针对目前电子病历系统存在病历信息泄露、数据被窜改、身份验证不严格等问题,分析了该系统采用公钥基础设施(public key infrastructure,PKI)存在的不足,提出了一种基于身份密码体制的改进方案。利用基于身份的加密、签名、认证等技术解决了电子病历系统中所遇到的一系列安全问题,与已有PKI方案相比,具有成本低、实现简单、效率高等优点。理论分析和实验结果表明,该方案是保证电子病历系统安全运行的一种有效解决方案。
This paper discussed the problems in the electronic medical record system security and the shortcomings of PKI in dealing with the problems,and proposed an IBC-based security solution,which used identity-based encryption,identity-based signature and identity-based identification technologies to solve the safety of a series of problems in electronic medical records effectively.Compared with PKI-based program,the proposed method had advantages such as low cost,simple operation,and high efficiency.Thus,it provides a new method to ensure the security of the electronic medical record system.