Cryptography based access control in healthcare web systems

  • Authors:
  • Wasim A. Al-Hamdani

  • Affiliations:
  • Kentucky State University, East Main, KY

  • Venue:
  • 2010 Information Security Curriculum Development Conference
  • Year:
  • 2010

Quantified Score

Hi-index 0.00

Visualization

Abstract

Access control is the capacity of a particular subject (user, process) to permit or deny the use of a specific object (data, file). Access control mechanisms can be used in managing physical resources and logical resources. Cryptography access control in a healthcare Web system provides logical control for sharing resources and access rights subject to object. However, designing access control for healthcare information systems is difficult due to the culture of the healthcare, the rapid changing, and the tasks performed. This work examined existing access control models, providing a broad presentation for cryptographic algorithms including cryptography access control-based systems. In the last part, a new model is presented based on integrating cryptography access control with role access control and hierarchy using Suite B (NSA recommendation). The model is based on the using entity (which could be a local medical center or hospital), while the security level between entities are distributed and based on PKI.