SlideShare a Scribd company logo
Scalable and Secure Sharing of Personal Health Records in
Cloud Computing Using Attribute-Based Encryption
ABSTRACT:
Personal health record (PHR) is an emerging patient-centric model of health
information exchange, which is often outsourced to be stored at a third party, such
as cloud providers. However, there have been wide privacy concerns as personal
health information could be exposed to those third party servers and to
unauthorized parties. To assure the patients’ control over access to their own
PHRs, it is a promising method to encrypt the PHRs before outsourcing. Yet,
issues such as risks of privacy exposure, scalability in key management, flexible
access, and efficient user revocation, have remained the most important challenges
toward achieving fine-grained, cryptographically enforced data access control. In
this paper, we propose a novel patient-centric framework and a suite of
mechanisms for data access control to PHRs stored in semitrusted servers. To
achieve fine-grained and scalable data access control for PHRs, we leverage
attribute-based encryption (ABE) techniques to encrypt each patient’s PHR file.
Different from previous works in secure data outsourcing, we focus on the multiple
data owner scenario, and divide the users in the PHR system into multiple security
domains that greatly reduces the key management complexity for owners and
users. A high degree of patient privacy is guaranteed simultaneously by exploiting
multiauthority ABE. Our scheme also enables dynamic modification of access
policies or file attributes, supports efficient on-demand user/attribute revocation
and break-glass access under emergency scenarios. Extensive analytical and
experimental results are presented which show the security, scalability, and
efficiency of our proposed scheme.
EXISTING SYSTEM:
A PHR service allows a patient to create, manage, and control her personal health
data in one place through the web, which has made the storage, retrieval, and
sharing of the medical information more efficient. Especially, each patient is
promised the full control of her medical records and can share her health data with
a wide range of users, including healthcare providers, family members or friends.
While it is exciting to have convenient PHR services for everyone, there are many
security and privacy risks which could impede its wide adoption.
DISADVANTAGES OF EXISTING SYSTEM:
The complexities per encryption, key generation, and decryption are only linear
with the number of attributes involved. However, to integrate ABE into a large-
scale PHR system, important issues such as key management scalability, dynamic
policy updates, and efficient on-demand revocation are nontrivial to solve, and
remain largely open up-to-date.
PROPOSED SYSTEM:
Compared with the preliminary version of this paper, there are several main
additional contributions: 1) we clarify and extend our usage of MA-ABE in the
public domain, and formally show how and which types of user-defined file access
policies are realized. 2) We clarify the proposed revocable MA-ABE scheme, and
provide a formal security proof for it. 3) We carry out both real-world experiments
and simulations to evaluate the performance of the proposed solution in this paper.
ADVANTAGES OF PROPOSED SYSTEM:
 We propose a novel ABE-based framework for patient-centric secure
sharing of PHRs in cloud computing environments, under the multiowner
settings. To address the key management challenges, we conceptually divide
the users in the system two types of domains, namely public and personal
into domain.
 In the public domain, we use multiauthority ABE (MA-ABE) to improve the
security and avoid key escrow problem. Each attribute authority (AA) in it
governs a disjoint subset of user role attributes, while none of them alone is
able to control the security of the whole system.
 We propose mechanisms for key distribution and encryption so that PHR
owners can specify personalized fine-grained role-based access policies
during file encryption. In the personal domain, owners directly assign access
privileges for personal users and encrypt a PHR file under its data attributes.
 We provide a thorough analysis of the complexity and scalability of our
proposed secure PHR sharing solution, in terms of multiple metrics in
computation, communication, storage, and key management. We also
compare our scheme to several previous ones in complexity, scalability and
security.
SYSTEM ARCHITECTURE:
Fig-1 The proposed framework for patient-centric, secure and scalable PHR
sharing on semitrusted storage under multiowner settings.
Fig- 2 The attribute hierarchy of files—leaf nodes are atomic file categories while
internal nodes are compound categories. Dark boxes are the categories that a
PSD’s data readers have access to.
SYSTEM CONFIGURATION:-
HARDWARE CONFIGURATION:-
 Processor - Pentium –IV
 Speed - 1.1 Ghz
 RAM - 256 MB(min)
 Hard Disk - 20 GB
 Key Board - Standard Windows Keyboard
 Mouse - Two or Three Button Mouse
 Monitor - SVGA
SOFTWARE CONFIGURATION:-
 Operating System : Windows XP
 Programming Language : JAVA
 Java Version : JDK 1.6 & above.
REFERENCE:
Ming Li, Member, IEEE, Shucheng Yu, Member, IEEE, Yao Zheng, Student
Member, IEEE, Kui Ren, Senior Member, IEEE, and Wenjing Lou, Senior
Member, IEEE-―Scalable and Secure Sharing of Personal Health Records in Cloud
Computing Using Attribute-Based Encryption‖-IEEE TRANSACTIONS ON
PARALLEL AND DISTRIBUTED SYSTEMS, VOL. 24, NO. 1, JANUARY
2013

