Uppsats
Security Assessment and Hardening of a Portable Patient Journal System with Performance Benchmarking Across Multiple Systems : Threat Modeling and Stress Testing the Infrastructure of Cloud and Edge eHealth Systems
Yrkesexamen på avancerad nivå
Karlstads universitet/Institutionen för matematik och datavetenskap (from 2013)
Publicerad: 2026
Språk: Engelska
Sammanfattning
With the digitalization of healthcare, medical systems can be deployed across a wide variety of platforms, including cloud servers and edge computers, such as the Raspberry Pi, among others. Nonetheless, this portability introduces a security paradox: hardening configurations designed to operate in data centers can easily exhaust resources when run on smaller hardware. The primary issue this thesis aims to address is the challenge of enforcing standardized security policies across heterogeneous infrastructure without compromising system performance or availability. To overcome this, a cross-platform security setup was created and tested on a Jakarta EE and MariaDB-based healthcare application. The task was to protect this system on Linux Cloud Server, Windows Workstation, and Raspberry Pi. The study employed a three-stage approach, which includes threat evaluation using the STRIDE model, mitigation measures through a so-called Defense in Depth (e.g., OS isolation and a firewall), and quantification of performance impact through stress testing with Apache JMeter and Sysbench. Experimental results confirm that the framework mitigated all identified infrastructure threats, including identity spoofing and unencrypted traffic. Benchmarking highlighted significant performance variances; while the Cloud node supported 179 concurrent users, the Raspberry Pi saturated at 56 and required an Nginx reverse proxy to offload SSL processing to survive volumetric attacks. Surprisingly, the Raspberry Pi showed improved thermal properties to the Windows workstation, which throttled at full load. This study concludes that secure eHealth implementations can be achieved with low-power hardware provided that overhead security is controlled by platform-specific modifications. The results indicate that although application code can be platform-neutral, the security architecture underlying it must consider the physical and computational constraints of the host device to provide dependable patient care.
Information
- Författare
- Hassan, Nour Al Dine
- Lärosäte / institution
- Karlstads universitet/Institutionen för matematik och datavetenskap (from 2013)
- Publiceringsdatum
- 2026
- Uppsatstyp
- Yrkesexamen på avancerad nivå
- Språk
- Engelska
Utforska vidare
Liknande uppsatser
Uppsatser med liknande ämnen och nyckelord.
Kandidat-uppsats, Högskolan i Halmstad/Akademin för informationsteknologi
Johansson, Nathalie, Jonsson, Liam
Publicerad: 2026
Kandidat-uppsats, KTH/Skolan för elektroteknik och datavetenskap (EECS)
Löfgren, Nils
Publicerad: 2026
Kandidat-uppsats, Uppsala universitet/Institutionen för informatik och media
Kappler, Elena, Bakhtiyarova, Zamira
Publicerad: 2026
Kandidat-uppsats, Chalmers tekniska högskola / Institutionen för mekanik och maritima vetenskaper
Reljanovic, Momir, Ashrafzadeh Esfahani, Ali
Publicerad: 2025
Kandidat-uppsats
Trujillo Diaz, Emilit, Ågestedt, Adam
Publicerad: 2025
Kandidat-uppsats, Mittuniversitetet/Institutionen för data- och elektroteknik (2023-)
Muhammad, Al Jaber Al Shwali
Publicerad: 2024