Forward secure digital signature for electronic medical records

J Med Syst. 2012 Apr;36(2):399-406. doi: 10.1007/s10916-010-9484-1. Epub 2010 May 6.

Abstract

The Technology Safeguard in Health Insurance Portability and Accountability Act (HIPAA) Title II has addressed a way to maintain the integrity and non-repudiation of Electronic Medical Record (EMR). One of the important cryptographic technologies is mentioned in the ACT is digital signature; however, the ordinary digital signature (e.g. DSA, RSA, GQ...) has an inherent weakness: if the key (certificate) is updated, than all signatures, even the ones generated before the update, are no longer trustworthy. Unfortunately, the current most frequently used digital signature schemes are categorized into the ordinary digital signature scheme; therefore, the objective of this paper is to analyze the shortcoming of using ordinary digital signatures in EMR and to propose a method to use forward secure digital signature to sign EMR to ensure that the past EMR signatures remain trustworthy while the key (certificate) is updated.

MeSH terms

  • Algorithms
  • Computer Security*
  • Confidentiality
  • Electronic Health Records / legislation & jurisprudence
  • Electronic Health Records / organization & administration*
  • Health Insurance Portability and Accountability Act
  • Humans
  • United States