4.8 Article

Lightweight Break-Glass Access Control System for Healthcare internet-of-Things

Journal

IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS
Volume 14, Issue 8, Pages 3610-3617

Publisher

IEEE-INST ELECTRICAL ELECTRONICS ENGINEERS INC
DOI: 10.1109/TII.2017.2751640

Keywords

Access control; break-glass; healthcare system; lightweight; secure Internet-of-Things (IoT)

Funding

  1. National Natural Science Foundation of China [61402112, 61702105]
  2. Singapore National Research Foundation [NRF2014NCR-NCR001-012]
  3. AXA Research Fund
  4. Fujian Provincial Key Laboratory of Information Processing and Intelligent Control, Minjiang University [MJUKF201734]
  5. Fujian Major Project of Regional Industry [2014 H4015]
  6. Major Science and Technology Project of Fujian Province [2015H6013]

Ask authors/readers for more resources

Healthcare Internet-of-things (IoT) has been proposed as a promising means to greatly improve the efficiency and quality of patient care. Medical devices in healthcare IoT measure patients' vital signs and aggregate these data into medical files which are uploaded to the cloud for storage and accessed by healthcare workers. To protect patients' privacy, encryption is normally used to enforce access control of medical files by authorized parties while preventing unauthorized access. In healthcare, it is crucial to enable timely access of patient files in emergency situations. In this paper, we propose a lightweight break-glass access control (LiBAC) system that supports two ways for accessing encrypted medical files: attribute-based access and break-glass access. In normal situations, a medical worker with an attribute set satisfying the access policy of a medical file can decrypt and access the data. In emergent situations, the break-glass access mechanism bypasses the access policy of the medical file to allow timely access to the data by emergency medical care or rescue workers. LiBAC is lightweight since very few calculations are executed by devices in the healthcare IoT network, and the storage and transmission overheads are low. LiBAC is formally proved secure in the standard model and extensive experiments are conducted to demonstrate its efficiency.

Authors

I am an author on this paper
Click your name to claim this paper and add it to your profile.

Reviews

Primary Rating

4.8
Not enough ratings

Secondary Ratings

Novelty
-
Significance
-
Scientific rigor
-
Rate this paper

Recommended

No Data Available
No Data Available