Related Experiment Videos
Security middleware infrastructure for DICOM images in health information systems
Vijay N V Kallepalli1, Sylvanus A Ehikioya, Sergio Camorlinga
1Department of Computer Science, University of Manitoba, 561 Machray Hall, Winnipeg, Manitoba R3T 2N2, Canada. Vijay@cs.umanitoba.ca
Abstract:
In health care, it is mandatory to maintain the privacy and confidentiality of medical data. To achieve this, a fine-grained access control and an access log for accessing medical images are two important aspects that need to be considered in health care systems. Fine-grained access control provides access to medical data only to authorized persons based on priority, location, and content. A log captures each attempt to access medical data. This article describes an overall middleware infrastructure required for secure access to Digital Imaging and Communication in Medicine (DICOM) images, with an emphasis on access control and log maintenance. We introduce a hybrid access control model that combines the properties of two existing models. A trust relationship between hospitals is used to make the hybrid access control model scalable across hospitals. We also discuss events that have to be logged and where the log has to be maintained. A prototype of security middleware infrastructure is implemented.