CN109559800A - Medical image data access right control method and device - Google Patents

Medical image data access right control method and device Download PDF

Info

Publication number
CN109559800A
CN109559800A CN201811375149.2A CN201811375149A CN109559800A CN 109559800 A CN109559800 A CN 109559800A CN 201811375149 A CN201811375149 A CN 201811375149A CN 109559800 A CN109559800 A CN 109559800A
Authority
CN
China
Prior art keywords
image data
medical image
client
target medical
target
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201811375149.2A
Other languages
Chinese (zh)
Inventor
王雪静
徐浩
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Taikang Health Industry Klc Holdings Ltd
Taikang Insurance Group Co Ltd
Original Assignee
Taikang Health Industry Klc Holdings Ltd
Taikang Insurance Group Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Taikang Health Industry Klc Holdings Ltd, Taikang Insurance Group Co Ltd filed Critical Taikang Health Industry Klc Holdings Ltd
Priority to CN201811375149.2A priority Critical patent/CN109559800A/en
Publication of CN109559800A publication Critical patent/CN109559800A/en
Pending legal-status Critical Current

Links

Classifications

    • GPHYSICS
    • G16INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR SPECIFIC APPLICATION FIELDS
    • G16HHEALTHCARE INFORMATICS, i.e. INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR THE HANDLING OR PROCESSING OF MEDICAL OR HEALTHCARE DATA
    • G16H30/00ICT specially adapted for the handling or processing of medical images
    • G16H30/20ICT specially adapted for the handling or processing of medical images for handling medical images, e.g. DICOM, HL7 or PACS
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/62Protecting access to data via a platform, e.g. using keys or access control rules
    • G06F21/6218Protecting access to data via a platform, e.g. using keys or access control rules to a system of files or objects, e.g. local or distributed file system or database

Landscapes

  • Engineering & Computer Science (AREA)
  • Health & Medical Sciences (AREA)
  • General Health & Medical Sciences (AREA)
  • Theoretical Computer Science (AREA)
  • Public Health (AREA)
  • Computer Hardware Design (AREA)
  • Medical Informatics (AREA)
  • Primary Health Care (AREA)
  • Radiology & Medical Imaging (AREA)
  • Databases & Information Systems (AREA)
  • Bioethics (AREA)
  • Epidemiology (AREA)
  • Computer Security & Cryptography (AREA)
  • Software Systems (AREA)
  • Physics & Mathematics (AREA)
  • General Engineering & Computer Science (AREA)
  • General Physics & Mathematics (AREA)
  • Nuclear Medicine, Radiotherapy & Molecular Imaging (AREA)
  • Medical Treatment And Welfare Office Work (AREA)

Abstract

The invention discloses a kind of medical image data access right control method and devices, PACS server is when receiving the target medical image data access request of client transmission, first judge whether the client has the access authority to the target medical image data stored in the PACS server, when the client has the access authority to the target medical image data, just the target medical image data can be sent to the client.Based on the above method and device, since access authority of the PACS server to client controls, it can guarantee that client can only access to the medical image data in its access authority range.

