K. Fan, Nana Huang, Yue Wang, Hui Li, Yintang Yang
{"title":"Secure and Efficient Personal Health Record Scheme Using Attribute-Based Encryption","authors":"K. Fan, Nana Huang, Yue Wang, Hui Li, Yintang Yang","doi":"10.1109/CSCloud.2015.40","DOIUrl":null,"url":null,"abstract":"With the rapid development of the cloud computing, personal health record (PHR) has attracted great attention of many researchers all over the world recently. However, PHR, which is often outsourced to be stored at a third party, has many security and efficiency issues. Therefore, the study of secure and efficient Personal Health Record Scheme to protect users' privacy in PHR files is of great significance. In this paper, we present a secure and efficient Personal Health Record scheme called SE-PHR. In the SE-PHR scheme, we divide the users into personal domain (PSD) and public domain (PUD) logically. In the PSD, the Key-Aggregate Encryption called KAE is exploited. For the users of PUD, we use outsource-able multi-authority attribute-based encryption (MA-ABE) to largely eliminate the overhead for users and support efficient attribute revocation without updating the user's private key. Our scheme also presents a new algorithm which enables dynamic modification of access policies. Function and performance testing results show the security and efficiency of the proposed SE-PHR.","PeriodicalId":278090,"journal":{"name":"2015 IEEE 2nd International Conference on Cyber Security and Cloud Computing","volume":"74 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2015-11-03","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"9","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2015 IEEE 2nd International Conference on Cyber Security and Cloud Computing","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/CSCloud.2015.40","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 9
Abstract
With the rapid development of the cloud computing, personal health record (PHR) has attracted great attention of many researchers all over the world recently. However, PHR, which is often outsourced to be stored at a third party, has many security and efficiency issues. Therefore, the study of secure and efficient Personal Health Record Scheme to protect users' privacy in PHR files is of great significance. In this paper, we present a secure and efficient Personal Health Record scheme called SE-PHR. In the SE-PHR scheme, we divide the users into personal domain (PSD) and public domain (PUD) logically. In the PSD, the Key-Aggregate Encryption called KAE is exploited. For the users of PUD, we use outsource-able multi-authority attribute-based encryption (MA-ABE) to largely eliminate the overhead for users and support efficient attribute revocation without updating the user's private key. Our scheme also presents a new algorithm which enables dynamic modification of access policies. Function and performance testing results show the security and efficiency of the proposed SE-PHR.
随着云计算的快速发展,个人健康记录(personal health record, PHR)近年来受到了国内外研究者的广泛关注。然而,通常外包给第三方存储的PHR存在许多安全性和效率问题。因此,研究安全高效的个人健康记录方案对保护用户在PHR文件中的隐私具有重要意义。在本文中,我们提出了一个安全高效的个人健康记录方案SE-PHR。在SE-PHR方案中,我们从逻辑上将用户划分为个人域(PSD)和公共域(PUD)。在PSD中,利用了称为KAE的密钥聚合加密。对于PUD用户,我们使用可外包的多权威基于属性的加密(MA-ABE),在很大程度上消除了用户的开销,并在不更新用户私钥的情况下支持有效的属性撤销。该方案还提出了一种新的访问策略动态修改算法。功能和性能测试结果表明了该算法的安全性和高效性。