首页|基于无证书代理重加密的区块链电子病历数据共享方案

基于无证书代理重加密的区块链电子病历数据共享方案

Blockchain electronic medical record data sharing scheme based on certificateless proxy re-encryption

扫码查看
提出一种基于无证书代理重加密的区块链电子病历数据共享方案.利用无证书代理重加密实现数据的隐私保护与安全访问控制,克服基于身份的公钥密码体制中存在的密钥托管问题,降低密钥管理成本.利用星际文件系统(InterPlanetary File System,IPFS)存储加密后的电子病历数据密文,避免传统服务器单点失效和存储容量受限的问题.将智能合约作为可信第三方,实现分布式密钥生成与多用户访问权限授权,确保数据的安全共享,改善传统云服务器的半可信问题.安全性分析结果表明,所提方案在随机谕言机模型中具有选择明文攻击下的不可区分性.仿真结果表明,与传统电子病历共享方案相比,该方案具有更高的计算效率,且拥有更低的Gas消耗.
A scheme of sharing electronic medical record(EMR)based on blockchain and certifi-cateless proxy re-encryption is proposed.The utilization of certificateless proxy re-encryption a-chieves privacy protection and secure access control of data,overcomes the key escrow problems in i-dentity-based public-key cryptography,and reduces the costs of key management.Furthermore,the scheme employs the inter-planetary file system(IPFS)to store encrypted EMR data ciphertexts,which avoids the problems of single point failure and limited storage capacity of traditional servers.Taking the smart contracts as the third party,this scheme achieved distributed key generation and multi-user access authorization,which ensured the security of data sharing and solved the semi-trus-ted problem of cloud servers.Safety analysis indicates that the proposed scheme guaranteed the in-distinguishability against chosen-plaintext attacks in the random oracle model.Experiment result shows that the proposed scheme has higher computation efficiency and lower Gas costs compared with traditional electronic medical record schemes.

smart contractsdata sharingproxy re-encryptionelectronic medical recordscertificate-less

郭瑞、王俊茗、杨鑫、胡国梁

展开 >

西安邮电大学 网络空间安全学院,陕西 西安 710121

无线网络安全技术国家工程研究中心,陕西 西安 710121

智能合约 数据共享 代理重加密 电子病历 无证书体制

国家自然科学基金项目陕西省重点研发计划项目陕西省创新能力支持计划项目陕西省自然科学基金一般项目

620723692020ZDLGY08-042020KJXX-0522024JC-YBMS-545

2024

西安邮电大学学报
西安邮电学院

西安邮电大学学报

CSTPCD
影响因子:0.795
ISSN:1007-3264
年,卷(期):2024.29(4)