| The information age has been coming,development trend of modern medical is approaching to electronic.As the main carrier of medical activity information,electronic medical record is the core application of medical information,occupies a pivotal position in the modern medical.The hospital records all patients information using electronic medical records,including home page,treatment process,test result,doctor’s orders and so on.Currently,he Electronic Medical Record of most medical institutions in our country is the electronic record which is based on local area network and embedded in the main hospital system.It largely limits the implementation of electronic medical records to support a wide range of information sharing,medical services and pathology study,so it can not meet the needs of medical development.In the information sharing process,it is most likely to face illegal access and privacy issues because the electronic medical record contains the patient’s privacy information.This is a major factor that hinders the spread and development of electronic medical records.Considering the above-mentioned problems,if we build a cloud-based electronic medical records system to improve the security and applicability of existing systems.It will greatly promote the modern medical information process of China.The electronic medical record system we construct is mainly composed of cloud storage-based electronic medical records and credible attributes mechanism.Electronic medical record system based on cloud storage is divided into resource storage layer,basic management layer,access control layer and electronic medical record service layer.We use cloud storage technology to achieve resource storage and basic management,which has the characteristics of maintain and expand easily.The access control layer is used to implement the rights management and attribute authentication functions.The electronic medical service layer provides electronic medical record for hospitals and patients.The trusted attribute stores the attributes of different physicians to lay the foundation for access control.According to the access requirements of electronic medical records,we build a access control model which based on the ciphertext-policy attribute-based encryption(CP-ABE)method.It makes possible for only those users who have a match with the encryption policy to decrypt the ciphertext,thereby completing the fine access control of the electronic medical record data.In order to revoke the user permissions easily,The attribute mechanism randomly selects a property version number for each attribute in order to revoke the user permissions easily.We introduces the proxy key to transfer the user’s computational burden to the cloud server which reducing the user’s calculation greatly. |