Loading...
Please wait, while we are loading the content...
Similar Documents
Attribute Based Access Control for Healthcare Resources
| Content Provider | ACM Digital Library |
|---|---|
| Author | Ray, Indrajit Mukherjee, Subhojeet Kahn, Michael G. Ray, Indrakshi Ong, Toan Shirazi, Hossein |
| Abstract | Fast Health Interoperability Services (FHIR) is the most recent in the line of standards for healthcare resources. FHIR represents different types of medical artifacts as resources and also provides recommendations for their authorized disclosure using web-based protocols including O-Auth and OpenId Connect and also defines security labels. In most cases, Role Based Access Control (RBAC) is used to secure access to FHIR resources. We provide an alternative approach based on Attribute Based Access Control (ABAC) that allows attributes of subjects and objects to take part in authorization decision. Our system allows various stakeholders to define policies governing the release of healthcare data. It also authenticates the end user requesting access. Our system acts as a middle-layer between the end-user and the FHIR server. Our system provides efficient release of individual and batch resources both during normal operations and also during emergencies. We also provide an implementation that demonstrates the feasibility of our approach. |
| Starting Page | 29 |
| Ending Page | 40 |
| Page Count | 12 |
| File Format | |
| ISBN | 9781450349109 |
| DOI | 10.1145/3041048.3041055 |
| Language | English |
| Publisher | Association for Computing Machinery (ACM) |
| Publisher Date | 2017-03-24 |
| Publisher Place | New York |
| Access Restriction | Subscribed |
| Subject Keyword | Access control Authorization Rest Fhir Abac |
| Content Type | Text |
| Resource Type | Article |