• 文献检索
  • 文档翻译
  • 深度研究
  • 学术资讯
  • Suppr Zotero 插件Zotero 插件
  • 邀请有礼
  • 套餐&价格
  • 历史记录
应用&插件
Suppr Zotero 插件Zotero 插件浏览器插件Mac 客户端Windows 客户端微信小程序
定价
高级版会员购买积分包购买API积分包
服务
文献检索文档翻译深度研究API 文档MCP 服务
关于我们
关于 Suppr公司介绍联系我们用户协议隐私条款
关注我们

Suppr 超能文献

核心技术专利:CN118964589B侵权必究
粤ICP备2023148730 号-1Suppr @ 2026

文献检索

告别复杂PubMed语法,用中文像聊天一样搜索,搜遍4000万医学文献。AI智能推荐,让科研检索更轻松。

立即免费搜索

文件翻译

保留排版,准确专业,支持PDF/Word/PPT等文件格式,支持 12+语言互译。

免费翻译文档

深度研究

AI帮你快速写综述,25分钟生成高质量综述,智能提取关键信息,辅助科研写作。

立即免费体验

PCASSO:一种通过互联网安全传输个人健康信息的设计方案。

PCASSO: a design for secure communication of personal health information via the internet.

作者信息

Baker D B, Masys D R

机构信息

Commercial Health Care Group, Science Applications International Corporation, El Segundo, CA 90245, USA.

出版信息

Int J Med Inform. 1999 May;54(2):97-104. doi: 10.1016/s1386-5056(98)00088-4.

DOI:10.1016/s1386-5056(98)00088-4
PMID:10219949
Abstract

The Internet holds both promise and peril for the communications of person-identifiable health information. Because of technical features designed to promote accessibility and interoperability rather than security, Internet addressing conventions and transport protocols are vulnerable to compromise by malicious persons and programs. In addition, most commonly used personal computer (PC) operating systems currently lack the hardware-based system software protection and process isolation that are essential for ensuring the integrity of trusted applications. Security approaches designed for electronic commerce, that trade known security weaknesses for limited financial liability, are not sufficient for personal health data, where the personal damage caused by unintentional disclosure may be far more serious. To overcome these obstacles, we are developing and evaluating an Internet-based communications system called PCASSO (Patient-centered access to secure systems online) that applies state of the art security to health information. PCASSO includes role-based access control, multi-level security, strong device and user authentication, session-specific encryption and audit trails. Unlike Internet-based electronic commerce 'solutions,' PCASSO secures data end-to-end: in the server; in the data repository; across the network; and on the client. PCASSO is designed to give patients as well as providers access to personal health records via the Internet.

摘要

互联网对于可识别个人身份的健康信息通信而言,既带来了希望,也存在风险。由于旨在促进可访问性和互操作性而非安全性的技术特性,互联网寻址惯例和传输协议容易受到恶意人员和程序的破坏。此外,目前大多数常用的个人计算机(PC)操作系统缺乏基于硬件的系统软件保护和进程隔离,而这对于确保可信应用程序的完整性至关重要。为电子商务设计的安全方法,是以已知的安全弱点换取有限的财务责任,这对于个人健康数据而言是不够的,因为无意泄露所造成的个人损害可能要严重得多。为克服这些障碍,我们正在开发和评估一种名为PCASSO(以患者为中心的在线安全系统访问)的基于互联网的通信系统,该系统将先进的安全技术应用于健康信息。PCASSO包括基于角色的访问控制、多级安全、强大的设备和用户认证、特定会话加密以及审计跟踪。与基于互联网的电子商务“解决方案”不同,PCASSO对数据进行端到端的保护:在服务器中;在数据存储库中;在网络中;以及在客户端上。PCASSO旨在让患者和医疗服务提供者都能通过互联网访问个人健康记录。

相似文献

1
PCASSO: a design for secure communication of personal health information via the internet.PCASSO:一种通过互联网安全传输个人健康信息的设计方案。
Int J Med Inform. 1999 May;54(2):97-104. doi: 10.1016/s1386-5056(98)00088-4.
2
Protecting clinical data on Web client computers: the PCASSO approach.保护Web客户端计算机上的临床数据:PCASSO方法。
Proc AMIA Symp. 1998:366-70.
3
PCASSO: a secure architecture for access to clinical data via the Internet.PCASSO:一种通过互联网访问临床数据的安全架构。
Stud Health Technol Inform. 1998;52 Pt 2:1130-4.
4
Patient-Centered Access to Secure Systems Online (PCASSO): a secure approach to clinical data access via the World Wide Web.以患者为中心的在线安全系统访问(PCASSO):一种通过万维网进行临床数据访问的安全方法。
Proc AMIA Annu Fall Symp. 1997:340-3.
5
Assurance: the power behind PCASSO security.保障:PCASSO安全背后的力量。
Proc AMIA Symp. 1999:666-70.
6
Giving patients access to their medical records via the internet: the PCASSO experience.通过互联网让患者获取其医疗记录:PCASSO的经验。
J Am Med Inform Assoc. 2002 Mar-Apr;9(2):181-91. doi: 10.1197/jamia.m1005.
7
How secure is the Internet for healthcare applications?互联网对于医疗保健应用程序来说有多安全?
Radiol Manage. 1996 Jan-Feb;18(1):28-32.
8
Web-based secure access from multiple patient repositories.基于网络的来自多个患者资料库的安全访问。
Int J Med Inform. 2008 Apr;77(4):242-8. doi: 10.1016/j.ijmedinf.2007.06.001. Epub 2007 Aug 2.
9
An end-to-end secure patient information access card system.一种端到端安全的患者信息访问卡系统。
Methods Inf Med. 2000 Mar;39(1):70-2.
10
Access and privacy rights using web security standards to increase patient empowerment.利用网络安全标准保障访问和隐私权,增强患者自主权。
Stud Health Technol Inform. 2008;137:275-85.

引用本文的文献

1
Triaging patients at risk of influenza using a patient portal.利用患者门户对流感高危患者进行分诊。
J Am Med Inform Assoc. 2012 Jul-Aug;19(4):549-54. doi: 10.1136/amiajnl-2011-000382. Epub 2011 Dec 1.
2
Advanced networks and computing in healthcare.医疗保健中的高级网络和计算。
J Am Med Inform Assoc. 2011 Jul-Aug;18(4):523-8. doi: 10.1136/amiajnl-2010-000054. Epub 2011 Apr 12.
3
A research agenda for personal health records (PHRs).个人健康记录(PHR)的研究议程。
J Am Med Inform Assoc. 2008 Nov-Dec;15(6):729-36. doi: 10.1197/jamia.M2547. Epub 2008 Aug 28.
4
A modeling environment for patient portals.患者门户网站的建模环境。
AMIA Annu Symp Proc. 2007 Oct 11;2007:201-5.
5
The internet--friend or foe? A questionnaire study of orthopaedic out-patients.互联网——朋友还是敌人?一项针对骨科门诊患者的问卷调查研究。
Ann R Coll Surg Engl. 2002 May;84(3):187-92.
6
Giving patients access to their medical records via the internet: the PCASSO experience.通过互联网让患者获取其医疗记录:PCASSO的经验。
J Am Med Inform Assoc. 2002 Mar-Apr;9(2):181-91. doi: 10.1197/jamia.m1005.
7
The contributions of biomedical informatics to the fight against bioterrorism.生物医学信息学在抗击生物恐怖主义中的贡献。
J Am Med Inform Assoc. 2002 Mar-Apr;9(2):116-9. doi: 10.1197/jamia.m1054.