Gesellschaft für Informatik e.V.

Lecture Notes in Informatics


European Conference on eHealth 2007 P-118, 11-22 (2007).

Gesellschaft für Informatik, Bonn
2007


Editors

Andreas Hein (ed.), Wilfried Thoben (ed.), Hans-Jürgen Appelrath (ed.), Peter Jensch (ed.)


Copyright © Gesellschaft für Informatik, Bonn

Contents

EPR access authorization of medical teams based on patient consent

Sigurd Eskeland and Vladimir Oleshchuk

Abstract


Electronic patient records (EPR) may contain highly confidential and personal medical information. It is therefore essential that medical data is properly protected and managed. Today, it is widely recognized that patients have a right to selfdetermination and to exert control of their own medical data by consent. In this paper, we present a cryptographic EPR access authorization scheme that incorporates patient consent as a basis for granting EPR access to medical teams or practitioners. This ensures that only the medical practitioners specified by a consenting patient are granted EPR access. If a patient is unconscious, the variation of the scheme allows an emergency or security team to act on behalf of the patient.


Full Text: PDF

Gesellschaft für Informatik, Bonn
ISBN 978-3-88579-212-3


Last changed 04.10.2013 18:15:40