Federated [Organization] Registry Brief Profile Proposal for 2008/09 presented to the IT Infrastructure Planning Committee J. Caumanns (eCR, Fraunhofer.

Slides:



Advertisements
Similar presentations
Introducing yourself and Others
Advertisements

XDS.c Common SOAP interface to Clinical Sources Brief Profile Proposal for 2008/09 presented to the IT Infrastructure Planning Committee Alean Kirnak &
Online Course Module 6 Guidelines for Contacting Patients START Click to begin…
The Oregon POLST Registry For HIM Departments & Clinic Support Staff.
Online Course Privacy Contacting Patients and Verification START Click to begin…
ARP Cache Poisoning How the outdated Address Resolution Protocol can be easily abused to carry out a Man In The Middle attack across an entire network.
Initiating Partner Notification on the Internet Wednesday, March 10 10:00-11:45 Andrew Delicata Former Lead DIS Howard Brown Health Center PCRS Coordinator.
Proposed Technical Architecture for California HIE Services Walter Sujansky Sujansky & Associates, LLC Presentation to NHIN-Direct Security and Trust Work.
Bronwen Watkins-Pitchford, Associate Manager Interoperability Initiatives Ricardo Crosby Alvin Medina, MSN, RN Senior Applications Analyst Phil DePalo,
RVCC FACULTY FERPA WORKSHOP OCTOBER 2011 DAN PALUBNIAK REGISTRAR
Federated Directory Services Brief Profile Proposal for 2009/10 presented to the IT Infrastructure Planning Committee J. Caumanns, O. Rode, R. Kuhlisch,
Virginia Association of Free and Charitable Clinics _______________________ March 15, 2013 Sandy McCleaf, Executive Director ConnectVirginia.
1 ARPA A regional infrastructure for secure role-based access to RTRT services Ing. Laura Castellani Tuscany Region.
NHIN Specifications Richard Kernan, NHIN Specification Lead (Contractor), Office of the National Coordinator for Health IT Karen Witting, Contractor to.
EEC 693/793 Special Topics in Electrical Engineering Secure and Dependable Computing Lecture 6 Wenbing Zhao Department of Electrical and Computer Engineering.
Have You Read Your Medical Record? Peggy Beck, RHIA, CMT, FAAMT.
Lost Luggage © 2011 wheresjenny.com Lost Luggage ! ( Bagages perdus )
Peer Exchange Grantee NOW Project Officer Grants Technical Assistance Workshop October 12-13, 2010 Kendra Williams, MPA Project Officer US Department of.
Emergency Communications Management Jonathan Rood CIO and Associate VP, San Francisco State University Laine Keneller Business Continuity Planner & Project.
1 Sukumar Dwarkanath, Technical Director, COMCARE Agency Locator Services: EPAD Emergency Services SDO Workshop October 4-5, 2006 New York.
RECON: Interventions, Goals, Providers Brief Profile Proposal for 2014/15 presented to the Patient Care Coordination Planning Committee PCC Technical Committee.
Suicide Prevention Protocol with Suicidal Callers.
What IHE Delivers Healthcare Provider Directories IHE IT Infrastructure Planning Committee Eric Heflin – Medicity/THSA.
TELEPHONE ENGLISH.
The Importance of Emergency Medical Service Communication n communicate patient information n provide contact with medical control n control and coordinate.
Public Health Case Reporting Workflow Brief Profile Proposal for presented to the QRPH Planning Committee John P. Abellera, MPH September 29,
Determine which track the customer wants: Customer wants to enroll in programs with eligibility requirements Customer wants to access standard services?
Encouraging Diversity Growth & Equity 123: Demonstration of Good Faith Todd McGonigle EDGE Program Manager Phone (614) FAX (614)
ATNA Repositories Federation Brief Profile Proposal for 2014/15 presented to the IT Infrastructure Planning Committee Mauro Zanardini (consorzio Arsenàl.IT)
Dr. Bhavani Thuraisingham October 2006 Trustworthy Semantic Webs Lecture #16: Web Services and Security.
Identity Protection and Pseudonymisation White Paper Proposal for 2008/09 presented to the IT Infrastructure Technical Committee A. Estelrich (GIP-DMP)
Center for Self Advocacy Leadership Partnership for People with Disabilities Virginia Commonwealth University The Partnership for People with Disabilities.
RIDE ConsortiumRIDE Workshop, December 8, 2006, Brussels 1 The RIDE Roadmap Methodology and the Current Progress Prof. Dr. Asuman Dogac, Turkey Dr. Jos.