More Related Content

What's hot (8)

PPTX
Efficient sharing of personal health records using encryption in cloud computing
Naveena N
 
PPTX
phr
kajol agarwal
 
PPTX
Scalable and secure sharing of public health record using attribute based Enc...
shreyank byadagi
 
PDF
Psdot 4 scalable and secure sharing of personal health records in cloud compu...
ZTech Proje
 
PDF
Full paper
Harilal Punalur
 
PDF
Dotnet scalable and secure sharing of personal health records in cloud compu...
Ecway Technologies
 
DOCX
Dotnet scalable and secure sharing of personal health records in cloud compu...
Ecway Technologies
 
Efficient sharing of personal health records using encryption in cloud computing
Naveena N
 
Scalable and secure sharing of public health record using attribute based Enc...
shreyank byadagi
 
Psdot 4 scalable and secure sharing of personal health records in cloud compu...
ZTech Proje
 
Full paper
Harilal Punalur
 
Dotnet scalable and secure sharing of personal health records in cloud compu...
Ecway Technologies
 
Dotnet scalable and secure sharing of personal health records in cloud compu...
Ecway Technologies
 

Viewers also liked (6)

PDF
Inaugural Addresses
Booz Allen Hamilton
 
PPTX
How to think like a startup
Loic Le Meur
 
PDF
32 Ways a Digital Marketing Consultant Can Help Grow Your Business
Barry Feldman
 
PDF
Teaching Students with Emojis, Emoticons, & Textspeak
Shelly Sanchez Terrell
 
PDF
Hype vs. Reality: The AI Explainer
Luminary Labs
 
PDF
Study: The Future of VR, AR and Self-Driving Cars
LinkedIn
 
Inaugural Addresses
Booz Allen Hamilton
 
How to think like a startup
Loic Le Meur
 
32 Ways a Digital Marketing Consultant Can Help Grow Your Business
Barry Feldman
 
Teaching Students with Emojis, Emoticons, & Textspeak
Shelly Sanchez Terrell
 
Hype vs. Reality: The AI Explainer
Luminary Labs
 
Study: The Future of VR, AR and Self-Driving Cars
LinkedIn
 
Ad

Similar to Scalable and secure sharing of personal health records in cloud computing using attribute based encryption (20)

PDF
Full paper
Harilal Punalur
 
PDF
Full paper
Harilal Punalur
 
PDF
Ijarcet vol-2-issue-3-925-932
Editor IJARCET
 
DOCX
Scalable and secure sharing of personal health records in cloud computing usi...
IEEEFINALYEARPROJECTS
 
DOCX
JAVA 2013 IEEE CLOUDCOMPUTING PROJECT Scalable and secure sharing of personal...
IEEEGLOBALSOFTTECHNOLOGIES
 
DOCX
DOTNET 2013 IEEE CLOUDCOMPUTING PROJECT Scalable and secure sharing of person...
IEEEGLOBALSOFTTECHNOLOGIES
 
DOCX
Scalable and secure sharing of personal health records in cloud computing usi...
ecway
 
DOCX
Android scalable and secure sharing of personal health records in cloud comp...
ecway
 
DOCX
Java scalable and secure sharing of personal health records in cloud computi...
ecwayerode
 
