Abstract

Sharing of Electronic Health Records (EHRs) is of significant importance in health care. Lately, a cloud-based electronic health record sharing scheme has been used extensively to share patient records among various healthcare organizations. However, cloud centralization may compromise patients’ privacy and security. Due to the special features of blockchain, it is important to see this technology as a promising solution to resolve these issues. This article proposes a privacy-preserving, secure EHR sharing and access control framework based on blockchain technology. The proposal aims to implement EHR blockchain technology and ensure that electronic records are stored safely by specifying user access permissions. We emulate the cryptographic primitives and use smart contracts to describe the relationships between the EHR owner and EHR user through the proposed system on the Ethereum blockchain. We assess the proposal results based on encryption and decryption time and the costs of the smart contract. The encryption and decryption times are proportional to the size of the EHR, which varies from 128 KB to 128 MB. When it comes to encryption, the smallest EHR takes 0.0012 s to encrypt, while the largest EHR, which is 128 MB, takes 1.4149 s. On the other hand, a 128 KB EHR takes 0.0013 s to decrypt, whereas a 128 MB EHR requires 1.6284 s. As a result, performance evaluation and security analysis confirm that the proposal is secure for practical application.

Highlights

  • An electronic health record (EHR) is a compilation of an individual’s health-related information, including personal information, medical images, medical conditions and medications

  • A blockchain-based access control scheme for preserving privacy of electronic health records (EHR) scheme is proposed in this paper to achieve privacy, confidentiality, integrity and access control

  • The system uses the Ethereum blockchain technology and the cloud to ensure that electronic records are stored safely by specifying granular user access rules

Read more

Summary

Introduction

An electronic health record (EHR) is a compilation of an individual’s health-related information, including personal information, medical images, medical conditions and medications. It would be better for multiple healthcare institutions to cooperate, such as physicians obtaining patients' medical histories and medical service coverage in a foreign country. The sharing mode raises a lot of privacy and security issues that could thwart its widespread adoption (Boumezbeur and Zarour, 2018). Such data are sensitive, making patients and medical organizations reluctant to share them because they need protection against unauthorized access. Security issues include the secure sharing of EHRs among patients and other healthcare services in cloud environments. Unauthorized individuals can obtain malicious access to EHRs without patient authorization, undermining data privacy, security and integrity of cloud-based e-health systems. It is important to suggest appropriate access control solutions for sharing EHRs among cloud environments

Methods
Results
Discussion
Conclusion
Full Text
Published version (Free)

Talk to us

Join us for a 30 min session where you can share your feedback and ask us any queries you have

Schedule a call