Planning the Future of CDC Secure Public Health Transactions and Public Health Information Network Messaging System (PHINMS) Jennifer McGehee, Tim Morris,
METU-SRDCEUROREC Meeting, Geneva, October 10, 2006 RIDE Overview Asuman Dogac Middle East Technical University Ankara, Turkey.
GRA Implementations using Open Source Technologies Mark Perbix and Yogesh Chawla SEARCH.
Patient Rights, Medical Information & Records: a JCI Perspective October 10, 2007 Makati Medical Center ATTY. RODEL V. CAPULE MD FPCEMAC FPCP Professor.
February 8, 2005IHE Europe Educational Event 1 Integrating the Healthcare Enterprise Basic Security Robert Horn Agfa Healthcare.
1 IHE ITI White Paper on Authorization Volume 1 Rough Cut Outline Jörg Caumanns, Raik Kuhlisch, Oliver Pfaff, Olaf Rode, Christof Strack, Heiko Lemke Berlin,
School of Health Sciences Week 4! AHIMA Practice Brief Fundamentals of Health Information HI 140 Instructor: Alisa Hayes, MSA, RHIA, CCRC.
ATNA Repository Query Detailed Profile Proposal for 2014/15 presented to the IT Infrastructure Planning Committee Mauro Zanardini (consorzio Arsenàl.IT)
Integrating the Healthcare Enterprise Personnel White Pages Profile Name of Presenter IHE affiliation.
NAPHSIS Annual Meeting 2014Slide 1 NAPHSIS ANNUAL MEETING | Seattle | June 8-11, 2014 VITAL RECORDS: A CULTURE OF QUALITY Minnesota eBirth Records Project.
Cross-Community Patient Identification (XCPI) Brief Profile Proposal for 2009 presented to the IT Infrastructure Technical Committee Karen Witting November.
November 10, 2009 SOCIAL SECURITY ADMINISTRATION-HIT SUPPORT Health IT Provider Registry IHE Proposal Overview Proposed Editor: Shanks Kande, Nitin Jain.
IHE ITI Profile Proposal XCA Query and Retrieve Fraunhofer ISST and Tiani Spirit on behalf of epSOS Consortium and epSOS Industry Team.
October 7, 2009 SOCIAL SECURITY ADMINISTRATION-HIT SUPPORT Health IT Provider Registry IHE Proposal Overview Proposed Editor: Shanks Kande, Marty Prahl.
Federated Directory Service (FDS) IHE IT Profile Proposal Sören Bittins (eCR, Fraunhofer ISST) November, 18th 2008.
Network Security Continued. Digital Signature You want to sign a document. Three conditions. – 1. The receiver can verify the identity of the sender.
Shibboleth & Federated Identity A Change of Mindset University of Texas Health Science Center at Houston Barry Ribbeck
Cross-Enterprise Privacy Policy (XPP) Profile Proposal for 2008/09 presented to the IT Infrastructure Technical Committee Sören Bittins (eCR, Fraunhofer.
A Brief Overview. When a customer calls a business, the voice they hear on the phone is the voice they will associate with the organization. Most companies.
Are you having a good time, darling? Is the food okay for you? Yes, I definitely am. The food is marvelous, especially somtam and koy. But you look worried.
Federated Directory Services Revised Proposal for 2009/10 presented to the IT Infrastructure Planning Committee J. Caumanns, O. Rode, R. Kuhlisch, FHGISST.
Decision Support Service Brief Profile Proposal for 2008/09 presented to the IT Infrastructure Planning Committee Alean Kirnak Anna Orlova October 2, 2008.
Integrating the Healthcare Enterprise Title of Presentation Name of Presenter IHE affiliation.
HOMEWORK IS DUE NOW!!! Please place your completed application in the black tray on my desk. REMEMBER that your Resume’ & Cover letters are due next class.
functions and vocabulary
Standards Certification Education & Training Publishing Conferences & Exhibits 2015 Section Opt-in Preference and Recovery Webinar Marty Bince,
What IHE Delivers Healthcare Provider Directories IHE IT Infrastructure Planning Committee Eric Heflin - Medicity.
Using the Oregon POLST Registry
The Oregon POLST Registry
System Directory for Document Sharing (SDDS)
S/MIME T ANANDHAN.
How to secure changelly exchange account. In the present-day digital exchange and currencies has an important role in human life, as almost all the people.
Using the Oregon POLST Registry
Office 365 Identity Management
The Oregon POLST Registry
Rationale and related efforts Brief Progress Report
Box #1 Greet the person that answers the phone, and give him or her your name.
Presentation transcript:

Federated [Organization] Registry Brief Profile Proposal for 2008/09 presented to the IT Infrastructure Planning Committee J. Caumanns (eCR, Fraunhofer ISST, IHE-D) 16 October 2008

IT Infrastructure Planning Committee Use Case Mr. A has been to hospital B for a surgery. After his stay he gets a discharge letter for his PCP where the follow-up medication is determined. On the way to his PCP Mr. A lost the letter in the bus. He asks the PCP to call the hospital for copy. PCP is calling the directory assistance. PCP A: Hi, this is PCP A: Can you please provide me the number of the cardiological dept. of hospital B? DirAssist: We do not have the numbers of the departments listed. But the number of the hospital’s central office is Should I connect you? PCP: Yes please. Hospital: Hospital B. What can I do for you? PCP: Could you please give me the number of the cardiological dept.?

IT Infrastructure Planning Committee Use Case Hospital: The phone number is But for technical reasons I cannot connect you. PCP is dialing CardDept: Hospital B. Cardiological dept. Can I help you? PCP: Yes please. My name is PCP X and I’m here with Mr. A who lost his discharge letter in the bus. Could you please send me a copy by fax? CardDept:No Problem. Please give me your name and fax number. PCP: My name is PCP X and my fax number is 444. Thank you. 2 minutes later the discharge letter arrives by fax. The PCP prescribes the medicine as stated in the discharge letter.

IT Infrastructure Planning Committee The Problem Directory lookups and identity information exchanged in the use case:Directory lookups and identity information exchanged in the use case: –PCP X calling the directory assistance –Directory assistance looking up the phone number [identity attribute] of Hospital B –Hospital B looking up the phone number [identity attribute] of the cardiologic department. –Cardiologic department asking for name and fax number [identity attributes] of PCP X Shifting this scenario into the digital age would require comparable lookup services and mechanisms for the exchange of identity informationShifting this scenario into the digital age would require comparable lookup services and mechanisms for the exchange of identity information

IT Infrastructure Planning Committee Use Case (continued) Two days later Mr. A dies from a contraindication caused by the medicine PCP X gave him. During their investigation the police finds out that the cardiologic department of hospital B never sent a fax to PCP X. It is possible for an intruder to do a man-in-the-middle attack with this scenario because PCP X had no easy way to authenticate his communication partners and to verify the accuracy of the identity and directory information exchanged.

IT Infrastructure Planning Committee Conclusion Incompliant directory services using different trust models make it hard to verify the authenticity of the service and the data provided.Incompliant directory services using different trust models make it hard to verify the authenticity of the service and the data provided. Missing directory services make it impossible to establish a trusted communication with partners only known by name.Missing directory services make it impossible to establish a trusted communication with partners only known by name. -> a unique model for trust establishment is required-> a unique model for trust establishment is required -> an operational model is needed that allows for a high accuracy of the directory data-> an operational model is needed that allows for a high accuracy of the directory data -> the authenticity of the entry point for a chain of directory queries must be verifiable with local data only-> the authenticity of the entry point for a chain of directory queries must be verifiable with local data only

IT Infrastructure Planning Committee Federated Directory Services

IT Infrastructure Planning Committee Proposed Standards & Systems The proposed profile should use existing directory standards (i. e. LDAP)The proposed profile should use existing directory standards (i. e. LDAP) RFC 2798 is a good basis for the registry data setRFC 2798 is a good basis for the registry data set Entity Identification Service (Service Functional Model Specification) + OMG Spec.Entity Identification Service (Service Functional Model Specification) + OMG Spec. The use of DSML and/or SPML should be consideredThe use of DSML and/or SPML should be considered Federation and trust establishment/brokerage should be based on the respective WS* standards (e. g. using the recommendations of the HL7 v3 transport specification)Federation and trust establishment/brokerage should be based on the respective WS* standards (e. g. using the recommendations of the HL7 v3 transport specification)

IT Infrastructure Planning Committee Discussion Level of effort:Level of effort: –medium Profile Editor:Profile Editor: –Ben Kraufmann, Olaf Rode (Fraunhofer ISST, eCR Consortium) –Members from IHE Germany, IHE Austria, and eCR industry partners