PDF
Scalable and secure sharing of personal health records in cloud computing usi...
Ecway Technologies
 
PDF
Java scalable and secure sharing of personal health records in cloud computi...
Ecway Technologies
 
PDF
Scalable and secure sharing of personal health records in cloud computing usi...
Ecway Technologies
 
PDF
Java scalable and secure sharing of personal health records in cloud computi...
ecwayerode
 
DOCX
Scalable and secure sharing of personal health records in cloud computing usi...
Ecway Technologies
 
DOCX
Scalable and secure sharing of personal health records in cloud computing usi...
Ecway Technologies
 
PDF
Android scalable and secure sharing of personal health records in cloud comp...
ecway
 
DOCX
Java scalable and secure sharing of personal health records in cloud computi...
Ecway Technologies
 
PDF
Cloud Computing: Scalable and Secure Sharing of Personal Health Records Using...
dbpublications
 
PDF
Android scalable and secure sharing of personal health records in cloud comp...
Ecwayt
 
PDF
Android scalable and secure sharing of personal health records in cloud comp...
Ecway2004
 
Full paper
Harilal Punalur
 
Full paper
Harilal Punalur
 
Ijarcet vol-2-issue-3-925-932
Editor IJARCET
 
Scalable and secure sharing of personal health records in cloud computing usi...
IEEEFINALYEARPROJECTS
 
JAVA 2013 IEEE CLOUDCOMPUTING PROJECT Scalable and secure sharing of personal...
IEEEGLOBALSOFTTECHNOLOGIES
 
DOTNET 2013 IEEE CLOUDCOMPUTING PROJECT Scalable and secure sharing of person...
IEEEGLOBALSOFTTECHNOLOGIES
 
Scalable and secure sharing of personal health records in cloud computing usi...
ecway
 
Android scalable and secure sharing of personal health records in cloud comp...
ecway
 
Java scalable and secure sharing of personal health records in cloud computi...
ecwayerode
 
Scalable and secure sharing of personal health records in cloud computing usi...
Ecway Technologies
 
Java scalable and secure sharing of personal health records in cloud computi...
Ecway Technologies
 
Scalable and secure sharing of personal health records in cloud computing usi...
Ecway Technologies
 
Java scalable and secure sharing of personal health records in cloud computi...
ecwayerode
 
Scalable and secure sharing of personal health records in cloud computing usi...
Ecway Technologies
 
Scalable and secure sharing of personal health records in cloud computing usi...
Ecway Technologies
 
Android scalable and secure sharing of personal health records in cloud comp...
ecway
 
Java scalable and secure sharing of personal health records in cloud computi...
Ecway Technologies
 
Cloud Computing: Scalable and Secure Sharing of Personal Health Records Using...
dbpublications
 
Android scalable and secure sharing of personal health records in cloud comp...
Ecwayt
 
Android scalable and secure sharing of personal health records in cloud comp...
Ecway2004
 
Ad

Recently uploaded (20)

PPTX
Urban Hierarchy and Service Provisions.pptx
Islamic University of Bangladesh
 
PDF
Gladiolous Cultivation practices by AKL.pdf
kushallamichhame
 
PPTX
How to Configure Taxes in Company Currency in Odoo 18 Accounting
Celine George
 
PPTX
Connecting Linear and Angular Quantities in Human Movement.pptx
AngeliqueTolentinoDe
 
PDF
Lesson 1 - Nature of Inquiry and Research.pdf
marvinnbustamante1
 
PPTX
Aerobic and Anaerobic respiration and CPR.pptx
Olivier Rochester
 
PPTX
Matatag Curriculum English 8-Week 1 Day 1-5.pptx
KirbieJaneGasta1
 
PDF
Rapid Mathematics Assessment Score sheet for all Grade levels
DessaCletSantos
 
PPTX
Parsing HTML read and write operations and OS Module.pptx
Ramakrishna Reddy Bijjam
 
