1st International ICST Workshop on Ubiquitous Access Control

Research Article

A Novel Decentralized Hierarchical Access Control Scheme for the Medical Scenario

  • @INPROCEEDINGS{10.1109/MOBIQW.2006.361772,
        author={Sigurd  Eskeland and  Neeli R.  Prasad},
        title={A Novel Decentralized Hierarchical Access Control Scheme for the Medical Scenario},
        proceedings={1st International ICST Workshop on Ubiquitous Access Control},
        publisher={IEEE},
        proceedings_a={IWUAC},
        year={2007},
        month={5},
        keywords={},
        doi={10.1109/MOBIQW.2006.361772}
    }
    
  • Sigurd Eskeland
    Neeli R. Prasad
    Year: 2007
    A Novel Decentralized Hierarchical Access Control Scheme for the Medical Scenario
    IWUAC
    IEEE
    DOI: 10.1109/MOBIQW.2006.361772
Sigurd Eskeland1, Neeli R. Prasad1
  • 1: Center for TeleInFrastructure, Aalborg Univ.

Abstract

Electronic patient records contains highly personal and confidential information that it is essential to keep private. Thus, only the medical professionals providing care to a patient should access the patient record of the concerning patient. As personal medical data can be considered to be the property of the corresponding patient, it is justified that patients should have the opportunity to exert control over their own data. In this paper, we propose a cryptographic access control scheme allowing patients to grant medical teams authorizations to access their medical data. Moreover, the hierarchical aspects of teams are taken into account so that the modules of the patient record are to be accessed according to the individual privileges of the medical professionals of the team. Thus, more privileged users obtain larger portions of the data than less privileged users