Description

Medical image data access right control method and device
Technical field
The present invention relates to technical field of data processing, and more specifically, it relates to a kind of medical image data access authority Control method and device.
Background technique
PACS (Picture Archiving and Communication Systems, image archiving and communication system) It is the system applied in hospital image department, main task is the various medical images that storing medical image equipment generates, packet Include MRT (Magnetic Resonance Imaging, Magnetic resonance imaging), CT (Computed Tomography, computer Tomoscan), the medical image that generates of ultrasound, X-ray machine, radar stealthy materials, the medical imaging devices such as frequency microscope.
In practical applications, a PACS often stores the medical image from multiple hospitals, PACS meeting default storage Medical image both is from same mechanism, and for all medical images of storage, any one hospital can be checked, still, There is the responsibility to maintain secrecy to the court's patient medical record in each hospital, and the medical image of a hospital is checked by other hospitals, It is easy to cause the leakage of patients' privacy.
Summary of the invention
In view of the above problems, it proposes on the present invention overcomes the above problem or at least be partially solved in order to provide one kind State the medical image data access right control method and device of problem.Concrete scheme is as follows:
A kind of medical image data access right control method, which comprises
Receive the target medical image data access request that client is sent, the target medical image data access request It is used to indicate the target medical image data stored in the client request access PACS server;
Judge whether the client has the access authority to the target medical image data;
When the client has the access authority to the target medical image data, by the target medical image Data are sent to the client.
Optionally, described to judge whether the client has the access authority to the target medical image data, packet It includes:
Judge the target medical image data whether carry out source mechanism consistent with the ownership mechanism of the client;
When the target medical image data come source mechanism it is consistent with the ownership mechanism of the client when, it is determined that institute Client is stated with the access authority to the target medical image data;
When the target medical image data is when coming source mechanism and the inconsistent ownership mechanism of the client, it is determined that The client does not have the access authority to the target medical image data.
Optionally, the judgement target medical image data carry out source mechanism and the ownership mechanism of the client is It is no consistent, comprising:
Source mechanism coding corresponding with the target medical image data is obtained from the PACS server;
The ownership mechanism coding of the client is obtained from the target medical image data access request;
Judge whether the source mechanism coding and the ownership mechanism coding are consistent;
When the source mechanism coding is consistent with the ownership mechanism coding, it is determined that the target medical image data To carry out source mechanism consistent with the ownership mechanism of the client;
When the source mechanism coding and the ownership mechanism coding are inconsistent, it is determined that the target medical image number According to carry out source mechanism and the ownership mechanism of the client is inconsistent.
Optionally, the judgement target medical image data carry out source mechanism and the ownership mechanism of the client is It is no consistent, comprising:
Source IP address corresponding with the target medical image data is obtained from the PACS server;
The IP address of the client is obtained from the target medical image data access request;
Judge whether the corresponding source IP address of the target medical image data and the IP address of the client belong to together One local area network;
When the IP address of the corresponding source IP address of the target medical image data and the client belongs to same local When net, it is determined that the target medical image data to carry out source mechanism consistent with the ownership mechanism of the client;
When the IP address of the corresponding source IP address of the target medical image data and the client is not belonging to same office Domain net when, it is determined that the target medical image data carry out source mechanism and the ownership mechanism of the client is inconsistent.
Optionally, the judgement target medical image data carry out source mechanism and the ownership mechanism of the client is It is no consistent, comprising:
The first user account for sending the target medical image data is obtained from the PACS server;
The second user account for logging in the client is obtained from the target medical image data access request;
Judge whether first user account and the second user account belong to same mechanism;
When first user account and the second user account belong to same mechanism, it is determined that the target doctor Learn image data to carry out source mechanism consistent with the ownership mechanism of the client;
When first user account and the second user account are not belonging to same mechanism, it is determined that the target Medical image data carry out source mechanism and the ownership mechanism of the client is inconsistent.
Optionally, described to judge whether the client has the access authority to the target medical image data, packet It includes:
When the ownership mechanism for determining the client is diagnostic center, it is determined that the client has to the target The access authority of medical image data.
Optionally, the method also includes:
When the client does not have the access authority to the target medical image data, Xiang Suoshu client is sent Denied access message.
A kind of medical image data address control set, described device include:
Receiving unit, for receiving the target medical image data access request of client transmission, the target medicine shadow As data access request is used to indicate the target medical image number stored in the client request access PACS server According to;
Judging unit, for judging whether the client has the access authority to the target medical image data;
Processing unit, when for having the access authority to the target medical image data when the client, by institute It states target medical image data and is sent to the client.
A kind of storage medium, the storage medium are stored with program, to realize medical image data access as described above The step of authority control method.
A kind of electronic equipment, comprising:
Memory and processor;
The memory is stored with the program executed suitable for the processor, to realize medical image data as described above The step of access right control method.
By above-mentioned technical proposal, medical image data access right control method and device provided by the invention, PACS Server first judges whether the client has when receiving the target medical image data access request of client transmission To the access authority of the target medical image data stored in the PACS server, when the client has to described When the access authority of target medical image data, just the target medical image data can be sent to the client.It is based on The above method and device can guarantee that client can only be right since access authority of the PACS server to client controls Medical image data in its access authority range accesses.