PDF
Learning Styles Inventory for Senior High School Students
Thelma Villaflores
 
PDF
Lesson 1 : Science and the Art of Geography Ecosystem
marvinnbustamante1
 
PPTX
PLANNING FOR EMERGENCY AND DISASTER MANAGEMENT ppt.pptx
PRADEEP ABOTHU
 
PDF
Free eBook ~100 Common English Proverbs (ebook) pdf.pdf
OH TEIK BIN
 
DOCX
Lesson 1 - Nature and Inquiry of Research
marvinnbustamante1
 
PDF
Indian National movement PPT by Simanchala Sarab, Covering The INC(Formation,...
Simanchala Sarab, BABed(ITEP Secondary stage) in History student at GNDU Amritsar
 
PPTX
How Physics Enhances Our Quality of Life.pptx
AngeliqueTolentinoDe
 
PDF
CAD25 Gbadago and Fafa Presentation Revised-Aston Business School, UK.pdf
Kweku Zurek
 
PPTX
PLANNING A HOSPITAL AND NURSING UNIT.pptx
PRADEEP ABOTHU
 
PDF
The Power of Compound Interest (Stanford Initiative for Financial Decision-Ma...
Stanford IFDM
 
PPTX
How to Setup Automatic Reordering Rule in Odoo 18 Inventory
Celine George
 
Urban Hierarchy and Service Provisions.pptx
Islamic University of Bangladesh
 
Gladiolous Cultivation practices by AKL.pdf
kushallamichhame
 
How to Configure Taxes in Company Currency in Odoo 18 Accounting
Celine George
 
Connecting Linear and Angular Quantities in Human Movement.pptx
AngeliqueTolentinoDe
 
Lesson 1 - Nature of Inquiry and Research.pdf
marvinnbustamante1
 
Aerobic and Anaerobic respiration and CPR.pptx
Olivier Rochester
 
Matatag Curriculum English 8-Week 1 Day 1-5.pptx
KirbieJaneGasta1
 
Rapid Mathematics Assessment Score sheet for all Grade levels
DessaCletSantos
 
Parsing HTML read and write operations and OS Module.pptx
Ramakrishna Reddy Bijjam
 
Learning Styles Inventory for Senior High School Students
Thelma Villaflores
 
Lesson 1 : Science and the Art of Geography Ecosystem
marvinnbustamante1
 
PLANNING FOR EMERGENCY AND DISASTER MANAGEMENT ppt.pptx
PRADEEP ABOTHU
 
Free eBook ~100 Common English Proverbs (ebook) pdf.pdf
OH TEIK BIN
 
Lesson 1 - Nature and Inquiry of Research
marvinnbustamante1
 
Indian National movement PPT by Simanchala Sarab, Covering The INC(Formation,...
Simanchala Sarab, BABed(ITEP Secondary stage) in History student at GNDU Amritsar
 
How Physics Enhances Our Quality of Life.pptx
AngeliqueTolentinoDe
 
CAD25 Gbadago and Fafa Presentation Revised-Aston Business School, UK.pdf
Kweku Zurek
 
PLANNING A HOSPITAL AND NURSING UNIT.pptx
PRADEEP ABOTHU
 
The Power of Compound Interest (Stanford Initiative for Financial Decision-Ma...
Stanford IFDM
 
How to Setup Automatic Reordering Rule in Odoo 18 Inventory
Celine George
 

Scalable and secure sharing of personal health records in cloud computing using attribute based encryption

