Andany J, Bjorkendal C, Ferrara F M, Scherrer J R, Spahni S
Medical Informatics Division, University Hospitals of Geneva, Switzerland.
Stud Health Technol Inform. 1999;68:315-20.
The integration and evolution of existing systems represents one of the most urgent priorities of health care information systems in order to allow the whole organisation to meet the increasing clinical organisational and managerial needs. The CEN ENV 12967-1 'Healthcare Information Systems Architecture'(HISA) standard defines an architectural approach based on a middleware of business-specific common services, enabling all parts of the local and geographical system to operate on the common information heritage of the organisation and on exploiting a set of common business-oriented functionality. After an overview on the key aspects of HISA, this paper discusses the positioning of the authorization and security aspects in the overall architecture. A global security framework is finally proposed.
现有系统的集成与演进是医疗保健信息系统最紧迫的优先事项之一,以便整个组织能够满足日益增长的临床、组织和管理需求。CEN ENV 12967-1《医疗保健信息系统架构》(HISA)标准定义了一种基于特定业务通用服务中间件的架构方法,使本地和地理系统的所有部分能够基于组织的通用信息遗产运行,并利用一组通用的面向业务的功能。在对HISA的关键方面进行概述之后,本文讨论了授权和安全方面在整体架构中的定位。最后提出了一个全局安全框架。