A Prototype for Solving Conflicts in XACML-based e-Health Policies

The Electronic Patient Record (EPR) enables the sharing of medical documents among several and widespread healthcare organizations. To guarantee privacy properties, access control policies should be defined, regulating how the documents can be shared. Conflicts may occur among policies applicable to the same access request. We present a running prototype, based on an XACML engine, that implements a conflict resolution strategy as an extension to the standard combining algorithms of the XACML engine. We evaluate the efficiency of our proposal in terms of execution time, on a variable number of conflicting rules.

The 26th IEEE International Symposium on Computer-Based Medical Systems, Porto, 2013

IIT authors:

Type: Article in proceedings of international peer-reviewed conference
Field of reference: Computer Science & Engineering
Da pagina 449 a pagina 452

Activity: Privacy dei dati personali multi soggetto