Situation Based Access Policy for EPHR Data

碩士 === 國立成功大學 === 資訊工程學系 === 102 === Electronic Patient Health Record (EPHR) systems may facilitate a patient not only to share his/her health records securely with healthcare professional but also to control his/her health privacy, in a convenient and easy way even in case of emergency. In order to...

Full description

Bibliographic Details
Main Authors: Anh NguyenBao, 阮堡英
Other Authors: Tzonelih Hwang
Format: Others
Language:en_US
Published: 2014
Online Access:http://ndltd.ncl.edu.tw/handle/83139211461449749843
id ndltd-TW-102NCKU5392093
record_format oai_dc
spelling ndltd-TW-102NCKU53920932015-10-14T00:12:48Z http://ndltd.ncl.edu.tw/handle/83139211461449749843 Situation Based Access Policy for EPHR Data 基於情況之電子病歷存取政策 Anh NguyenBao 阮堡英 碩士 國立成功大學 資訊工程學系 102 Electronic Patient Health Record (EPHR) systems may facilitate a patient not only to share his/her health records securely with healthcare professional but also to control his/her health privacy, in a convenient and easy way even in case of emergency. In order to fulfill these requirements, it is greatly desirable to have the access control mechanism which can efficiently handle every circumstance without negotiating security. However, the existing access control mechanisms used in healthcare to regulate and restrict the disclosure of pa-tient data are often bypassed in case of emergencies. In this thesis, we propose a way to se-curely share EPHR data under any situation including break-the-glass (BtG) without com-promising its security. In this regard, we adopt the reference security model designed by Quantum Information and Network Security Lab (QINS, NCKU), which consists of a multi-level data flow hierarchy, and an efficient access control framework based on the conventional Role-Based and Mandatory Access Control polices. Here, the main contribu-tion of this thesis work is to enforce “situations based access policy” on the reference secu-rity model. Tzonelih Hwang 黃宗立 2014 學位論文 ; thesis 30 en_US
collection NDLTD
language en_US
format Others
sources NDLTD
description 碩士 === 國立成功大學 === 資訊工程學系 === 102 === Electronic Patient Health Record (EPHR) systems may facilitate a patient not only to share his/her health records securely with healthcare professional but also to control his/her health privacy, in a convenient and easy way even in case of emergency. In order to fulfill these requirements, it is greatly desirable to have the access control mechanism which can efficiently handle every circumstance without negotiating security. However, the existing access control mechanisms used in healthcare to regulate and restrict the disclosure of pa-tient data are often bypassed in case of emergencies. In this thesis, we propose a way to se-curely share EPHR data under any situation including break-the-glass (BtG) without com-promising its security. In this regard, we adopt the reference security model designed by Quantum Information and Network Security Lab (QINS, NCKU), which consists of a multi-level data flow hierarchy, and an efficient access control framework based on the conventional Role-Based and Mandatory Access Control polices. Here, the main contribu-tion of this thesis work is to enforce “situations based access policy” on the reference secu-rity model.
author2 Tzonelih Hwang
author_facet Tzonelih Hwang
Anh NguyenBao
阮堡英
author Anh NguyenBao
阮堡英
spellingShingle Anh NguyenBao
阮堡英
Situation Based Access Policy for EPHR Data
author_sort Anh NguyenBao
title Situation Based Access Policy for EPHR Data
title_short Situation Based Access Policy for EPHR Data
title_full Situation Based Access Policy for EPHR Data
title_fullStr Situation Based Access Policy for EPHR Data
title_full_unstemmed Situation Based Access Policy for EPHR Data
title_sort situation based access policy for ephr data
publishDate 2014
url http://ndltd.ncl.edu.tw/handle/83139211461449749843
work_keys_str_mv AT anhnguyenbao situationbasedaccesspolicyforephrdata
AT ruǎnbǎoyīng situationbasedaccesspolicyforephrdata
AT anhnguyenbao jīyúqíngkuàngzhīdiànzibìnglìcúnqǔzhèngcè
AT ruǎnbǎoyīng jīyúqíngkuàngzhīdiànzibìnglìcúnqǔzhèngcè
_version_ 1718087703654825984