EP1738516A1 - Datenübertragungsnetz mit geheimnis-erhaltung - Google Patents
Datenübertragungsnetz mit geheimnis-erhaltungInfo
- Publication number
- EP1738516A1 EP1738516A1 EP04742498A EP04742498A EP1738516A1 EP 1738516 A1 EP1738516 A1 EP 1738516A1 EP 04742498 A EP04742498 A EP 04742498A EP 04742498 A EP04742498 A EP 04742498A EP 1738516 A1 EP1738516 A1 EP 1738516A1
- Authority
- EP
- European Patent Office
- Prior art keywords
- file
- data
- tck
- identification
- memory
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Withdrawn
Links
- 230000005540 biological transmission Effects 0.000 title claims abstract description 8
- 238000004321 preservation Methods 0.000 title 1
- 230000015654 memory Effects 0.000 claims abstract description 29
- 238000013475 authorization Methods 0.000 claims description 10
- 229940079593 drug Drugs 0.000 description 5
- 239000003814 drug Substances 0.000 description 5
- 206010020751 Hypersensitivity Diseases 0.000 description 4
- 230000007815 allergy Effects 0.000 description 4
- 238000004891 communication Methods 0.000 description 3
- 201000010099 disease Diseases 0.000 description 3
- 208000037265 diseases, disorders, signs and symptoms Diseases 0.000 description 3
- 230000036541 health Effects 0.000 description 3
- 238000012544 monitoring process Methods 0.000 description 3
- 238000011282 treatment Methods 0.000 description 3
- 241000618809 Vitales Species 0.000 description 2
- 238000012937 correction Methods 0.000 description 2
- 238000002059 diagnostic imaging Methods 0.000 description 2
- 238000012986 modification Methods 0.000 description 2
- 230000004048 modification Effects 0.000 description 2
- 230000007170 pathology Effects 0.000 description 2
- 238000012545 processing Methods 0.000 description 2
- 230000004913 activation Effects 0.000 description 1
- 239000008280 blood Substances 0.000 description 1
- 210000004369 blood Anatomy 0.000 description 1
- 230000001684 chronic effect Effects 0.000 description 1
- 238000013479 data entry Methods 0.000 description 1
- 230000000694 effects Effects 0.000 description 1
- 230000006870 function Effects 0.000 description 1
- 230000006872 improvement Effects 0.000 description 1
- 238000012423 maintenance Methods 0.000 description 1
- 210000002050 maxilla Anatomy 0.000 description 1
- 238000012797 qualification Methods 0.000 description 1
- 230000004044 response Effects 0.000 description 1
- 238000011477 surgical intervention Methods 0.000 description 1
- 238000010200 validation analysis Methods 0.000 description 1
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/321—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving a third party or a trusted authority
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3226—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using a predetermined code, e.g. password, passphrase or PIN
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L2209/00—Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
- H04L2209/60—Digital content management, e.g. content distribution
Definitions
- the present invention relates to data transmission networks and more particularly to those in which the data must be accessible in a differentiated manner according to the parties involved. It would be highly desirable to have a data transmission network available, in particular for the medical profession and health insurance establishments, in which the insured persons' medical data would be kept and kept permanently up to date so that they could be consulted by doctors and other health workers and, while maintaining medical confidentiality, by the manager,
- the invention provides for this by a data transmission network which comprises a memory having an identification file with n sheets and a data file with n sheets, each sheet of the identification file being chained by an identification chaining code. data to a corresponding sheet in the data sheet file.
- the n sheets correspond to the number n of patients who are treated by the network. It also includes m transmitter / receiver devices corresponding to the number of doctors using the network.
- Each transmitter / receiver device is connected to the memory and has a reader of one of n smart cards, a means of writing among n codes and a means of checking the concordance of a x th written code and a x th smart card read, the control means sending, if there is a match, an authorization message to the identification file, which has means for then authorizing a write / read link between the x th ; sheet of the data file and the device that sent the authorization message.
- each patient has their own smart card and code.
- this memo also includes a biometric identification system.
- the means of checking the concordance notes the concordance of the card and the code, it sends, preferably at the same time as an identification code specific to each transmitting / receiving device, an authorization message.
- the identification file authorizes the doctor to consult the patient's file, i.e. the x th sheet of the data file, and the case appropriate to write new data there.
- the network also includes a manager computer connected to the memory and having access to these two files, but not to the identification-data chaining code. The manager can thus manage the memory, establish statistics according to diseases, prescribed drugs and others, but he cannot attribute such medical act, or such disease, or any other data to a particular patient. Medical confidentiality is thus protected.
- the memory has an archive file having m sheets, on which is recorded, for each device, the instants of start and end of connection between the device and the memory .