The above description is only an overview of the technical scheme of the present invention, in order to better understand the technical means of the present invention, And it can be implemented in accordance with the contents of the specification, and in order to allow above and other objects of the present invention, feature and advantage can It is clearer and more comprehensible, the followings are specific embodiments of the present invention.
Detailed description of the invention
By reading the following detailed description of the preferred embodiment, various other advantages and benefits are common for this field Technical staff will become clear.The drawings are only for the purpose of illustrating a preferred embodiment, and is not considered as to the present invention Limitation.And throughout the drawings, the same reference numbers will be used to refer to the same parts.In the accompanying drawings:
Fig. 1 is the configuration diagram of medical image data access privilege control system provided in an embodiment of the present invention;
Fig. 2 is a kind of flow diagram of medical image data access right control method disclosed by the embodiments of the present invention;
Fig. 3 is a kind of structural schematic diagram of medical image data address control set disclosed by the embodiments of the present invention.
Specific embodiment
Exemplary embodiments of the present disclosure are described in more detail below with reference to accompanying drawings.Although showing the disclosure in attached drawing Exemplary embodiment, it being understood, however, that may be realized in various forms the disclosure without should be by embodiments set forth here It is limited.On the contrary, these embodiments are provided to facilitate a more thoroughly understanding of the present invention, and can be by the scope of the present disclosure It is fully disclosed to those skilled in the art.
Fig. 1 shows the configuration diagram of medical image data access privilege control system provided in an embodiment of the present invention, Referring to Fig.1, which may include:
Convalescent home, PACS server and diagnostic center, wherein include actinoscopy equipment, HIS system in convalescent home System server, front server and convalescent home's client, diagnostic center include diagnostic center client.
Patient first passes through convalescent home for patient basis and checks request slip typing HIS after convalescent home is medical System server, HIS system server is by patient basis and checks that request slip passes to actinoscopy equipment and preposition service In device, actinoscopy equipment, which check to patient, generates medical image data, front server according to patient basis and After checking that request slip is labeled medical image data, it is uploaded to PACS server, store simultaneously root by PACS server Priority assignation is carried out according to markup information.Later, convalescent home's client or diagnostic center client are to the doctor in PACS server The processing for learning the access request of image data, that is, can be used medical image data access privilege control provided in an embodiment of the present invention Method is realized.
Medical image data access privilege control system can be applied to multiple convalescent homes, the multiple rehabilitation doctors of storage and management The medical image data of institute.Specifically, the front server of each convalescent home (such as disposes sharp jade-like stone PACS/RIS Multi- Site front server software) it is integrated with HIS system server respectively, realize data interaction, each convalescent home's client passes through It accesses front server and obtains service.Front server can be to the medical image data of different mechanisms (such as convalescent home) It is uploaded to PACS server again after carrying out coding mark, to facilitate the source machine of PACS server identification hospital image data Structure and account ownership.Diagnostic center client can be used to obtain corresponding hospital image number from PACS server for the doctor of diagnostic center According to complete the PACS server that corresponding diagnosis report is fed back to.Each convalescent home obtains corresponding diagnosis from PACS server Report, can be realized the diagnosis and treatment process to patient.
Attached drawing 2 is please referred to, Fig. 2 is a kind of medical image data access right control method disclosed by the embodiments of the present invention Flow diagram, this method comprises:
Step S200: the target medical image data access request that client is sent is received.
The target medical image data access request is used to indicate in the client request access PACS server and deposits The target medical image data of storage;
Step S201: judging whether the client has the access authority to the target medical image data, works as institute When stating client has the access authority to the target medical image data, step S202 is executed, when the client does not have When having the access authority to the target medical image data, step S203 is executed.
In a kind of embodiment, when the ownership mechanism for determining the client is diagnostic center, it is determined that described Client has the access authority to the target medical image data.
In another embodiment, when the ownership mechanism for determining the client is convalescent home, then by such as Under type judges whether the client has the access authority to the target medical image data:
Judge the target medical image data whether carry out source mechanism consistent with the ownership mechanism of the client;
When the target medical image data come source mechanism it is consistent with the ownership mechanism of the client when, it is determined that institute Client is stated with the access authority to the target medical image data;
When the target medical image data is when coming source mechanism and the inconsistent ownership mechanism of the client, it is determined that The client does not have the access authority to the target medical image data.
Illustratively, come source mechanism and institute the embodiment of the invention discloses several judgement target medical image datas The whether consistent implementation of ownership mechanism of client is stated, specific as follows:
Mode one:
Source mechanism coding corresponding with the target medical image data is obtained from the PACS server;
The ownership mechanism coding of the client is obtained from the target medical image data access request;
Judge whether the source mechanism coding and the ownership mechanism coding are consistent;
When the source mechanism coding is consistent with the ownership mechanism coding, it is determined that the target medical image data To carry out source mechanism consistent with the ownership mechanism of the client;
When the source mechanism coding and the ownership mechanism coding are inconsistent, it is determined that the target medical image number According to carry out source mechanism and the ownership mechanism of the client is inconsistent.
Mode two:
Source IP address corresponding with the target medical image data is obtained from the PACS server;
The IP address of the client is obtained from the target medical image data access request;
Judge whether the corresponding source IP address of the target medical image data and the IP address of the client belong to together One local area network;
When the IP address of the corresponding source IP address of the target medical image data and the client belongs to same local When net, it is determined that the target medical image data to carry out source mechanism consistent with the ownership mechanism of the client;
