Skip to main navigation Skip to search Skip to main content

Flexible attribute-based encryption applicable to secure e-healthcare records

  • Bo Qin
  • , Hua Deng
  • , Qianhong Wu*
  • , Josep Domingo-Ferrer
  • , David Naccache
  • , Yunya Zhou
  • *Corresponding author for this work
  • Renmin University of China
  • Wuhan University
  • Universidad Rovira i Virgili
  • École Normale Supérieure
  • Beihang University

Research output: Contribution to journalArticlepeer-review

Abstract

In e-healthcare record systems (EHRS), attribute-based encryption (ABE) appears as a natural way to achieve fine-grained access control on health records. Some proposals exploit key-policy ABE (KP-ABE) to protect privacy in such a way that all users are associated with specific access policies and only the ciphertexts matching the users’ access policies can be decrypted. An issue with KP-ABE is that it requires an a priori formulation of access policies during key generation, which is not always practicable in EHRS because the policies to access health records are sometimes determined after key generation. In this paper, we revisit KP-ABE and propose a dynamic ABE paradigm, referred to as access policy redefinable ABE (APR-ABE). To address the above issue, APR-ABE allows users to redefine their access policies and delegate keys for the redefined ones; hence, a priori precise policies are no longer mandatory. We construct an APR-ABE scheme with short ciphertexts and prove its full security in the standard model under several static assumptions.

Original languageEnglish
Pages (from-to)499-511
Number of pages13
JournalInternational Journal of Information Security
Volume14
Issue number6
DOIs
StatePublished - 1 Nov 2015

Keywords

  • Access control
  • Attribute-based encryption
  • E-healthcare records
  • Privacy

Fingerprint

Dive into the research topics of 'Flexible attribute-based encryption applicable to secure e-healthcare records'. Together they form a unique fingerprint.

Cite this