skip to main content
10.1145/3640115.3640188acmotherconferencesArticle/Chapter ViewAbstractPublication PagesiciteeConference Proceedingsconference-collections
research-article

Consent Management System Based on User Data Security and Privacy Using Hyperledger Fabric Blockchain

Published: 26 March 2024 Publication History

Abstract

The challenge of safeguarding user data privacy becomes pronounced when private data is outsourced to cloud services, potentially exposing it to unauthorized access. The challenge of centralized storage of user data introduces heightened security risks and a dependence on a single authority, posing difficulties in safeguarding against internal breaches. This study is dedicated to advancing user privacy and data security, especially in scenarios involving the sharing of sensitive information within or across organizations, including small enterprises functioning in a distributed environment. The research introduces a consent management framework built on Blockchain technology, with a particular focus on user consent management. This framework is designed to prioritize the principles of privacy, security, scalability, and data integrity. It utilizes Hyperledger Fabric which is a permissioned distributed ledger solution, and incorporates Hyperledger Composer to establish and maintain a secure record of user data. To enhance the security of stored data, the framework incorporates the Interplanetary File System (IPFS) and employs a unique cryptographic public key encryption algorithm for data encryption. The overarching aim of this research is to establish a robust security solutions foundation against cyber threats by harnessing the inherent capabilities of blockchain technology, ultimately strengthening the security landscape for sharing user information.

References

[1]
“Consent Management.” Available online: https://www.gartner.com/en/information technology/glossary/consent-management (accessed on 12 June 2020). [Accessed: 12- June-2021].
[2]
“What is Data Management?”. Available online: https://www.ngdata.com/what-is data-management/. [Accessed: 06-June-2021].
[3]
“5 things you need to know about Data Privacy.” Available online: https://dataprivacymanager.net/5-things-you-need-to-know-about-dataprivacy/. [Accessed: 06-June-2021].
[4]
Azaria, A., Ekblaw, A., Vieira, T., & Lippman, A. (2016, August). Medrec: Using blockchain for medical data access and permission management. In 2016 2nd international conference on open and big data (OBD) (pp. 25-30). IEEE.
[5]
Liang, X., Zhao, J., Shetty, S., Liu, J., & Li, D. (2017, October). Integrating blockchain for data sharing and collaboration in mobile healthcare applications. In 2017 IEEE 28th annual international symposium on personal, indoor, and mobile radio communications (PIMRC) (pp. 1-5). IEEE.
[6]
Rouhani, S., Butterworth, L., Simmons, A. D., Humphery, D. G., & Deters, R. (2018, July). MediChain TM: a secure decentralized medical data asset management system. In 2018 IEEE International Conference on Internet of Things (iThings) and IEEE Green Computing and Communications (GreenCom) and IEEE Cyber, Physical and 72 Social Computing (CPSCom) and IEEE Smart Data (SmartData) (pp. 1533-1538). IEEE.
[7]
Swetha, M. S., Pushpa, S. K., Muneshwara, M. S., & Manjunath, T. N. (2020, December). Blockchain enabled secure healthcare Systems. In 2020 IEEE International Conference on Machine Learning and Applied Network Technologies (ICMLANT) (pp. 1-6). IEEE.
[8]
Al Asad, N., Elahi, M. T., Al Hasan, A., & Yousuf, M. A. (2020, November). Permission-Based Blockchain with Proof of Authority for Secured Healthcare Data Sharing. In 2020 2nd International Conference on Advanced Information and Communication Technology (ICAICT) (pp. 35-40). IEEE.
[9]
Rajput, A. R., Li, Q., Ahvanooey, M. T., & Masood, I. (2019). EACMS: Emergency access control management system for personal health record based on blockchain. IEEE Access, 7, 84304-84317.
[10]
Tith, D., Lee, J. S., Suzuki, H., Wijesundara, W. M. A. B., Taira, N., Obi, T., & Ohyama, N. (2020). Patient consent management by a purpose-based consent model for electronic health record based on blockchain technology. Healthcare Informatics Research, 26(4), 265-273.
[11]
Agbo, C. C., & Mahmoud, Q. H. (2020, October). Design and Implementation of a Blockchain-Based E-Health Consent Management Framework. In 2020 IEEE International Conference on Systems, Man, and Cybernetics (SMC) (pp. 812-817). IEEE
[12]
Conoscenti, M.; Vetro, A.; De Martin, J.C. Blockchain for the Internet of Things: A systematic literature review. In Proceedings of the 2016 IEEE/ACS 13th International Conference of Computer Systems and Applications (AICCSA), Agadir, Morocco, 29 November–2 December 2016.
[13]
Cha, S.C.; Chen, J.F.; Su, C.; Yeh, K.H. A blockchain-connected gateway for BLE based devices in the Internet of Things. IEEE Access 2018, 6, 24639–24649.
[14]
Sabrina, F. A Novel Entitlement-based Blockchain-enabled Security Architecture for IoT. In Proceedings of the 2019 29th International Telecommunication Networks and Applications Conference (ITNAC), Auckland, New Zealand, 27–29 November 2019.
[15]
Rantos, K., Drosatos, G., Kritsas, A., Ilioudis, C., Papanikolaou, A., & Filippidis, A. P. (2019). A blockchain-based platform for consent management of personal data processing in the IoT ecosystem. Security and Communication Networks, 2019.
[16]
Monrat, A.A.; Schelén, O.; Andersson, K. A survey of blockchain from the perspectives of applications, challenges, and opportunities. IEEE Access 2019, 7, 117134–117151.
[17]
Chowdhury, M.J.M.; Colman, A.; Kabir, M.A.; Han, J.; Sarda, P. Blockchain as a notarization service for data sharing with personal data store. In Proceedings of the 2018 17th IEEE International Conference on Trust, Security and Privacy in Computing and Communications/12th IEEE International Conference on Big Data Science and Engineering (TrustCom/BigDataSE), New York, NY, USA, 1–3 August 2018.
[18]
Doku, R.; Rawat, D. Pledge: A private ledger based decentralized data sharing framework. In Proceedings of the 2019 Spring Simulation Conference (SpringSim), Tucson, AZ, USA, 29 April–2 May 2019.
[19]
Alessi, M.; Camillo, A.; Giangreco, E.; Matera, M.; Pino, S.; Storelli, D. Make users own their data: A decentralized personal data store prototype based on ethereum and 74 ipfs. In Proceedings of the 2018 3rd International Conference on Smart and Sustainable Technologies (SpliTech), Split, Croatia, 26–29 June 2018.
[20]
Topart, L.; Genestier, P.; Picaud, Y. Blockchain brings confidence to facilitate the flow of data in the agricultural field. In Proceedings of the 2020 2nd Conference on Blockchain Research & Applications for Innovative Networks and Services (BRAINS), Paris, France, 28–30 September 2020.
[21]
Agarwal, R. R., Kumar, D., Golab, L., & Keshav, S. (2020, May). Consentio: Managing consent to data access using permissioned blockchains. In 2020 IEEE International Conference on Blockchain and Cryptocurrency (ICBC) (pp. 1-9). IEEE.
[22]
Aldred, N., Baal, L., Broda, G., Trumble, S., & Mahmoud, Q. H. (2019). Design and Implementation of a Blockchain-based Consent Management System. arXiv preprint arXiv:1912.09882
[23]
S. J Nass, L.A. Levit. L.O. Gostin, and I.of M. (US) C. on H.R. and the P. of H.I.T.H.P. Rule, The value and importance of health information Privacy. National Academies Press (US), 2009.
[24]
Androulaki E, Barger A, Bortnikov V, Cachin C, Christidis K, De Caro A, Hyperledger fabric: a distributed operating system for permissioned blockchains. In: Proceedings of the Thirteenth EuroSys Conference. ACM; 2018. p. 30.