When the IP address of the corresponding source IP address of the target medical image data and the client is not belonging to same office Domain net when, it is determined that the target medical image data carry out source mechanism and the ownership mechanism of the client is inconsistent.
Mode three:
The first user account for sending the target medical image data is obtained from the PACS server;
The second user account for logging in the client is obtained from the target medical image data access request;
Judge whether first user account and the second user account belong to same mechanism;
When first user account and the second user account belong to same mechanism, it is determined that the target medicine Image data to carry out source mechanism consistent with the ownership mechanism of the client;
When first user account and the second user account are not belonging to same mechanism, it is determined that the target doctor Learn image data carry out source mechanism and the ownership mechanism of the client is inconsistent.
Step S202: the target medical image data is sent to the client.
S203: Xiang Suoshu client of step sends denied access message.
Medical image data access right control method provided in an embodiment of the present invention, PACS server are receiving client When holding the target medical image data access request sent, first judge whether the client has in the PACS server The access authority of the target medical image data of storage, when the client has to the target medical image data When access authority, just the target medical image data can be sent to the client.Based on the above method, since PACS takes Business device controls the access authority of client, can guarantee that client can only be to the medical image in its access authority range Data access.
Attached drawing 3 is please referred to, Fig. 3 is a kind of medical image data address control set disclosed by the embodiments of the present invention Structural schematic diagram, the device include:
Receiving unit 10, for receiving the target medical image data access request of client transmission, the target medicine Image data access request is used to indicate the target medical image stored in the client request access PACS server Data;
Judging unit 11, for judging whether the client has the access right to the target medical image data Limit;
Processing unit 12 will when for having the access authority to the target medical image data when the client The target medical image data is sent to the client.
In one embodiment of the invention, judging unit 11 is specifically used for: judging the target medical image data It is whether consistent with the ownership mechanism of the client to carry out source mechanism;When the target medical image data come source mechanism with it is described When the ownership mechanism of client is consistent, it is determined that the client has the access authority to the target medical image data; When the target medical image data is when coming source mechanism and the inconsistent ownership mechanism of the client, it is determined that the client End does not have the access authority to the target medical image data.
In one embodiment of the invention, judging unit 11 is specifically used for: acquisition and institute from the PACS server State the corresponding source mechanism coding of target medical image data;Described in being obtained from the target medical image data access request The ownership mechanism coding of client;Judge whether the source mechanism coding and the ownership mechanism coding are consistent;When described next Source mechanism coding it is consistent with the ownership mechanism coding when, it is determined that the target medical image data come source mechanism with it is described The ownership mechanism of client is consistent;When the source mechanism coding and the ownership mechanism coding are inconsistent, it is determined that described Target medical image data carry out source mechanism and the ownership mechanism of the client is inconsistent.
In one embodiment of the invention, judging unit 11 is specifically used for: acquisition and institute from the PACS server State the corresponding source IP address of target medical image data;The client is obtained from the target medical image data access request The IP address at end;Judge whether the corresponding source IP address of the target medical image data and the IP address of the client belong to Same local area network;When the IP address of the corresponding source IP address of the target medical image data and the client belongs to same office When domain is netted, it is determined that the target medical image data to carry out source mechanism consistent with the ownership mechanism of the client;When described When the IP address of the corresponding source IP address of target medical image data and the client is not belonging to same local area network, it is determined that institute State target medical image data carry out source mechanism and the ownership mechanism of the client is inconsistent.
In one embodiment of the invention, judging unit 11 is specifically used for: obtaining and sends from the PACS server First user account of the target medical image data;It is obtained from the target medical image data access request and logs in institute State the second user account of client;Judge whether first user account and the second user account belong to same machine Structure;When first user account and the second user account belong to same mechanism, it is determined that the target medical image Data to carry out source mechanism consistent with the ownership mechanism of the client;When first user account and the second user account When being not belonging to same mechanism, it is determined that the ownership mechanism for coming source mechanism and the client of the target medical image data is not Unanimously.
In one embodiment of the invention, judging unit 11 is specifically used for: when the ownership mechanism for determining the client When for diagnostic center, it is determined that the client has the access authority to the target medical image data.
In one embodiment of the invention, processing unit 12 is also used to: when the client does not have to the target When the access authority of medical image data, Xiang Suoshu client sends denied access message.
It should be noted that the concrete function realization of above-mentioned each unit is described in detail in embodiment of the method, this reality Example is applied to repeat no more.
The medical image data address control set includes processor and memory, and above-mentioned each unit etc. is made In memory for program unit storage, above procedure unit stored in memory is executed by processor to realize accordingly Function.
Include kernel in processor, is gone in memory to transfer corresponding program unit by kernel.Kernel can be set one Or more, it realizes that the access authority to client controls by adjusting kernel parameter, guarantees that client can only visit it Ask that the medical image data in extent of competence accesses.
Memory may include the non-volatile memory in computer-readable medium, random access memory (RAM) and/ Or the forms such as Nonvolatile memory, if read-only memory (ROM) or flash memory (flash RAM), memory include that at least one is deposited Store up chip.
The embodiment of the invention provides a kind of storage mediums, are stored thereon with program, real when which is executed by processor The existing medical image data access right control method.
