A Patient-centric Key Management Protocol for Healthcare Information System based on Blockchain

被引:2
作者
Zhu, Ting-Le [1 ]
Chen, Tzung-Her [1 ]
机构
[1] Natl Chiayi Univ, Comp Sci & Informat Engn, 300 Rd Univ, Chiay City 600, Taiwan
来源
2021 IEEE CONFERENCE ON DEPENDABLE AND SECURE COMPUTING (DSC) | 2021年
关键词
blockchain; elliptic curve digital signature algorithm; personal healthcare record; key management; patients' privacy;
D O I
10.1109/DSC49826.2021.9346259
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Traditional healthcare systems store and process personal healthcare record (PHR) in the centralized client-server architecture. PHR stored in a healthcare institution remain in depository which is not easily shared with other institutions due to technical and infrastructure related restrictions. In such a way, if a patient has to visit distinct institutions/hospitals or physicians, there is no effective and privacy-preserving data sharing mechanism. Furthermore, even if patients' privacy is protected by Health Insurance Portability and Accountability Act (HIPAA), it is still doubtful owing to the lack of the consideration of if the patient is directly involved. With the recent bloom of interest around blockchain, a technology with well-defined decentralized framework, privacy-preserving in healthcare information system (HIS) should be revisited to examine the new possibility. Actually, in the literature, the blockchain-based researches about the privacy and security in healthcare are prevalent in decentralized platform. However, they have drawn attention on the personal healthcare record management rather than focus on how to distribute the encryption/decryption key used to guarantee the confidentiality of PHR. Blockchain provides a shared, immutable and transparent history of all the transactions to build systems with trusty and decentralized environment. This provides an opportunity to develop a secure and trusty PHR data management system by blockchain technology. This paper presents the solution aiming at the patient's control by holding the knowledge of the encryption/decryption key which can be deduced from the previous transaction in blockchains. In such a way, a patient can control the personal healthcare record by controlling key usage.
引用
收藏
页数:5
相关论文
共 12 条
[1]   MedRec: Using Blockchain for Medical Data Access and Permission Management [J].
Azaria, Asaph ;
Ekblaw, Ariel ;
Vieira, Thiago ;
Lippman, Andrew .
PROCEEDINGS 2016 2ND INTERNATIONAL CONFERENCE ON OPEN AND BIG DATA - OBD 2016, 2016, :25-30
[2]  
Buterin V., 2013, GitHub repository
[3]  
Cachin C., 2016, P WORKSH DISTR CRYPT P WORKSH DISTR CRYPT
[4]  
Chen TH, 2008, INFORMATICA-LITHUAN, V19, P3
[5]   NEW DIRECTIONS IN CRYPTOGRAPHY [J].
DIFFIE, W ;
HELLMAN, ME .
IEEE TRANSACTIONS ON INFORMATION THEORY, 1976, 22 (06) :644-654
[6]   Unpatients-why patients should own their medical data [J].
Kish, Leonard J. ;
Topol, Eric J. .
NATURE BIOTECHNOLOGY, 2015, 33 (09) :921-924
[7]   A Novel Key Management Solution for Reinforcing Compliance With HIPAA Privacy/Security Regulations [J].
Lee, Chien-Ding ;
Ho, Kevin I. -J. ;
Lee, Wei-Bin .
IEEE TRANSACTIONS ON INFORMATION TECHNOLOGY IN BIOMEDICINE, 2011, 15 (04) :550-556
[8]   A cryptographic key management solution for HIPAA privacy/security regulations [J].
Lee, Wei-Bin ;
Lee, Chien-Ding .
IEEE TRANSACTIONS ON INFORMATION TECHNOLOGY IN BIOMEDICINE, 2008, 12 (01) :34-41
[9]  
Nakamoto Satoshi., 2008, BITCOIN ORG
[10]   MediChain™: A Secure Decentralized Medical Data Asset Management System [J].
Rouhani, Sara ;
Butterworth, Luke ;
Simmons, Adam D. ;
Humphery, Darryl G. ;
Deters, Ralph .
IEEE 2018 INTERNATIONAL CONGRESS ON CYBERMATICS / 2018 IEEE CONFERENCES ON INTERNET OF THINGS, GREEN COMPUTING AND COMMUNICATIONS, CYBER, PHYSICAL AND SOCIAL COMPUTING, SMART DATA, BLOCKCHAIN, COMPUTER AND INFORMATION TECHNOLOGY, 2018, :1533-1538