- the manager has access to this file and this allows him to exercise a posteriori monitoring over the duration of the acts performed by the doctor holding the transmitting / receiving device.
- a plurality of n reception terminals is provided, each terminal being connected to the authorization means of the authorization file and the latter, on receiving the y ee code authorizing only read the connection between the y th terminal and the y th layer of the data file.
- Each patient can thus consult the sheet assigned to him • but without being able to modify it.
- FIGS. 1 to 6 of the accompanying drawings illustrate a network according to the invention.
- the network shown diagrammatically in the figures comprises a memory 1 having an identification file 2 with n sheets and a data file 3 with n sheets, each sheet of the identification file being chained by an identification chaining code given to a sheet Correspondent from data sheet file 3.
- the memory further includes an archive file 4 and a write file 5.
- the memory is accessed by a recognition system 6.
- Each terminal is assigned to a patient, it being understood that certain patients may not have their own terminal and thus be unable to consult the memory.
- Each TCK device is assigned to a doctor.
- Each TCK device has a smart card reader L, a keyboard C making it possible to write a code and a control means M1 consisting of a memory which makes it possible to check the agreement of a code entered by the patient on the keyboard C and of the code appearing on the chip card that the patient has entered in the chip card reading L.
- the two memories M1 and M2 send an ET P logic gate an authorization signal which is transmitted to the recognition system 6 by a line 8.
- the recognition system 6 recognizes that the TCK in question is authorized to access the x th sheet of data file 3. It sends a signal corresponding to the identification file 2 which, by the given identification chaining code, and puts the TCK in question in communication link by a line 9 with the x th sheet of the data file 3. This communication via line 9 authorizes both a reading and a writing in the x th sheet of file 3.
- Each TCK has a memory making it possible to store the data it receives so that it can then be read on a screen or directly on a screen and , in the same way, transmission means, both data in the form of alphanumeric characters and "images.
- the instant of the start and end of the link between the TCK device and the identification file 2 or possibly the file 3 of data is recorded in the file 4 of filing and, at the same time also, the file 5 of writing records, classified according to the TCK devices, therefore in this case for the TCK device in question, the data which are entered in the data file 3 by the TCK device.
- the manager computer G can be recognized by the recognition system 6 by sending a signal via a line 10 and this gives it access to all the files 2, 3, 4, 5 of the memory, but no to identification-data chaining code.
- a terminal T is connected by a line 11 to the recognition system 6.
- the latter by simple telephone call, but preferably after recognition of an identification code, authorizes the terminal T to read the sheet of the data file 3 allocated to it, and if necessary the sheet of the file 2 d identification assigned to him, but without being able to write on these sheets. His call is also recorded in file 4.
- a computer A controller is connected to memory 1 by 12 in call and by 13 in response with the possibility of reading files 2 and 3 with their chaining but without the possibility of writing.
- computer A cannot write medical data to file 3, but can write administrative data to it.
- the specificity of this system resides in securing a simultaneous double entry in real time of the access codes without the possibility of falsification, all the information being stored indelibly.
- the requester will always be identified through the matching of his telephone number and his identification number, the date, the time and the parameters consulted or entered, will be automatically recorded in the database. indelibly.
- the insured is identified by his VITAL card or its equivalent and his personal call number. He must then indicate his secret code previously supplied by the manager / host.
- the doctor or the medical or paramedical worker is recognized by his professional number.
- the RSI thus recognizes the function of the IMP and allows it to access its reserved area.
- the RSI data are accessible after this double identification carried out by means of a specific terminal called TCK.
- the TCK is an autonomous unit composed of a user-friendly digital screen (internal memory) and alphanumeric keys allowing successive entry of identifications and codes.
- the IMP After validation through the TCK. the IMP can open the patient file and, depending on their qualification, use the functionalities of the RSI.
- the file architecture is simple.
- the RSI database includes five groups of files.
- the patient's coordinates and medical data files can only be connected after activation of a key generated by the addition of the Vitale card and the secret personal code.
- the RSI is accessible at different levels by both the patient and the medical staff.
- the patient is free to consult his file in the RSI without being able to modify the content.
- the manager / host responsible for maintenance, non-medical updating of the system and statistical processing, accesses the area of his competence freely and remains under the control of an external authority.
- Entries in the system are dated, stored and irreversibly identified.
- the RSI file allows the compilation of statistics at all levels concerning health or demography.
- This system integrates the writing of the medical prescription as well as its execution by a pharmacist and more generally any paramedical worker in his field of activity.
- the workers are made up of patients (all resident in France), medical and paramedical workers and managers / hosts of the RSI base. Patient
- Manager / host The manager is assigned a national telephone number.
- the "patient contact details" file is disconnected from the other files in order to preserve medical confidentiality.
