Blockchain-Based Access Control in a Globalized Healthcare Provisioning Ecosystem

被引:13
作者
Salonikias, Stavros [1 ]
Khair, Marie [2 ]
Mastoras, Theodoros [1 ]
Mavridis, Ioannis [1 ]
机构
[1] Univ Macedonia, Dept Appl Informat, Thessaloniki 54636, Greece
[2] Notre Dame Univ, Fac Nat & Appl Sci, Dept Comp Sci, POB 72, Zouk Mosbeh, Lebanon
关键词
access control; NGAC; blockchain; Ethereum; smart contracts; healthcare; IoMT; AUTHENTICATION; INTERNET; SYSTEMS;
D O I
10.3390/electronics11172652
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The COVID-19 pandemic further outlined the importance of global healthcare services provisioning for diagnosing and treating patients who tend to travel and live for large periods away from home and can be anywhere at any given time. Advances in technology enable healthcare practitioners to access critical data regarding a person's health status to provide better services. Medical data are sensitive in nature, and therefore, a reliable mechanism should ensure that only authorized entities can access data when needed. This paper, through a layered consideration of a Globalized Healthcare Provisioning Ecosystem (GHPE), reveals the interdependencies among its major components and suggests a necessary abstraction to identify requirements for the design of an access control suitable for the ecosystem. These requirements are imposed by the nature of the medical data as well as by the newly introduced potentials of Internet of Medical Things (IoMT) devices. As a result, an attribute-based access control framework is proposed aiming to provide prompt and secure access to medical data globally by utilizing state-of-the-art technologies and standards, including Next-Generation Access Control (NGAC), blockchain and smart contracts. Three types of smart contracts are proposed that enable access control to implement attribute and policy stores where policy classes and attributes are decentralized and immutable. In addition, the usage of blockchain-based distributed identities allows patients to be in control of access to their medical data and also enables healthcare service providers to access medical data promptly and reliably through the proposed access control framework. The qualitative characteristics of the proposed approach toward a decentralized and patient-centric access control in GHPE are demonstrated and discussed based on an application paradigm.
引用
收藏
页数:23
相关论文
共 65 条
[1]  
Abowd GD, 1999, LECT NOTES COMPUT SC, V1707, P304
[2]   ASTRAEA: A Decentralized Blockchain Oracle [J].
Adler, John ;
Berryhill, Ryan ;
Veneris, Andreas ;
Poulos, Zissis ;
Veira, Neil ;
Kastania, Anastasia .
IEEE 2018 INTERNATIONAL CONGRESS ON CYBERMATICS / 2018 IEEE CONFERENCES ON INTERNET OF THINGS, GREEN COMPUTING AND COMMUNICATIONS, CYBER, PHYSICAL AND SOCIAL COMPUTING, SMART DATA, BLOCKCHAIN, COMPUTER AND INFORMATION TECHNOLOGY, 2018, :1145-1152
[3]  
Al Breiki Hamda, 2019, 2019 IEEE International Conference on Industrial Internet (ICII). Proceedings, P248, DOI 10.1109/ICII.2019.00051
[4]   Trusting Testcases Using Blockchain-Based Repository Approach [J].
Al Zaabi, Abdulla ;
Yeun, Chan Yeob ;
Damiani, Ernesto .
SYMMETRY-BASEL, 2021, 13 (11)
[5]  
Al-Sarawi S, 2020, PROCEEDINGS OF THE 2020 FOURTH WORLD CONFERENCE ON SMART TRENDS IN SYSTEMS, SECURITY AND SUSTAINABILITY (WORLDS4 2020), P449, DOI 10.1109/WorldS450073.2020.9210375
[6]  
Alhaqbani B, 2008, LECT NOTES COMPUT SC, V4928, P371
[7]   A Novel Secure Blockchain Framework for Accessing Electronic Health Records Using Multiple Certificate Authority [J].
Ali, Aitizaz ;
Rahim, Hasliza A. ;
Ali, Jehad ;
Pasha, Muhammad Fermi ;
Masud, Mehedi ;
Rehman, Ateeq Ur ;
Chen, Can ;
Baz, Mohammed .
APPLIED SCIENCES-BASEL, 2021, 11 (21)
[8]   Towards Secure Searchable Electronic Health Records Using Consortium Blockchain [J].
Alsayegh, Muneera ;
Moulahi, Tarek ;
Alabdulatif, Abdulatif ;
Lorenz, Pascal .
NETWORK, 2022, 2 (02) :239-256
[9]   Access Control Models for Virtual Object Communication in Cloud-Enabled IoT [J].
Alshehri, Asma ;
Sandhu, Ravi .
2017 IEEE 18TH INTERNATIONAL CONFERENCE ON INFORMATION REUSE AND INTEGRATION (IEEE IRI 2017), 2017, :16-25
[10]  
Alshehri A, 2016, 2016 IEEE 2ND INTERNATIONAL CONFERENCE ON COLLABORATION AND INTERNET COMPUTING (IEEE CIC), P530, DOI [10.1109/CIC.2016.081, 10.1109/CIC.2016.79]