首页 | 本学科首页   官方微博 | 高级检索  
     检索      

一种病人可控的电子病历安全访问方案
引用本文:潘恒,潘磊,姚中原,斯雪明.一种病人可控的电子病历安全访问方案[J].应用科学学报,2020,38(1):127-138.
作者姓名:潘恒  潘磊  姚中原  斯雪明
作者单位:1. 中原工学院 前沿信息技术研究院, 郑州 450007;2. 中原工学院 计算机学院, 郑州 450007;3. 复旦大学 计算机学院, 上海 201203
基金项目:河南省高等学校重点项目基础研究计划项目基金(No.19A520047);中原工学院自主创新应用研究项目基金(No.K2018YY017)资助
摘    要:部分病人对其电子病历访问有全程管控的特殊需求,而现有云环境下的电子病历共享系统却无法满足这一需求,于是提出了一种基于超级账本和星际文件系统的电子病历安全访问方案HyperEHR.该方案设计了由病历请求者所在机构以及病人双重审核且由病人决定病历最终访问权的方法.为保证跨机构之间的医疗数据安全互访,将病历生成、更新以及访问等信息存储在联盟链区块中,而将各医院、诊所产生的具体病历信息和访问控制策略加密存储在云端星际文件系统中.系统实现及分析表明:该方案有较好的可扩展性、互操作性及安全性,可满足病人对其医疗数据访问的管控,有效防止病历隐私泄露.

关 键 词:病人可控  电子病历  联盟区块链  安全访问  星际文件系统  
收稿时间:2019-10-31

A Patient-Controlled Security Access Mechanism for Electronic Health Records
PAN Heng,PAN Lei,YAO Zhongyuan,SI Xueming.A Patient-Controlled Security Access Mechanism for Electronic Health Records[J].Journal of Applied Sciences,2020,38(1):127-138.
Authors:PAN Heng  PAN Lei  YAO Zhongyuan  SI Xueming
Institution:1. Research Institute of Frontier Information Technology, Zhongyuan University of Technology, Zhengzhou 450007, China;2. School of Computer Science, Zhongyuan University of Technology, Zhengzhou 450007, China;3. School of Computer Science, Fudan University, Shanghai 201203, China
Abstract:In the existing cloud environment, the special requirements of patients to make full control of his/her electronic health record can hardly be fulfilled. In order to solve this problem, a secure access scheme HyperEHR based on Hyperledger fabric and interplanetary file system (IPFS) is proposed. In the proposal, the medical record requester first needs to obtain the consent of his/her organization, and the patient have the final right to make the decision of accessing permission. To ensure the security of cross-organization medical data access, information like medical record generation, update and access is stored in collaborative blockchain. Moreover, specific medical record information and access control policies generated by hospitals and clinics are encrypted and stored in the cloud interplanetary file system. System implementation and analysis show that the scheme has good scalability, interoperability and security. HyperEHR can not only help patient to make control of his/her medical data accessing, but also prevent the privacy disclosure of electronic health record effectively.
Keywords:patient controlled  electronic health record  consortium blockchain  security access  interplanetary file system (IPFS)  
本文献已被 CNKI 等数据库收录!
点击此处可从《应用科学学报》浏览原始摘要信息
点击此处可从《应用科学学报》下载免费的PDF全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号