Related Experiment Video
Updated: Aug 11, 2026

Digital Home-Monitoring of Patients after Kidney Transplantation: The MACCS Platform
Published on: April 12, 2021
Access control based on attribute certificates for medical intranet applications
I Mavridis1, C Georgiadis, G Pangalos
1Informatics Laboratory, Faculty of Technology, Aristotle University of Thessaloniki, Thessaloniki, 54006, Greece. imav@eng.auth.gr
Background:
Clinical information systems frequently use intranet and Internet technologies. However these technologies have emphasized sharing and not security, despite the sensitive and private nature of much health information. Digital certificates (electronic documents which recognize an entity or its attributes) can be used to control access in clinical intranet applications.
Objectives:
To outline the need for access control in distributed clinical database systems, to describe the use of digital certificates and security policies, and to propose the architecture for a system using digital certificates, cryptography and security policy to control access to clinical intranet applications.
Methods:
We have previously developed a security policy, DIMEDAC (Distributed Medical Database Access Control), which is compatible with emerging public key and privilege management infrastructure. In our implementation approach we propose the use of digital certificates, to be used in conjunction with DIMEDAC.
Results:
Our proposed access control system consists of two phases: the ways users gain their security credentials; and how these credentials are used to access medical data. Three types of digital certificates are used: identity certificates for authentication; attribute certificates for authorization; and access-rule certificates for propagation of access control policy. Once a user is identified and authenticated, subsequent access decisions are based on a combination of identity and attribute certificates, with access-rule certificates providing the policy framework.
Conclusions:
Access control in clinical intranet applications can be successfully and securely managed through the use of digital certificates and the DIMEDAC security policy.
Related Concept Videos
Standard Precaution
Hand hygiene is the most crucial means to prevent the transmission of disease. Employers are legally required to provide their workers with personal protective equipment (PPE) to minimize exposure or contact with...
Ethical Standards I
The Code of Ethics provisions outline the nurse's duty to the patient, the healthcare team, the profession, and society. The Code's fundamental principles include advocacy,...
Ethical Standards II
Nurses are entrusted with upholding various ethical principles and standards. Nurses forge solid therapeutic relationships using trust, empathy, autonomy, confidentiality, and professional competence.
Confidentiality is crucial, embodying respect for individual privacy and...
Antiarrhythmic Drugs: Class IV Agents as Calcium Channel Blockers
Verapamil, a calcium channel blocker, inhibits calcium movement across myocardial cell membranes and vascular smooth muscle. This results in the dilation of coronary and...
Cardiovascular Drugs: Classification based on Therapeutic Indications
Automated Microbial Diagnostics