The embodiment of the invention provides a kind of processor, the processor is for running program, wherein described program operation Medical image data access right control method described in Shi Zhihang.
The embodiment of the invention provides a kind of electronic equipment, electronic equipment includes processor, memory and is stored in storage On device and the program that can run on a processor, processor perform the steps of when executing program
A kind of medical image data access right control method, which comprises
Receive the target medical image data access request that client is sent, the target medical image data access request It is used to indicate the target medical image data stored in the client request access PACS server;
Judge whether the client has the access authority to the target medical image data;
When the client has the access authority to the target medical image data, by the target medical image Data are sent to the client.
Optionally, described to judge whether the client has the access authority to the target medical image data, packet It includes:
Judge the target medical image data whether carry out source mechanism consistent with the ownership mechanism of the client;
When the target medical image data come source mechanism it is consistent with the ownership mechanism of the client when, it is determined that institute Client is stated with the access authority to the target medical image data;
When the target medical image data is when coming source mechanism and the inconsistent ownership mechanism of the client, it is determined that The client does not have the access authority to the target medical image data.
Optionally, the judgement target medical image data carry out source mechanism and the ownership mechanism of the client is It is no consistent, comprising:
Source mechanism coding corresponding with the target medical image data is obtained from the PACS server;
The ownership mechanism coding of the client is obtained from the target medical image data access request;
Judge whether the source mechanism coding and the ownership mechanism coding are consistent;
When the source mechanism coding is consistent with the ownership mechanism coding, it is determined that the target medical image data To carry out source mechanism consistent with the ownership mechanism of the client;
When the source mechanism coding and the ownership mechanism coding are inconsistent, it is determined that the target medical image number According to carry out source mechanism and the ownership mechanism of the client is inconsistent.
Optionally, the judgement target medical image data carry out source mechanism and the ownership mechanism of the client is It is no consistent, comprising:
Source IP address corresponding with the target medical image data is obtained from the PACS server;
The IP address of the client is obtained from the target medical image data access request;
Judge whether the corresponding source IP address of the target medical image data and the IP address of the client belong to together One local area network;
When the IP address of the corresponding source IP address of the target medical image data and the client belongs to same local When net, it is determined that the target medical image data to carry out source mechanism consistent with the ownership mechanism of the client;
When the IP address of the corresponding source IP address of the target medical image data and the client is not belonging to same office Domain net when, it is determined that the target medical image data carry out source mechanism and the ownership mechanism of the client is inconsistent.
Optionally, the judgement target medical image data carry out source mechanism and the ownership mechanism of the client is It is no consistent, comprising:
The first user account for sending the target medical image data is obtained from the PACS server;
The second user account for logging in the client is obtained from the target medical image data access request;
Judge whether first user account and the second user account belong to same mechanism;
When first user account and the second user account belong to same mechanism, it is determined that the target medicine Image data to carry out source mechanism consistent with the ownership mechanism of the client;
When first user account and the second user account are not belonging to same mechanism, it is determined that the target doctor Learn image data carry out source mechanism and the ownership mechanism of the client is inconsistent.
Optionally, described to judge whether the client has the access authority to the target medical image data, packet It includes:
When the ownership mechanism for determining the client is diagnostic center, it is determined that the client has to the target The access authority of medical image data.
Optionally, the method also includes:
When the client does not have the access authority to the target medical image data, Xiang Suoshu client is sent Denied access message.
Electronic equipment herein can be server, PC, PAD, mobile phone etc..
Present invention also provides a kind of computer program products, when executing on data processing equipment, are adapted for carrying out just The program of beginningization there are as below methods step:
A kind of medical image data access right control method, which comprises
Receive the target medical image data access request that client is sent, the target medical image data access request It is used to indicate the target medical image data stored in the client request access PACS server;
Judge whether the client has the access authority to the target medical image data;
When the client has the access authority to the target medical image data, by the target medical image Data are sent to the client.
Optionally, described to judge whether the client has the access authority to the target medical image data, packet It includes:
Judge the target medical image data whether carry out source mechanism consistent with the ownership mechanism of the client;
When the target medical image data come source mechanism it is consistent with the ownership mechanism of the client when, it is determined that institute Client is stated with the access authority to the target medical image data;
When the target medical image data is when coming source mechanism and the inconsistent ownership mechanism of the client, it is determined that The client does not have the access authority to the target medical image data.
Optionally, the judgement target medical image data carry out source mechanism and the ownership mechanism of the client is It is no consistent, comprising:
Source mechanism coding corresponding with the target medical image data is obtained from the PACS server;
The ownership mechanism coding of the client is obtained from the target medical image data access request;
Judge whether the source mechanism coding and the ownership mechanism coding are consistent;
When the source mechanism coding is consistent with the ownership mechanism coding, it is determined that the target medical image data To carry out source mechanism consistent with the ownership mechanism of the client;
When the source mechanism coding and the ownership mechanism coding are inconsistent, it is determined that the target medical image number According to carry out source mechanism and the ownership mechanism of the client is inconsistent.
Optionally, the judgement target medical image data carry out source mechanism and the ownership mechanism of the client is It is no consistent, comprising:
Source IP address corresponding with the target medical image data is obtained from the PACS server;
The IP address of the client is obtained from the target medical image data access request;
