检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
作 者:肖美华[1] 李伟[1] 李娅楠[1] 梅映天 XIAO Meihua;LI Wei;LI Yanan;MEI Yingtian(School of Software,East China Jiaotong University,Nanchang 330013,China)
出 处:《计算机工程与应用》2018年第7期107-113,共7页Computer Engineering and Applications
基 金:国家自然科学基金(No.61562026);江西省自然科学基金(No.20161BAB2020063);江西省对外科技合作计划(No.20151BDH80005)
摘 要:传统的PACS系统存储和维护海量医疗影像数据成本高昂,且经由DICOM协议传输的影像数据容易遭到黑客攻击,造成数据被非法篡取、病人隐私泄露等数据安全性问题。提出一种PACS云服务模型以满足数据存储、维护、安全传输等需求。设计的统一身份认证框架采用基于USB Key强身份认证方案和基于SSL通用身份认证方案两种混合验证模式,经过安全性分析表明,此框架能够保证数据的秘密性、认证性和完整性,并能抵御常见的中间人攻击、重放攻击和字典攻击,有效确保云PACS系统中DICOM协议安全通信。The expense of storing and maintaining the huge medical image data in traditional PACS(Picture Archiving and Communication System)gets costly,and image data transmitted through DICOM protocol can be easily attacked by hacker,resulting in some security issues such as data being illegally usurped and patient privacy being leaked.A cloudbased PACS model is proposed to meet the requirements of data storage,maintenance and transmission security combined with the strength of cloud computing technique.Unified identity authentication framework is designed based on two kinds of hybrid authentication modes which are the USB Key identity strong authentication scheme and the SSL identity common authentication scheme.Security analysis shows that the proposed unified identity authentication framework not only can ensure data privacy,authenticity and integrity but also can resist man-in-the-middle attack,replay attack and dictionary attack.It is proven that unified identity authentication framework has the ability to secure DICOM protocol communication of cloud-based PACS.
关 键 词:云影像归档和通信系统(PACS) DICOM协议安全 USBKey身份认证 SSL身份认证
分 类 号:TP393[自动化与计算机技术—计算机应用技术]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.3