Access control for electronic health records with hybrid blockchain-edge architecture

Hao Guo, Wanxin Li, Mark Nejad, Chien Chung Shen

Research output: Chapter in Book or Report/Conference proceedingConference Proceedingpeer-review

120 Citations (Scopus)


The global Electronic Health Record (EHR) market is growing dramatically and expected to reach $39.7 billions by 2022. To safe-guard security and privacy of EHR, access control is an essential mechanism for managing EHR data. This paper proposes a hybrid architecture to facilitate access control of EHR data by using both blockchain and edge node. Within the architecture, a blockchain-based controller manages identity and access control policies and serves as a tamper-proof log of access events. In addition, off-chain edge nodes store the EHR data and apply policies specified in Abbreviated Language For Authorization (ALFA) to enforce attribute-based access control on EHR data in collaboration with the blockchain-based access control logs. We evaluate the proposed hybrid architecture by utilizing Hyperledger Composer Fabric blockchain to measure the performance of executing smart contracts and ACL policies in terms of transaction processing time and response time against unauthorized data retrieval.

Original languageEnglish
Title of host publicationProceedings - 2019 2nd IEEE International Conference on Blockchain, Blockchain 2019
PublisherInstitute of Electrical and Electronics Engineers Inc.
Number of pages8
ISBN (Electronic)9781728146935
Publication statusPublished - Jul 2019
Externally publishedYes
Event2nd IEEE International Conference on Blockchain, Blockchain 2019 - Atlanta, United States
Duration: 14 Jul 201917 Jul 2019

Publication series

NameProceedings - 2019 2nd IEEE International Conference on Blockchain, Blockchain 2019


Conference2nd IEEE International Conference on Blockchain, Blockchain 2019
Country/TerritoryUnited States


  • Access Control List
  • Attribute-based Access Control
  • Blockchain
  • Edge Computing
  • Hyperledger
  • Smart Contract


Dive into the research topics of 'Access control for electronic health records with hybrid blockchain-edge architecture'. Together they form a unique fingerprint.

Cite this