATIONAL CONFERENCE ON E-HEALTH NETWORKING, APPLICATIONS AND SERVICES (HEALTHCOM)
[6]  
[Anonymous], 2017, 420102011 ISOIECIEEE
[7]   Ciphertext-policy attribute-based encryption [J].
Bethencourt, John ;
Sahai, Amit ;
Waters, Brent .
2007 IEEE SYMPOSIUM ON SECURITY AND PRIVACY, PROCEEDINGS, 2007, :321-+
[8]  
Bogaerts Jasper., 2015, P 31 ANN COMP SEC AP, P291, DOI 10.1145/2818000.2818009
[9]   A systematic literature review of blockchain-based applications: Current status, classification and open issues [J].
Casino, Fran ;
Dasaklis, Thomas K. ;
Patsakis, Constantinos .
TELEMATICS AND INFORMATICS, 2019, 36 :55-81
[10]   Blockchain based searchable encryption for electronic health record sharing [J].
Chen, Lanxiang ;
Lee, Wai-Kong ;
Chang, Chin-Chen ;
Choo, Kim-Kwang Raymond ;
Zhang, Nan .
FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2019, 95 (420-429) :420-429