Judge whether the corresponding source IP address of the target medical image data and the IP address of the client belong to together One local area network;
When the IP address of the corresponding source IP address of the target medical image data and the client belongs to same local When net, it is determined that the target medical image data to carry out source mechanism consistent with the ownership mechanism of the client;
When the IP address of the corresponding source IP address of the target medical image data and the client is not belonging to same office Domain net when, it is determined that the target medical image data carry out source mechanism and the ownership mechanism of the client is inconsistent.
Optionally, the judgement target medical image data carry out source mechanism and the ownership mechanism of the client is It is no consistent, comprising:
The first user account for sending the target medical image data is obtained from the PACS server;
The second user account for logging in the client is obtained from the target medical image data access request;
Judge whether first user account and the second user account belong to same mechanism;
When first user account and the second user account belong to same mechanism, it is determined that the target medicine Image data to carry out source mechanism consistent with the ownership mechanism of the client;
When first user account and the second user account are not belonging to same mechanism, it is determined that the target doctor Learn image data carry out source mechanism and the ownership mechanism of the client is inconsistent.
Optionally, described to judge whether the client has the access authority to the target medical image data, packet It includes:
When the ownership mechanism for determining the client is diagnostic center, it is determined that the client has to the target The access authority of medical image data.
Optionally, the method also includes:
When the client does not have the access authority to the target medical image data, Xiang Suoshu client is sent Denied access message.
It should be understood by those skilled in the art that, embodiments herein can provide as method, system or computer program Product.Therefore, complete hardware embodiment, complete software embodiment or reality combining software and hardware aspects can be used in the application Apply the form of example.Moreover, it wherein includes the computer of computer usable program code that the application, which can be used in one or more, The computer program implemented in usable storage medium (including but not limited to magnetic disk storage, CD-ROM, optical memory etc.) produces The form of product.
The application is referring to method, the process of equipment (system) and computer program product according to the embodiment of the present application Figure and/or block diagram describe.It should be understood that every one stream in flowchart and/or the block diagram can be realized by computer program instructions The combination of process and/or box in journey and/or box and flowchart and/or the block diagram.It can provide these computer programs Instruct the processor of general purpose computer, special purpose computer, Embedded Processor or other programmable data processing devices to produce A raw machine, so that being generated by the instruction that computer or the processor of other programmable data processing devices execute for real The device for the function of being specified in present one or more flows of the flowchart and/or one or more blocks of the block diagram.
These computer program instructions, which may also be stored in, is able to guide computer or other programmable data processing devices with spy Determine in the computer-readable memory that mode works, so that it includes referring to that instruction stored in the computer readable memory, which generates, Enable the manufacture of device, the command device realize in one box of one or more flows of the flowchart and/or block diagram or The function of being specified in multiple boxes.
These computer program instructions also can be loaded onto a computer or other programmable data processing device, so that counting Series of operation steps are executed on calculation machine or other programmable devices to generate computer implemented processing, thus in computer or The instruction executed on other programmable devices is provided for realizing in one or more flows of the flowchart and/or block diagram one The step of function of being specified in a box or multiple boxes.
In a typical configuration, calculating equipment includes one or more processors (CPU), input/output interface, net Network interface and memory.
Memory may include the non-volatile memory in computer-readable medium, random access memory (RAM) and/ Or the forms such as Nonvolatile memory, such as read-only memory (ROM) or flash memory (flash RAM).Memory is computer-readable Jie The example of matter.
Computer-readable medium includes permanent and non-permanent, removable and non-removable media can be by any method Or technology come realize information store.Information can be computer readable instructions, data structure, the module of program or other data. The example of the storage medium of computer includes, but are not limited to phase change memory (PRAM), static random access memory (SRAM), moves State random access memory (DRAM), other kinds of random access memory (RAM), read-only memory (ROM), electric erasable Programmable read only memory (EEPROM), flash memory or other memory techniques, read-only disc read only memory (CD-ROM) (CD-ROM), Digital versatile disc (DVD) or other optical storage, magnetic cassettes, tape magnetic disk storage or other magnetic storage devices Or any other non-transmission medium, can be used for storage can be accessed by a computing device information.As defined in this article, it calculates Machine readable medium does not include temporary computer readable media (transitory media), such as the data-signal and carrier wave of modulation.
It should also be noted that, the terms "include", "comprise" or its any other variant are intended to nonexcludability It include so that the process, method, commodity or the equipment that include a series of elements not only include those elements, but also to wrap Include other elements that are not explicitly listed, or further include for this process, method, commodity or equipment intrinsic want Element.In the absence of more restrictions, the element limited by sentence "including a ...", it is not excluded that including element There is also other identical elements in process, method, commodity or equipment.
It will be understood by those skilled in the art that embodiments herein can provide as method, system or computer program product. Therefore, complete hardware embodiment, complete software embodiment or embodiment combining software and hardware aspects can be used in the application Form.It is deposited moreover, the application can be used to can be used in the computer that one or more wherein includes computer usable program code The shape for the computer program product implemented on storage media (including but not limited to magnetic disk storage, CD-ROM, optical memory etc.) Formula.
The above is only embodiments herein, are not intended to limit this application.To those skilled in the art, Various changes and changes are possible in this application.It is all within the spirit and principles of the present application made by any modification, equivalent replacement, Improve etc., it should be included within the scope of the claims of this application.

