Ma Weina, Sartipi Kamran, Sharghigoorabi Hassan, Koff David, Bak Peter
University of Ontario Institute of Technology , Department of Electrical, Computer and Software Engineering, 2000 Simcoe Street North, Oshawa, Ontario L1H 7K4, Canada.
McMaster University , Information Systems, 1280 Main Street West, Hamilton, Ontario L8S 4M4, Canada.
J Med Imaging (Bellingham). 2016 Apr;3(2):026501. doi: 10.1117/1.JMI.3.2.026501. Epub 2016 Jun 16.
The evolution of cloud computing is driving the next generation of medical imaging systems. However, privacy and security concerns have been consistently regarded as the major obstacles for adoption of cloud computing by healthcare domains. OpenID Connect, combining OpenID and OAuth together, is an emerging representational state transfer-based federated identity solution. It is one of the most adopted open standards to potentially become the de facto standard for securing cloud computing and mobile applications, which is also regarded as "Kerberos of cloud." We introduce OpenID Connect as an authentication and authorization service in cloud-based diagnostic imaging (DI) systems, and propose enhancements that allow for incorporating this technology within distributed enterprise environments. The objective of this study is to offer solutions for secure sharing of medical images among diagnostic imaging repository (DI-r) and heterogeneous picture archiving and communication systems (PACS) as well as Web-based and mobile clients in the cloud ecosystem. The main objective is to use OpenID Connect open-source single sign-on and authorization service and in a user-centric manner, while deploying DI-r and PACS to private or community clouds should provide equivalent security levels to traditional computing model.
云计算的发展正在推动下一代医学成像系统的进步。然而,隐私和安全问题一直被视为医疗保健领域采用云计算的主要障碍。OpenID Connect将OpenID和OAuth结合在一起,是一种新兴的基于代表性状态转移的联合身份解决方案。它是最常被采用的开放标准之一,有可能成为保护云计算和移动应用的事实上的标准,也被视为“云的Kerberos”。我们将OpenID Connect作为基于云的诊断成像(DI)系统中的一种认证和授权服务进行介绍,并提出增强功能,以便在分布式企业环境中纳入该技术。本研究的目的是为诊断成像存储库(DI-r)与异构图像存档和通信系统(PACS)以及云生态系统中的基于Web和移动客户端之间安全共享医学图像提供解决方案。主要目标是以用户为中心使用OpenID Connect开源单点登录和授权服务,同时将DI-r和PACS部署到私有云或社区云时应提供与传统计算模型相当的安全级别。