Skip to Main Content (Press Enter)

Logo CNR
  • ×
  • Home
  • People
  • Outputs
  • Organizations
  • Expertise & Skills

UNI-FIND
Logo CNR

|

UNI-FIND

cnr.it
  • ×
  • Home
  • People
  • Outputs
  • Organizations
  • Expertise & Skills
  1. Outputs

A system for semantic-based access control

Conference Paper
Publication Date:
2013
abstract:
Security and privacy of patient's medical data has more than ever become a critical factor in healthcare and, therefore, has a strong influence on the development of Electronic Health Record (EHR) systems. One of the most challenging aspects regards the possibility of specifying fine-grained access control restrictions over EHRs, not only at a document level but also on their specific sections. In order to face this issue, the paper proposes a semantic-based system aimed at supporting the definition of fine-grained access control policies on EHRs. This system relies on a role-based authorization model, encoded in terms of a formal ontology, and a set of access control restrictions defined as "if-then rules", in order to assign to healthcare workers the necessary privileges to carry out a task on specific EHR sections. A prototype implementation has been realized, by offering simple and intuitive interfaces to the security administrators for writing access control policies and restrictions. © 2013 IEEE.
Iris type:
04.01 Contributo in Atti di convegno
Keywords:
Access control policy; Component; Electronic Health Record; Ontology; Role-based access control; Rule-based formalism.
List of contributors:
DE PIETRO, Giuseppe; Esposito, Massimo
Authors of the University:
ESPOSITO MASSIMO
Handle:
https://iris.cnr.it/handle/20.500.14243/269075
  • Overview

Overview

URL

http://www.scopus.com/record/display.url?eid=2-s2.0-84893454166&origin=inward
  • Use of cookies

Powered by VIVO | Designed by Cineca | 26.5.0.0 | Sorgente dati: PREPROD (Ribaltamento disabilitato)