skip to main content
10.1145/3640115.3640188acmotherconferencesArticle/Chapter ViewAbstractPublication PagesiciteeConference Proceedingsconference-collections
research-article

Consent Management System Based on User Data Security and Privacy Using Hyperledger Fabric Blockchain

Published:26 March 2024Publication History

ABSTRACT

The challenge of safeguarding user data privacy becomes pronounced when private data is outsourced to cloud services, potentially exposing it to unauthorized access. The challenge of centralized storage of user data introduces heightened security risks and a dependence on a single authority, posing difficulties in safeguarding against internal breaches. This study is dedicated to advancing user privacy and data security, especially in scenarios involving the sharing of sensitive information within or across organizations, including small enterprises functioning in a distributed environment. The research introduces a consent management framework built on Blockchain technology, with a particular focus on user consent management. This framework is designed to prioritize the principles of privacy, security, scalability, and data integrity. It utilizes Hyperledger Fabric which is a permissioned distributed ledger solution, and incorporates Hyperledger Composer to establish and maintain a secure record of user data. To enhance the security of stored data, the framework incorporates the Interplanetary File System (IPFS) and employs a unique cryptographic public key encryption algorithm for data encryption. The overarching aim of this research is to establish a robust security solutions foundation against cyber threats by harnessing the inherent capabilities of blockchain technology, ultimately strengthening the security landscape for sharing user information.