Claims (10)

1. a kind of medical image data access right control method, which is characterized in that the described method includes:
The target medical image data access request that client is sent is received, the target medical image data access request is used for Indicate the target medical image data stored in the client request access PACS server;
Judge whether the client has the access authority to the target medical image data;
When the client has the access authority to the target medical image data, by the target medical image data It is sent to the client.
2. judging whether the client has to the target the method according to claim 1, wherein described The access authority of medical image data, comprising:
Judge the target medical image data whether carry out source mechanism consistent with the ownership mechanism of the client;
When the target medical image data come source mechanism it is consistent with the ownership mechanism of the client when, it is determined that the visitor Family end has the access authority to the target medical image data;
When the target medical image data is when coming source mechanism and the inconsistent ownership mechanism of the client, it is determined that described Client does not have the access authority to the target medical image data.
3. according to the method described in claim 2, it is characterized in that, the source machine of the judgement target medical image data Whether structure is consistent with the ownership mechanism of the client, comprising:
Source mechanism coding corresponding with the target medical image data is obtained from the PACS server;
The ownership mechanism coding of the client is obtained from the target medical image data access request;
Judge whether the source mechanism coding and the ownership mechanism coding are consistent;
When the source mechanism coding is consistent with the ownership mechanism coding, it is determined that the target medical image data comes Source mechanism is consistent with the ownership mechanism of the client;
When the source mechanism coding and the ownership mechanism coding are inconsistent, it is determined that the target medical image data Carry out source mechanism and the ownership mechanism of the client is inconsistent.
4. according to the method described in claim 2, it is characterized in that, the source machine of the judgement target medical image data Whether structure is consistent with the ownership mechanism of the client, comprising:
Source IP address corresponding with the target medical image data is obtained from the PACS server;
The IP address of the client is obtained from the target medical image data access request;
Judge whether the corresponding source IP address of the target medical image data and the IP address of the client belong to same office Domain net;
When the IP address of the corresponding source IP address of the target medical image data and the client belongs to same local area network, Then determine the target medical image data to carry out source mechanism consistent with the ownership mechanism of the client;
When the IP address of the corresponding source IP address of the target medical image data and the client is not belonging to same local area network When, it is determined that the target medical image data carry out source mechanism and the ownership mechanism of the client is inconsistent.
5. according to the method described in claim 2, it is characterized in that, the source machine of the judgement target medical image data Whether structure is consistent with the ownership mechanism of the client, comprising:
The first user account for sending the target medical image data is obtained from the PACS server;
The second user account for logging in the client is obtained from the target medical image data access request;
Judge whether first user account and the second user account belong to same mechanism;
When first user account and the second user account belong to same mechanism, it is determined that the target medical image Data to carry out source mechanism consistent with the ownership mechanism of the client;
When first user account and the second user account are not belonging to same mechanism, it is determined that the target medicine shadow As data carry out source mechanism and the ownership mechanism of the client is inconsistent.
6. judging whether the client has to the target the method according to claim 1, wherein described The access authority of medical image data, comprising:
When the ownership mechanism for determining the client is diagnostic center, it is determined that the client has to the target medicine The access authority of image data.
7. method as claimed in any of claims 1 to 6, which is characterized in that the method also includes:
When the client does not have the access authority to the target medical image data, Xiang Suoshu client sends refusal Access message.
8. a kind of medical image data address control set, which is characterized in that described device includes:
Receiving unit, for receiving the target medical image data access request of client transmission, the target medical image number The target medical image data stored in the client request access PACS server is used to indicate according to access request;
Judging unit, for judging whether the client has the access authority to the target medical image data;
Processing unit, when for having the access authority to the target medical image data when the client, by the mesh Mark medical image data is sent to the client.
9. a kind of storage medium, which is characterized in that the storage medium is stored with program, to realize any one of claim 1-7 The step of described medical image data access right control method.
10. a kind of electronic equipment characterized by comprising
Memory and processor;
The memory is stored with the program executed suitable for the processor, to realize the described in any item doctors of claim 1-7 The step of learning image data access right control method.
CN201811375149.2A 2018-11-19 2018-11-19 Medical image data access right control method and device Pending CN109559800A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201811375149.2A CN109559800A (en) 2018-11-19 2018-11-19 Medical image data access right control method and device

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201811375149.2A CN109559800A (en) 2018-11-19 2018-11-19 Medical image data access right control method and device

Publications (1)

Publication Number Publication Date
CN109559800A true CN109559800A (en) 2019-04-02

Family

ID=65866540

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201811375149.2A Pending CN109559800A (en) 2018-11-19 2018-11-19 Medical image data access right control method and device

Country Status (1)

Country Link
CN (1) CN109559800A (en)

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN110827955A (en) * 2019-11-05 2020-02-21 泰康保险集团股份有限公司 File lookup method and device, computer-readable storage medium and electronic equipment
CN112712880A (en) * 2021-03-26 2021-04-27 上海孚慈医疗科技有限公司 Medical image information management method and system

Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101727534A (en) * 2008-10-30 2010-06-09 北大方正集团有限公司 Patient document retrieval authorization control method and system
CN104335523A (en) * 2014-04-15 2015-02-04 华为技术有限公司 Access control method, client and server
CN104580105A (en) * 2013-10-24 2015-04-29 上海联影医疗科技有限公司 Picture archiving and communication system and communication method thereof
CN106998318A (en) * 2016-01-22 2017-08-01 广东福地新视野光电技术有限公司 A kind of PACS authority control method and system
CN108597564A (en) * 2018-02-28 2018-09-28 泰康保险集团股份有限公司 Medical data sharing method and system
CN108595972A (en) * 2018-04-25 2018-09-28 深圳安泰创新科技股份有限公司 Image data cross-system transfers method, server and storage medium

Patent Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101727534A (en) * 2008-10-30 2010-06-09 北大方正集团有限公司 Patient document retrieval authorization control method and system
CN104580105A (en) * 2013-10-24 2015-04-29 上海联影医疗科技有限公司 Picture archiving and communication system and communication method thereof
CN104335523A (en) * 2014-04-15 2015-02-04 华为技术有限公司 Access control method, client and server
CN106998318A (en) * 2016-01-22 2017-08-01 广东福地新视野光电技术有限公司 A kind of PACS authority control method and system
CN108597564A (en) * 2018-02-28 2018-09-28 泰康保险集团股份有限公司 Medical data sharing method and system
CN108595972A (en) * 2018-04-25 2018-09-28 深圳安泰创新科技股份有限公司 Image data cross-system transfers method, server and storage medium

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN110827955A (en) * 2019-11-05 2020-02-21 泰康保险集团股份有限公司 File lookup method and device, computer-readable storage medium and electronic equipment
CN112712880A (en) * 2021-03-26 2021-04-27 上海孚慈医疗科技有限公司 Medical image information management method and system

Similar Documents

Publication Publication Date Title
US11144660B2 (en) Secure data sharing
Rieke et al. The future of digital health with federated learning
Zhang et al. Applying software patterns to address interoperability in blockchain-based healthcare apps
Jabarulla et al. Blockchain-based distributed patient-centric image management system
Dimililer Backpropagation neural network implementation for medical image compression
JP2012510118A (en) Method and system for providing remote access to the state of an application program
US11763932B2 (en) Classifying images using deep neural network with integrated acquisition information
US20150220746A1 (en) Encrypted data store for records
WO2019153095A1 (en) Blockchain-based consent management system and method
CN109559800A (en) Medical image data access right control method and device
CN103971063B (en) Transmission measure for the vital medical image content of safety
Schmeelk et al. Electronic health records and blockchain interoperability requirements: a scoping review
KR102000745B1 (en) Method and system for managing personal medical information data
Shah et al. Keeping patient data secure in the age of radiology artificial intelligence: cybersecurity considerations and future directions
CN108055141A (en) It is interacted with the context formula of application
JP2019046262A (en) Information processing apparatus, information processing method, and information processing program
Society for Imaging Practical imaging informatics: foundations and applications for PACS professionals
Lebre et al. Decentralizing the storage of a DICOM compliant PACS
Nayak et al. Impact of Cloud Accountability on Clinical Architecture and Acceptance of Healthcare System
Srinivasan et al. Secure multimedia data processing scheme in medical applications
Kumari et al. Blockchain: A survey on healthcare perspective and its challenges
Wood et al. How blockchain technology can enhance EHR operability
Bani‐Hashemi et al. TU‐D‐I‐611‐08: Cone Beam X‐Ray Scatter Removal Via Image Frequency Modulation and Filtering
Seaberg et al. Use of blockchain technology for electronic prescriptions
US20220358237A1 (en) Secure data analytics

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication
RJ01 Rejection of invention patent application after publication

Application publication date: 20190402