u-헬스 환경에서 개인건강관리를 위한 보안 위협 및 요구사항에 관한 연구

Study on Security Threat and Requirement for Personal Health Management in u-Health Environment

  • 김순석 (한라대학교 컴퓨터공학과) ;
  • 박홍진 (상지대학교 컴퓨터정보공학부)
  • Kim, Soon-Seok (Department of Computer Science, Hal-La University) ;
  • Park, Hong-Jin (School of Computer, Information and Communication, Sang-Ji University)
  • 투고 : 2010.05.17
  • 심사 : 2010.08.30
  • 발행 : 2010.08.31

초록

개인건강관리를 위해 PHD(Personal Health Device)로 부터 제공되는 개인 생체정보는 사생활 보호 측면에서 볼 때 개인의 생체와 관련한 매우 민감한 정보이며 환자를 가정할 때, 이것이 제 3자에게 노출되는 경우는 더욱 심각하다. 그러나 이번에 ISO에서 제정된 표준 프로토콜[1]의 경우, 개채 상호간에 생체 정보 교환을 위한 전송 부분만을 고려한 규격일 뿐 보안에 대한 요소는 전혀 고려되고 있지 않은 실정이다. 따라서 본 논문에서는 u-헬스 환경에서 개인건강관리를 위한 각종 보안 위협과 보안 요구사항에 대해 새롭게 제안하고자 한다.

The personal bio-information supplied from the PHD(Personal Health Device) for personal health management is very sensitive in relation to a personal living body in an aspect of privacy protection. On the assumption thai the information is about a patient, it is more serious problem if it is revealed to a third party. However. the established ISO (International Organizations for Standardization) standard protocol[1] in October 2009 has just considered a transmission part for mutual exchange of bio-information between individuals, but has never actually considered security elements. Accordingly, this paper is to show all sorts of security threats according to personal health management in the u-health environment and security requirements newly.

키워드

참고문헌

  1. ISO/IEEE 11073-20601 : Health informatics - Point-of-care medical device communication - Part 20601: Application profile - Optimized exchang protocol, International Standard Organization, http://www.iso.org, 2009.
  2. B. Blobel and J. Zvarova, eHealth : Combining Health Telematics, Telemedicine, Biomedical Engineering and Bioinformatics to the Edge, Methods of Information Medicine, pp. 121-122, 2010.
  3. R. Haux, Strategic Information Management in Hospitals: An Introduction to Hospital Information Systems (Paperback), Health Informatics Series, Springer-Verlag New York Inc., 2010.
  4. H. K. Huang, PACS and Imaging Informatics: Basic Principles and Applications, 2 Edition, John Wiley&Sons, Inc, 2010.
  5. HL7 Ver 3.0 Nominative edition, Health Level 7 International, http://www.hl7.org, 2009.
  6. A. E. F. Zuniga, K. T, Win, and W. Susilo, Biometrics for Electronic Health Records, Journal of Medical Systems, Published Online, http://www.springerlink,com/content/4727307m51027076/, June 2009.
  7. TTAI.KO-12.0035 : 홈 네트워크를 위한 보안 기술 프레임워크, 한국정보통신기술협회 http://www.tta.or.kr, 2006.