Journal of Computer Applications ›› 2024, Vol. 44 ›› Issue (10): 3122-3133.DOI: 10.11772/j.issn.1001-9081.2023101398

• Cyber security • Previous Articles     Next Articles

Patient-centric medical information sharing scheme based on IPFS and blockchain

Xiaoyu DU1,2, Shuaiqi LIU1, Zhijie HAN2,3(), Zhenxiang HUO1, Yujing WANG1,2   

  1. 1.School of Computer and Information Engineering,Henan University,Kaifeng Henan 475004,China
    2.Henan Engineering Research Center for Industrial Internet of Things,Zhengzhou Henan 450046,China
    3.School of Software,Henan University,Kaifeng Henan 475004,China
  • Received:2023-10-17 Revised:2024-02-06 Accepted:2024-02-18 Online:2024-10-15 Published:2024-10-10
  • Contact: Zhijie HAN
  • About author:DU Xiaoyu, born in 1979, Ph. D., associate professor. Her research interests include IoT security, data center network architecture and performance analysis, invulnerability in wireless sensor networks and vehicular networks.
    LIU Shuaiqi, born in 1999, M. S. candidate. His research interests include network and information security, identity authentication.
    HUO Zhenxiang, born in 2000, M. S. candidate. His research interests include IoT security, trust management, identity authentication.
    WANG Yujing, born in 1980, Ph. D., associate professor. Her research interests include reliability of data center networks.
  • Supported by:
    Key Research and Development and Promotion Projects of Henan Province(232102211009);Kaifeng Science and Technology Development Plan Project(2201010)

以患者为中心基于IPFS和区块链的医疗信息共享方案

杜晓玉1,2, 刘帅起1, 韩志杰2,3(), 霍振祥1, 王玉璟1,2   

  1. 1.河南大学 计算机与信息工程学院,河南 开封 475004
    2.河南省工业互联网工程技术研究中心,郑州 450046
    3.河南大学 软件学院,河南 开封 475004
  • 通讯作者: 韩志杰
  • 作者简介:杜晓玉(1979—),女,河南濮阳人,副教授,博士,CCF会员,主要研究方向:物联网安全、数据中心网络结构及性能分析、无线传感器网络及车联网抗毁性
    刘帅起(1999—),男,河南商丘人,硕士研究生,主要研究方向:网络和信息安全、身份认证
    韩志杰(1979—),男,河南周口人,教授,博士,CCF高级会员,主要研究方向:数据中心网络结构及性能分析、网络流量异常检测、可搜索加密 hanzhijie@126.com
    霍振祥(2000—),男,河南驻马店人,硕士研究生,主要研究方向:物联网安全、信任管理、身份认证
    王玉璟(1980—),女,河南新乡人,副教授,博士,主要研究方向:数据中心网络可靠性。
  • 基金资助:
    河南省重点研发与推广专项(232102211009);开封市科技计划发展项目(2201010)

Abstract:

The storage and sharing of Electronic Medical Records (EMR) among healthcare institutions plays a crucial role in achieving cross-hospital diagnosis and hierarchical treatment, effectively reducing the burden on patients and avoiding redundant examinations. To address the difficulty of securely storing and sharing EMR, a patient-centric scheme for secure storage and efficient sharing of EMR, based on the InterPlanetary File System (IPFS) and blockchain, named Patient-Centric Medical Information Sharing based on IPFS and Blockchain (PCIB-MIS), was proposed. First, a hybrid encryption strategy was employed, securely storing and sharing EMR while reducing the time for encryption and decryption. Then, the ciphertext index of EMR was stored using blockchain technology. Next, a combination of consortium and private blockchains was utilized to decrease storage pressure, with EMR indices being stored on hospitals’ private chains. Finally, EMR ciphertext was stored on IPFS, ensuring data security and immutability. When retrieval of EMR across hospitals was needed, cross-chain calls and proxy re-encryption centered around the consortium chain were conducted. Security analysis and experimental results demonstrate that only authorized physicians could access patient records. Compared to the public key encryption algorithm RSA (Rivest-Shamir-Adleman) scheme, the encryption and decryption time are reduced to milliseconds, and storing EMR on this system saves 98.8% of block storage space compared to storing it solely on the blockchain. The proposed scheme effectively achieves secure storage and sharing of medical records, substantially compresses EMR encryption and decryption time, and alleviates blockchain storage pressure.

Key words: blockchain, InterPlanetary File System (IPFS), hybrid encryption, medical information sharing, searchable encryption

摘要:

医疗机构之间的电子病历(EMR)存储与共享,对实现跨院诊断和分级诊疗至关重要,可以有效减轻患者的负担和避免重复检查。针对EMR难以安全存储和共享的问题,提出一种以患者为中心基于星际文件系统(IPFS)和区块链的EMR安全存储与高效共享(PCIB-MIS)方案。首先,应用混合加密策略,以安全存储与共享EMR,缩减加解密时间;其次,通过区块链存储EMR的密文索引;再次,结合联盟链与私有链以降低存储压力,EMR索引存于医院私有链;最后,EMR密文存放于IPFS,确保数据安全和不可篡改。当需要跨院调取EMR时,进行以联盟链为中心的跨链调用与代理重加密。安全性分析与实验结果表明,仅被授权医生可获取患者病历;与公钥加密算法RSA相比,将加解密时间降低至毫秒级别;与将EMR单一存放于区块链上的方案相比,节省了98.8%的区块存储空间。所提方案可以实现病历安全存储与共享,大幅压缩EMR加解密时间和减轻区块链存储压力。

关键词: 区块链, 星际文件系统, 混合加密, 医疗信息共享, 可搜索加密

CLC Number: