Jove
Visualize
Contact Us
JoVE
x logofacebook logolinkedin logoyoutube logo
ABOUT JoVE
OverviewLeadershipBlogJoVE Help Center
AUTHORS
Publishing ProcessEditorial BoardScope & PoliciesPeer ReviewFAQSubmit
LIBRARIANS
TestimonialsSubscriptionsAccessResourcesLibrary Advisory BoardFAQ
RESEARCH
JoVE JournalMethods CollectionsJoVE Encyclopedia of ExperimentsArchive
EDUCATION
JoVE CoreJoVE BusinessJoVE Science EducationJoVE Lab ManualFaculty Resource CenterFaculty Site
Terms & Conditions of Use
Privacy Policy
Policies

Related Experiment Videos

Implementing context and team based access control in healthcare intranets.

Christos K Georgiadis1, Ioannis K Mavridis, Georgia Nikolakopoulou

  • 1Informatics Lab., Computers Div., Faculty of Technology, Aristotle University of Thessaloniki, 54006, Thessaloniki, Greece. gxri@acm.org

Medical Informatics and the Internet in Medicine
|January 1, 2003
PubMed
Summary

We developed C-TMAC, an access control model for healthcare intranets, enhancing patient privacy. This model dynamically filters user permissions based on context and team collaboration for improved security.

Related Concept Videos

You might also read

Related Articles

Articles linked to this work by shared authors, journal, and citation graph.

Sort by
Same author

Contextualized Filtering for Shared Cyber Threat Information.

Sensors (Basel, Switzerland)·2021
Same author

KnowBaSICS-M: an ontology-based system for semantic management of medical problems and computerised algorithmic solutions.

Computer methods and programs in biomedicine·2007
Same author

Healthcare teams over the Internet: towards a certificate-based approach.

Studies in health technology and informatics·2004
Same author

Healthcare teams over the Internet: programming a certificate-based approach.

International journal of medical informatics·2003

Area of Science:

  • Computer Science
  • Information Security
  • Healthcare Informatics

Background:

  • Healthcare intranets require robust security to protect sensitive patient data.
  • Existing access control models like RBAC and TMAC have limitations in dynamic healthcare environments.

Purpose of the Study:

  • To introduce and describe the experimental implementation of the Context and Team-based Access Control (C-TMAC) model.
  • To address the specific security requirements of healthcare applications through an active access control system.

Main Methods:

  • Developed the C-TMAC model, layering dynamic access control on RBAC and TMAC.
  • Implemented C-TMAC using Oracle Database Management System and Application Server with PL/SQL procedures.
  • Utilized identity and attribute certificates for authentication and metadata communication.

Related Experiment Videos

Main Results:

  • The C-TMAC model dynamically filters user permissions at runtime based on context and team collaboration.
  • The implemented system provides fine-grained access control and adapts to user need-to-know requirements.
  • Attribute certificates effectively communicate user role and team participation metadata.

Conclusions:

  • The C-TMAC model offers an effective solution for enhancing security and patient privacy in healthcare intranets.
  • The experimental implementation demonstrates the feasibility and benefits of dynamic, context-aware access control in healthcare settings.