TY - JOUR
T1 - Building a dynamic searchable encrypted medical database for multi-client
AU - Xu, Lei
AU - Xu, Chungen
AU - Liu, Joseph K.
AU - Zuo, Cong
AU - Zhang, Peng
N1 - Publisher Copyright:
© 2019 Elsevier Inc.
PY - 2020/7
Y1 - 2020/7
N2 - E-medical record is an emerging health information exchange model based on cloud computing. As cloud computing allows companies and individuals to outsource their data and computation, the medical data is always stored at a third party such as cloud, which brings a variety of risks, such as data leakage to the untrusted cloud server, unauthorized access or modification operations. To assure the confidentiality of the data, the data owner needs to encrypt the sensitive data before uploading to the third party. Yet, issues like encrypted data search, flexible access and control on sensitive data have also remained the most significant challenges. In this paper, we investigate a novel searchable encrypted e-medical framework for multi-client which provides both confidentiality and searchability. Different from previous privacy protecting works in secure data outsourcing, we focus on providing a fine-grained access control encrypted data search scheme including clients and data. Our scheme also enables secure data update of the encrypted database by leveraging a secure dynamic searchable encryption. Furthermore, we implement the proposed scheme based on some existed cryptography library, and conduct several experiments on a selected dataset to evaluate its performance. The results demonstrate that our scheme provides a balance between security and efficiency.
AB - E-medical record is an emerging health information exchange model based on cloud computing. As cloud computing allows companies and individuals to outsource their data and computation, the medical data is always stored at a third party such as cloud, which brings a variety of risks, such as data leakage to the untrusted cloud server, unauthorized access or modification operations. To assure the confidentiality of the data, the data owner needs to encrypt the sensitive data before uploading to the third party. Yet, issues like encrypted data search, flexible access and control on sensitive data have also remained the most significant challenges. In this paper, we investigate a novel searchable encrypted e-medical framework for multi-client which provides both confidentiality and searchability. Different from previous privacy protecting works in secure data outsourcing, we focus on providing a fine-grained access control encrypted data search scheme including clients and data. Our scheme also enables secure data update of the encrypted database by leveraging a secure dynamic searchable encryption. Furthermore, we implement the proposed scheme based on some existed cryptography library, and conduct several experiments on a selected dataset to evaluate its performance. The results demonstrate that our scheme provides a balance between security and efficiency.
KW - Access and control
KW - E-medical record
KW - Encrypted data search
KW - Multi-client
UR - http://www.scopus.com/inward/record.url?scp=85066116714&partnerID=8YFLogxK
U2 - 10.1016/j.ins.2019.05.056
DO - 10.1016/j.ins.2019.05.056
M3 - Article
AN - SCOPUS:85066116714
SN - 0020-0255
VL - 527
SP - 394
EP - 405
JO - Information Sciences
JF - Information Sciences
ER -