- Pathologist He is the only one to intervene without the patient's agreement and at the "request of the prescriber whose contact details he must indicate in order to be able to validate his entry into the RSI. His field remains strictly limited to his specialty.
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Management, Administration, Business Operations System, And Electronic Commerce (AREA)
Applications Claiming Priority (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| PCT/FR2004/000915 WO2005112339A1 (fr) | 2004-04-14 | 2004-04-14 | Reseau de transmission de donnees a preservation du secret. |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| EP1738516A1 true EP1738516A1 (de) | 2007-01-03 |
Family
ID=34958056
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| EP04742498A Withdrawn EP1738516A1 (de) | 2004-04-14 | 2004-04-14 | Datenübertragungsnetz mit geheimnis-erhaltung |
Country Status (2)
| Country | Link |
|---|---|
| EP (1) | EP1738516A1 (de) |
| WO (1) | WO2005112339A1 (de) |
Family Cites Families (2)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US5995965A (en) * | 1996-11-18 | 1999-11-30 | Humetrix, Inc. | System and method for remotely accessing user data records |
| CZ2005209A3 (cs) * | 2002-09-10 | 2005-12-14 | Ivi Smart Technologies, Inc. | Bezpečné biometrické ověření identity |
-
2004
- 2004-04-14 WO PCT/FR2004/000915 patent/WO2005112339A1/fr not_active Ceased
- 2004-04-14 EP EP04742498A patent/EP1738516A1/de not_active Withdrawn
Non-Patent Citations (1)
| Title |
|---|
| See references of WO2005112339A1 * |
Also Published As
| Publication number | Publication date |
|---|---|
| WO2005112339A1 (fr) | 2005-11-24 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| US7328276B2 (en) | Computer oriented record administration system | |
| US20180261307A1 (en) | Secure monitoring of private encounters | |
| US10169607B1 (en) | Individual centric personal data management process and method | |
| US9280685B2 (en) | System and method for portable medical records | |
| US8498884B2 (en) | Encrypted portable electronic medical record system | |
| US7668734B2 (en) | Internet medical information system (IMED) | |
| US6973449B2 (en) | System, method of portable USB key interfaced to computer system for facilitating the recovery and/or identification of a missing person having person's unique identification, biological information | |
| CN107169306A (zh) | 电子或生物识别技术来获取医疗信息的系统及交互方法 | |
| US20040054657A1 (en) | Medical information management system | |
| JPH10505695A (ja) | 個人データ保管装置 | |
| US20080126135A1 (en) | Paperless medication prescription system | |
| US20090319789A1 (en) | Encrypted portable medical history system | |
| JP2001325372A (ja) | ヘルスケアデータ共有システム,ヘルスケアデータ共有方法およびヘルスケアデータ共有プログラム | |
| US20050076158A1 (en) | Medical data providing system and medical data providing method | |
| JP2021022341A (ja) | 医療関係者マッチングシステム | |
| JP2003091456A (ja) | データ破壊や不正閲覧防止策を施された個人的電子健康ファイルシステム | |
| FR2980020A1 (fr) | Procede d'acces et de partage d'un dossier medical | |
| US20130290632A1 (en) | Portable device for secure storage of user provided data | |
| CN112133393A (zh) | 医疗服务系统 | |
| EP1738516A1 (de) | Datenübertragungsnetz mit geheimnis-erhaltung | |
| CN116776389A (zh) | 一种基于区块链的医疗行业数据安全监管系统 | |
| KR20240028814A (ko) | 비대면 진료 시스템 | |
| FR2731815A1 (fr) | Systeme de traitement de donnees medicales relatives a des patients | |
| US20070061164A1 (en) | Healthcare information storage system | |
| KR100604162B1 (ko) | 이동통신 단말기를 이용한 처방전 관리 시스템 및 이를이용한 개인 약력 관리방법 |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| PUAI | Public reference made under article 153(3) epc to a published international application that has entered the european phase |
Free format text: ORIGINAL CODE: 0009012 |
|
| 17P | Request for examination filed |
Effective date: 20061114 |
|
| AK | Designated contracting states |
Kind code of ref document: A1 Designated state(s): AT BE BG CH CY CZ DE DK EE ES FI FR GB GR HU IE IT LI LU MC NL PL PT RO SE SI SK TR |
|
| DAX | Request for extension of the european patent (deleted) | ||
| 17Q | First examination report despatched |
Effective date: 20091109 |
|
| STAA | Information on the status of an ep patent application or granted ep patent |
Free format text: STATUS: THE APPLICATION IS DEEMED TO BE WITHDRAWN |
|
| 18D | Application deemed to be withdrawn |
Effective date: 20121101 |