论文标题
E-Tenon:EHR系统的有效保留隐私的安全开放数据共享方案
E-Tenon: An Efficient Privacy-Preserving Secure Open Data Sharing Scheme for EHR System
论文作者
论文摘要
从基于纸张的信息到电子保健记录(EHR)的过渡驱动了现代医疗保健行业的各种进步。在许多情况下,患者需要与医疗保健专业人员共享EHR。鉴于EHR的敏感和关键性性质,必须考虑存储和共享EHR的安全性和隐私问题。但是,现有的安全解决方案过多地加密了整个数据库,因此要求为每个访问请求解密整个数据库,这是一个耗时的过程。另一方面,将EHR用于医学研究(例如,开发精度 - 医学,诊断技术)以及对医疗保健组织中实践的优化,要求对EHR进行分析,为此,它们应易于访问,而不会损害患者的私密性。在本文中,我们提出了一种称为E-Tenon的高效技术,该技术不仅可以安全地公开访问所有EHR,而且还提供了理想的安全功能。据我们所知,这是使用开放数据库来保护EHR的第一项工作。拟议的E-Tenon赋予患者在自己定义的多层次,细粒度的访问政策下安全共享其EHR。分析表明,我们的系统在计算复杂性方面优于现有解决方案。
The transition from paper-based information to Electronic-Health-Records (EHRs) has driven various advancements in the modern healthcare-industry. In many cases, patients need to share their EHR with healthcare professionals. Given the sensitive and security-critical nature of EHRs, it is essential to consider the security and privacy issues of storing and sharing EHR. However, existing security solutions excessively encrypt the whole database, thus requiring the entire database to be decrypted for each access request, which is a time-consuming process. On the other hand, the use of EHR for medical research (e.g., development of precision-medicine, diagnostics-techniques), as well as optimisation of practices in healthcare organisations, requires the EHR to be analysed, and for that, they should be easily accessible without compromising the privacy of the patient. In this paper, we propose an efficient technique called E-Tenon that not only securely keeps all EHR publicly accessible but also provides the desirable security features. To the best of our knowledge, this is the first work in which an Open Database is used for protecting EHR. The proposed E-Tenon empowers patients to securely share their EHR under multi-level, fine-grained access policies defined by themselves. Analyses show that our system outperforms existing solutions in terms of computational-complexity.