  • 1. Scalable and Secure Sharing of Personal Health Records in Cloud Computing Using Attribute-Based Encryption ABSTRACT: Personal health record (PHR) is an emerging patient-centric model of health information exchange, which is often outsourced to be stored at a third party, such as cloud providers. However, there have been wide privacy concerns as personal health information could be exposed to those third party servers and to unauthorized parties. To assure the patients’ control over access to their own PHRs, it is a promising method to encrypt the PHRs before outsourcing. Yet, issues such as risks of privacy exposure, scalability in key management, flexible access, and efficient user revocation, have remained the most important challenges toward achieving fine-grained, cryptographically enforced data access control. In this paper, we propose a novel patient-centric framework and a suite of mechanisms for data access control to PHRs stored in semitrusted servers. To achieve fine-grained and scalable data access control for PHRs, we leverage attribute-based encryption (ABE) techniques to encrypt each patient’s PHR file. Different from previous works in secure data outsourcing, we focus on the multiple data owner scenario, and divide the users in the PHR system into multiple security domains that greatly reduces the key management complexity for owners and users. A high degree of patient privacy is guaranteed simultaneously by exploiting
  • 2. multiauthority ABE. Our scheme also enables dynamic modification of access policies or file attributes, supports efficient on-demand user/attribute revocation and break-glass access under emergency scenarios. Extensive analytical and experimental results are presented which show the security, scalability, and efficiency of our proposed scheme. EXISTING SYSTEM: A PHR service allows a patient to create, manage, and control her personal health data in one place through the web, which has made the storage, retrieval, and sharing of the medical information more efficient. Especially, each patient is promised the full control of her medical records and can share her health data with a wide range of users, including healthcare providers, family members or friends. While it is exciting to have convenient PHR services for everyone, there are many security and privacy risks which could impede its wide adoption. DISADVANTAGES OF EXISTING SYSTEM: The complexities per encryption, key generation, and decryption are only linear with the number of attributes involved. However, to integrate ABE into a large- scale PHR system, important issues such as key management scalability, dynamic
  • 3. policy updates, and efficient on-demand revocation are nontrivial to solve, and remain largely open up-to-date. PROPOSED SYSTEM: Compared with the preliminary version of this paper, there are several main additional contributions: 1) we clarify and extend our usage of MA-ABE in the public domain, and formally show how and which types of user-defined file access policies are realized. 2) We clarify the proposed revocable MA-ABE scheme, and provide a formal security proof for it. 3) We carry out both real-world experiments and simulations to evaluate the performance of the proposed solution in this paper. ADVANTAGES OF PROPOSED SYSTEM:  We propose a novel ABE-based framework for patient-centric secure sharing of PHRs in cloud computing environments, under the multiowner settings. To address the key management challenges, we conceptually divide the users in the system two types of domains, namely public and personal into domain.  In the public domain, we use multiauthority ABE (MA-ABE) to improve the security and avoid key escrow problem. Each attribute authority (AA) in it
  • 4. governs a disjoint subset of user role attributes, while none of them alone is able to control the security of the whole system.  We propose mechanisms for key distribution and encryption so that PHR owners can specify personalized fine-grained role-based access policies during file encryption. In the personal domain, owners directly assign access privileges for personal users and encrypt a PHR file under its data attributes.  We provide a thorough analysis of the complexity and scalability of our proposed secure PHR sharing solution, in terms of multiple metrics in computation, communication, storage, and key management. We also compare our scheme to several previous ones in complexity, scalability and security.
  • 5. SYSTEM ARCHITECTURE: Fig-1 The proposed framework for patient-centric, secure and scalable PHR sharing on semitrusted storage under multiowner settings.
  • 6. Fig- 2 The attribute hierarchy of files—leaf nodes are atomic file categories while internal nodes are compound categories. Dark boxes are the categories that a PSD’s data readers have access to. SYSTEM CONFIGURATION:- HARDWARE CONFIGURATION:-  Processor - Pentium –IV  Speed - 1.1 Ghz
  • 7.  RAM - 256 MB(min)  Hard Disk - 20 GB  Key Board - Standard Windows Keyboard  Mouse - Two or Three Button Mouse  Monitor - SVGA SOFTWARE CONFIGURATION:-  Operating System : Windows XP  Programming Language : JAVA  Java Version : JDK 1.6 & above. REFERENCE: Ming Li, Member, IEEE, Shucheng Yu, Member, IEEE, Yao Zheng, Student Member, IEEE, Kui Ren, Senior Member, IEEE, and Wenjing Lou, Senior Member, IEEE-―Scalable and Secure Sharing of Personal Health Records in Cloud Computing Using Attribute-Based Encryption‖-IEEE TRANSACTIONS ON
  • 8. PARALLEL AND DISTRIBUTED SYSTEMS, VOL. 24, NO. 1, JANUARY 2013