论文标题

临床决策支持系统的不可申请的出处

Non-repudiable provenance for clinical decision support systems

论文作者

Fairweather, Elliot, Wittner, Rudolf, Chapman, Martin, Holub, Petr, Curcin, Vasa

论文摘要

现在,出处模板是构建数据出处记录的公认方法。每个模板都以抽象形式定义了特定于域的动作的出处,然后可以根据需要单次调用来源模板服务来实例化。随着数据可靠性和可信度成为越来越多的域中的关键问题,因此有相应的需求确保该数据的出处是不可申请的。在本文中,我们为我们的模板模型和实施贡献了两个新的互补模块,以产生不可申请的数据出处。第一个模块可以追溯出来源模板服务本身的操作,并在单个服务调用级别记录对象级文档的构建的出处痕迹。第二个是一个非纠正模块,生成了有关每个呼叫的数据的证据,对服务跟踪进行相应注释,并将该证据的表示形式提交给提供者 - 不合骨的公证服务。我们在临床决策支持系统的背景下评估方法的适用性。我们首先定义了一项政策,以确保对安全威胁分析的不替代证据,以证明我们的解决方案的适用性。然后,我们从特定系统中选择三个用例,请咨询,并与数据出处记录要求进行对比,并分析针对三个不同的公证提供商的原型实现的后续性能。

Provenance templates are now a recognised methodology for the construction of data provenance records. Each template defines the provenance of a domain-specific action in abstract form, which may then be instantiated as required by a single call to the provenance template service. As data reliability and trustworthiness becomes a critical issue in an increasing number of domains, there is a corresponding need to ensure that the provenance of that data is non-repudiable. In this paper we contribute two new, complementary modules to our template model and implementation to produce non-repudiable data provenance. The first, a module that traces the operation of the provenance template service itself, and records a provenance trace of the construction of an object-level document, at the level of individual service calls. The second, a non-repudiation module that generates evidence for the data recorded about each call, annotates the service trace accordingly, and submits a representation of that evidence to a provider-agnostic notary service. We evaluate the applicability of our approach in the context of a clinical decision support system. We first define a policy to ensure the non-repudiation of evidence with respect to a security threat analysis in order to demonstrate the suitability of our solution. We then select three use cases from within a particular system, Consult, with contrasting data provenance recording requirements and analyse the subsequent performance of our prototype implementation against three different notary providers.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源