GDPR-Compliant Personal Health Record Sharing Mechanism with Redactable Blockchain and Revocable IPFS

Lo Yao Yeh, Wan Hsin Hsu, Chih Ya Shen

研究成果: 雜誌貢獻期刊論文同行評審

5 引文 斯高帕斯(Scopus)

摘要

The use of IoT technology in collecting personal health records (PHR) within the eHealth environment is a growing trend. However, data integrity is a concern as cloud service providers (CSPs) often cannot guarantee it. Blockchain technology offers a solution to guarantee data integrity and traceability. However, the immutability of traditional blockchain conflicts with GDPR's requirements. To address scalability and privacy concerns, we have designed a comprehensive scheme that integrates the redactable blockchain with the existing revocable IPFS mechanism. Our scheme overcomes the disadvantage of residual downloading information in the traditional blockchain. Additionally, we have developed an enhanced proxy re-encryption scheme that simplifies access control for physicians without the need for complex group key management. Unlike traditional blockchains and P2P file sharing systems, our PHR platform allows for selective removal of records and files while maintaining auditable logs. Evaluation results demonstrate that our proposed scheme effectively enhances the exclusive revocation feature with acceptable overheads. To the best of our knowledge, this is the first work to provide the merit of fully complete record and file revocation on a blockchain-based system.

原文???core.languages.en_GB???
頁(從 - 到)3342-3356
頁數15
期刊IEEE Transactions on Dependable and Secure Computing
21
發行號4
DOIs
出版狀態已出版 - 2024

指紋

深入研究「GDPR-Compliant Personal Health Record Sharing Mechanism with Redactable Blockchain and Revocable IPFS」主題。共同形成了獨特的指紋。

引用此