透過您的圖書館登入
IP:3.138.125.2
  • 期刊

整合自然人憑證之註冊儲存庫登入機制的研究:以醫療病歷為例

Study on Developing Sign-on Mechanism of Registry and Repository with the Citizen Digital Certificate: Using Medical Documents as an Example

摘要


隨著科技的進步,資料文件已逐漸從紙本轉變為電子化的型態,所以一可以對電子化文件作資料管理與應用的註冊儲存庫就更形重要。本文針對UN/CEFACT與OASIS所提出的電子商務標準-ebXML之註冊儲存庫登入機制來研究,整合內政部所發行的自然人憑證,作為使用者認證的依據,並以根據HL7/CDA所定義的台灣醫療文件標準TMT之醫療文件為例來實作。我們以中華電信提供的CHT HiSECURE API與微軟的WSE來開發,並利用自然人憑證中的私鑰做為身分驗證請求的訊息簽章,以供註冊儲存庫驗證登入者身分,並以SOAP的格式傳送訊息,如此一來,透過身分驗證的使用者即可登入註冊儲存庫取得個人的電子病歷。所開發的系統未來可與憑證可攜標準SAML結合,並可運用開放源碼OMAR來對中小型診所建置便利的輕量化醫療病歷系統。目前我國的電子化政府計畫中,已運用自然人憑證作為身分的認證,若將電子化醫療病歷系統也結合自然人憑證的認證機制,那將可實現全民便利的單一登入之願景。

關鍵字

注冊儲存庫 憑證 簽章 認證

並列摘要


As computer technologies progress, a lot of documents have been no longer stored in paper formats but in electronic forms. So, the application of Registry and Repository for storage management of electronic documents is more and more important. This study focuses on the sign-on mechanism of ebXML Registry and Repository, which is an e-business standard proposed by UN/CEFACT and OASIS. In our implementation, we integrate Citizen Digital Certificate that is issued by MOICA for identity authentication and use TMT (Taiwan electronic Medical record Template) documents that are based on HL7/CDA standard as examples. We develope the proposed mechanism with CHT HiSECURE API, which is provided by Chunghwa Telecom, and WSE (Web Services Enhancements) from Microsoft. The authentication request is signed with the private key that is taken from the Citizen Digital Certificate and is encoded into an R&R-aware SOAP message. Once the authentication is granted, the authenticated user can retrieve his/her personal medical doc uments stored in the Registry and Repository. Our proposed system can be combined with the SAML standard so as to provide a lightweight medical document retrieval system using OMAR. Now, in the Taiwan E-Government project, Citizen Digital Certificate has been used for user identity authentication. If the electronic medical document system can also support the same authentication mechanism, it will be a paradise of providing convenient single sign-on services for all citizens.

參考文獻


OASIS ebXML registry reference implementation project
ebXML registry information model version 3.0
ebXML registry services and protocols version 3.0
The clinical document architecture release 2.0
About ebXML

被引用紀錄


劉光益(2011)。電子病歷網路自助服務系統之可行性研究-以某區域醫院為例〔碩士論文,元智大學〕。華藝線上圖書館。https://doi.org/10.6838/YZU.2011.00087

延伸閱讀