Recommendations

Comments

Information & Contributors

Information

Published In

cover image ACM Other conferences
ICITEE '23: Proceedings of the 6th International Conference on Information Technologies and Electrical Engineering
November 2023
764 pages
ISBN:9798400708299
DOI:10.1145/3640115
Permission to make digital or hard copies of all or part of this work for personal or classroom use is granted without fee provided that copies are not made or distributed for profit or commercial advantage and that copies bear this notice and the full citation on the first page. Copyrights for components of this work owned by others than the author(s) must be honored. Abstracting with credit is permitted. To copy otherwise, or republish, to post on servers or to redistribute to lists, requires prior specific permission and/or a fee. Request permissions from [email protected].

Publisher

Association for Computing Machinery

New York, NY, United States

Publication History

Published: 26 March 2024

Permissions

Request permissions for this article.

Check for updates

Author Tags

  1. Consent management
  2. Data security
  3. Hyperledger fabric blockchain

Qualifiers

  • Research-article
  • Research
  • Refereed limited

Conference

ICITEE 2023

Contributors

Other Metrics

Bibliometrics & Citations

Bibliometrics

Article Metrics

  • 0
    Total Citations
  • 41
    Total Downloads
  • Downloads (Last 12 months)41
  • Downloads (Last 6 weeks)4
Reflects downloads up to 05 Mar 2025

Other Metrics

Citations

View Options

Login options

View options

PDF

View or Download as a PDF file.

PDF

eReader

View online with eReader.

eReader

HTML Format

View this article in HTML Format.

HTML Format

Figures

Tables

Media

Share

Share

Share this Publication link

Share on social media