Abstract
The widespread application of medical information systems has promoted the growth of personal electronic medical records (EMRs), which are typically produced in different medical institutions and stored in data centers. Consequently, the data owners no longer retain control over their medical data, nor can they establish access control rules for their EMRs. Therefore, this study designs a patient-centered EMR access control system that integrates decentralized smart contracts and role-based access control (RBAC) to provide fine-grained data access control. In this system, we integrate an RBAC model to achieve user-permission definition and adopt a personalized data access policy definition mechanism to achieve patient-centered data access control. The proposed system allows data owners to define a series of data access policies through smart contracts, achieving decentralized management of data access control permissions. In addition, we analyze the security features of this scheme and design a series of comparative experiments to evaluate the performance. The experimental results show that this system can efficiently achieve access control of personal EMRs and has higher reliability compared to traditional cloud-based EMR sharing systems.
| Original language | English |
|---|---|
| Pages (from-to) | 2970-2987 |
| Number of pages | 18 |
| Journal | IEEE Internet of Things Journal |
| Volume | 13 |
| Issue number | 2 |
| DOIs | |
| Publication status | Published - 1 Jan 2026 |
Keywords
- Access control
- electronic medical record (EMR)
- role-based access control (RBAC)
- smart contract
Fingerprint
Dive into the research topics of 'Privacy-Preserving Fine-Grained EMR Access Control for IoMT: A Hybrid RBAC-Smart Contract Scheme With Attribute-Based Authorization'. Together they form a unique fingerprint.Cite this
- APA
- Author
- BIBTEX
- Harvard
- Standard
- RIS
- Vancouver