References

  1. “Consent Management.” Available online: https://www.gartner.com/en/information technology/glossary/consent-management (accessed on 12 June 2020). [Accessed: 12- June-2021].Google ScholarGoogle Scholar
  2. “What is Data Management?”. Available online: https://www.ngdata.com/what-is data-management/. [Accessed: 06-June-2021].Google ScholarGoogle Scholar
  3. “5 things you need to know about Data Privacy.” Available online: https://dataprivacymanager.net/5-things-you-need-to-know-about-dataprivacy/. [Accessed: 06-June-2021].Google ScholarGoogle Scholar
  4. Azaria, A., Ekblaw, A., Vieira, T., & Lippman, A. (2016, August). Medrec: Using blockchain for medical data access and permission management. In 2016 2nd international conference on open and big data (OBD) (pp. 25-30). IEEE.Google ScholarGoogle ScholarCross RefCross Ref
  5. Liang, X., Zhao, J., Shetty, S., Liu, J., & Li, D. (2017, October). Integrating blockchain for data sharing and collaboration in mobile healthcare applications. In 2017 IEEE 28th annual international symposium on personal, indoor, and mobile radio communications (PIMRC) (pp. 1-5). IEEE.Google ScholarGoogle Scholar
  6. Rouhani, S., Butterworth, L., Simmons, A. D., Humphery, D. G., & Deters, R. (2018, July). MediChain TM: a secure decentralized medical data asset management system. In 2018 IEEE International Conference on Internet of Things (iThings) and IEEE Green Computing and Communications (GreenCom) and IEEE Cyber, Physical and 72 Social Computing (CPSCom) and IEEE Smart Data (SmartData) (pp. 1533-1538). IEEE.Google ScholarGoogle Scholar
  7. Swetha, M. S., Pushpa, S. K., Muneshwara, M. S., & Manjunath, T. N. (2020, December). Blockchain enabled secure healthcare Systems. In 2020 IEEE International Conference on Machine Learning and Applied Network Technologies (ICMLANT) (pp. 1-6). IEEE.Google ScholarGoogle ScholarCross RefCross Ref
  8. Al Asad, N., Elahi, M. T., Al Hasan, A., & Yousuf, M. A. (2020, November). Permission-Based Blockchain with Proof of Authority for Secured Healthcare Data Sharing. In 2020 2nd International Conference on Advanced Information and Communication Technology (ICAICT) (pp. 35-40). IEEE.Google ScholarGoogle Scholar
  9. Rajput, A. R., Li, Q., Ahvanooey, M. T., & Masood, I. (2019). EACMS: Emergency access control management system for personal health record based on blockchain. IEEE Access, 7, 84304-84317.Google ScholarGoogle ScholarCross RefCross Ref
  10. Tith, D., Lee, J. S., Suzuki, H., Wijesundara, W. M. A. B., Taira, N., Obi, T., & Ohyama, N. (2020). Patient consent management by a purpose-based consent model for electronic health record based on blockchain technology. Healthcare Informatics Research, 26(4), 265-273.Google ScholarGoogle ScholarCross RefCross Ref
  11. Agbo, C. C., & Mahmoud, Q. H. (2020, October). Design and Implementation of a Blockchain-Based E-Health Consent Management Framework. In 2020 IEEE International Conference on Systems, Man, and Cybernetics (SMC) (pp. 812-817). IEEEGoogle ScholarGoogle ScholarDigital LibraryDigital Library
  12. Conoscenti, M.; Vetro, A.; De Martin, J.C. Blockchain for the Internet of Things: A systematic literature review. In Proceedings of the 2016 IEEE/ACS 13th International Conference of Computer Systems and Applications (AICCSA), Agadir, Morocco, 29 November–2 December 2016.Google ScholarGoogle ScholarCross RefCross Ref
  13. Cha, S.C.; Chen, J.F.; Su, C.; Yeh, K.H. A blockchain-connected gateway for BLE based devices in the Internet of Things. IEEE Access 2018, 6, 24639–24649.Google ScholarGoogle ScholarCross RefCross Ref
  14. Sabrina, F. A Novel Entitlement-based Blockchain-enabled Security Architecture for IoT. In Proceedings of the 2019 29th International Telecommunication Networks and Applications Conference (ITNAC), Auckland, New Zealand, 27–29 November 2019.Google ScholarGoogle Scholar
  15. Rantos, K., Drosatos, G., Kritsas, A., Ilioudis, C., Papanikolaou, A., & Filippidis, A. P. (2019). A blockchain-based platform for consent management of personal data processing in the IoT ecosystem. Security and Communication Networks, 2019.Google ScholarGoogle ScholarCross RefCross Ref
  16. Monrat, A.A.; Schelén, O.; Andersson, K. A survey of blockchain from the perspectives of applications, challenges, and opportunities. IEEE Access 2019, 7, 117134–117151.Google ScholarGoogle ScholarCross RefCross Ref
  17. Chowdhury, M.J.M.; Colman, A.; Kabir, M.A.; Han, J.; Sarda, P. Blockchain as a notarization service for data sharing with personal data store. In Proceedings of the 2018 17th IEEE International Conference on Trust, Security and Privacy in Computing and Communications/12th IEEE International Conference on Big Data Science and Engineering (TrustCom/BigDataSE), New York, NY, USA, 1–3 August 2018.Google ScholarGoogle Scholar
  18. Doku, R.; Rawat, D. Pledge: A private ledger based decentralized data sharing framework. In Proceedings of the 2019 Spring Simulation Conference (SpringSim), Tucson, AZ, USA, 29 April–2 May 2019.Google ScholarGoogle ScholarCross RefCross Ref
  19. Alessi, M.; Camillo, A.; Giangreco, E.; Matera, M.; Pino, S.; Storelli, D. Make users own their data: A decentralized personal data store prototype based on ethereum and 74 ipfs. In Proceedings of the 2018 3rd International Conference on Smart and Sustainable Technologies (SpliTech), Split, Croatia, 26–29 June 2018.Google ScholarGoogle Scholar
  20. Topart, L.; Genestier, P.; Picaud, Y. Blockchain brings confidence to facilitate the flow of data in the agricultural field. In Proceedings of the 2020 2nd Conference on Blockchain Research & Applications for Innovative Networks and Services (BRAINS), Paris, France, 28–30 September 2020.Google ScholarGoogle ScholarCross RefCross Ref
  21. Agarwal, R. R., Kumar, D., Golab, L., & Keshav, S. (2020, May). Consentio: Managing consent to data access using permissioned blockchains. In 2020 IEEE International Conference on Blockchain and Cryptocurrency (ICBC) (pp. 1-9). IEEE.Google ScholarGoogle ScholarCross RefCross Ref
  22. Aldred, N., Baal, L., Broda, G., Trumble, S., & Mahmoud, Q. H. (2019). Design and Implementation of a Blockchain-based Consent Management System. arXiv preprint arXiv:1912.09882Google ScholarGoogle Scholar
  23. S. J Nass, L.A. Levit. L.O. Gostin, and I.of M. (US) C. on H.R. and the P. of H.I.T.H.P. Rule, The value and importance of health information Privacy. National Academies Press (US), 2009.Google ScholarGoogle Scholar
  24. Androulaki E, Barger A, Bortnikov V, Cachin C, Christidis K, De Caro A, Hyperledger fabric: a distributed operating system for permissioned blockchains. In: Proceedings of the Thirteenth EuroSys Conference. ACM; 2018. p. 30.Google ScholarGoogle ScholarDigital LibraryDigital Library

Recommendations

Comments

Login options

Check if you have access through your login credentials or your institution to get full access on this article.

Sign in
  • Published in

    cover image ACM Other conferences
    ICITEE '23: Proceedings of the 6th International Conference on Information Technologies and Electrical Engineering
    November 2023
    764 pages
    ISBN:9798400708299
    DOI:10.1145/3640115

    Copyright © 2023 ACM

    Permission to make digital or hard copies of all or part of this work for personal or classroom use is granted without fee provided that copies are not made or distributed for profit or commercial advantage and that copies bear this notice and the full citation on the first page. Copyrights for components of this work owned by others than the author(s) must be honored. Abstracting with credit is permitted. To copy otherwise, or republish, to post on servers or to redistribute to lists, requires prior specific permission and/or a fee. Request permissions from [email protected].

    Publisher

    Association for Computing Machinery

    New York, NY, United States

    Publication History

    • Published: 26 March 2024

    Permissions

    Request permissions about this article.

    Request Permissions

    Check for updates

    Qualifiers

    • research-article
    • Research
    • Refereed limited
  • Article Metrics

    • Downloads (Last 12 months)6
    • Downloads (Last 6 weeks)6

    Other Metrics

PDF Format

View or Download as a PDF file.

PDF

eReader

View online with eReader.

eReader

HTML Format

View this article in HTML Format .

View HTML Format