Identity Standards - Damon Berry

Preview:

DESCRIPTION

 

Citation preview

Damon BerryDamon Berry

HISI 2011

Health Identity Standards and Specifications

TeaPOT, School of Electrical Engineering Systems, DIT. http://teapot.dit.ie

Introduction

• Some identity definitions• Demographics models / trait sets• Standards for identity matching• Gaps in standardisation

Matching concepts

EN13606

Access Control (PMAC)

entity

principal

policy

document

role

act

authentication

Policy management

authorisation

audit

Privilege management

Principal management

Access control management

“entity”

attester

subject

committerIXSentity

Identity Domain

Identity (trait set +,…)

Background terms

• Definition– Identifier– Trait– Identity– Identity domain

Identifier

Identifier

Trait

Trait

Trait

Trait

Trait Trait

Primary identifiers – assigned at a national

level

• Individual Healthcare Identifiers (IHIs)

• Healthcare Provider Identifiers – Individual (HPI-Is) assigned to healthcare professionals

• Healthcare Provider Identifiers – Organisation (HPI-Os) assigned to organisations where healthcare is provided.

Demographics models

Identity cross reference service(OMG/HL7)

Standardised trait sets for people and organisation

ISO/TS 22220:2009 Health Informatics -

Identification of subjects of health care

ISO/TS 27527:2010 Health informatics -

Provider identification

EHRcom Demographics Model

Commonly occurring features in demographic

models

• “Identified entity”

• Data types

• Trait – trait part

• Validity time

• Role

Gap 2 - Identity of other types of entities

• Samples / specimens

• Orders

• Episode

• Instrument (there already)

• Omic entities

Secondary identifiers in the EHR

• Lab number

• Sample / Specimen Number

• Order Number

• Episode ID

Gap 3: turning local identifiers into global ones(just to uniquely identify - not to link

entities)

Three approaches

• OIDS

• UUIDs

• URIs

ISO Object Identifiers (OIDs)

• a standardised identification scheme. • developed in 1985 now widely used in the standards

community. • Each OID forms a node in a tree. • The arcs (edges or branches) between nodes in tree are

numbered and can also be associated with an alphanumeric identifier.

• Some examples of different OID notations.– Numeric form 2.16.382.1 – Alphanumeric form {joint-iso-itu}.{country}.{ire}.{organisation}.– URN notation urn:oid: 2.16.382.1 – IRI notation oid:/joint-iso-itu/country/ire/organisation

OIDs

ISO-ITU

IRE

HSE HRB CSOESRI

Acute Care PrimaryCare

Patients HCPs Pharma

SJH

AMNCH

Parklands MC

Beamont MC

UHIC. 123 UHCP. 123

5 million3,000800 120,000

Snomed-CT

Drug A

??

Drug B

International OIDs

National OIDs

National OID repositories

• Germany

• Switzerland

• Spain

• United Kingdom

• Norway

• … using Excel.

A better way, OID Resolution Protocol

• The OID resolution protocol (ORP), defined in a IEC work item will define the interaction between– OID resolution client which sends an OID as

part of a request and – OID resolution server which returns the OID

information available at the corresponding node in the tree.

• Similar to the Domain Name Service.

UUID Universally Unique Identifier

• Formed by a series of 16 octets or a total of 128 bits or 32 hexadecimal digits (often separated in groups of four).

• A new unique UUID could be created every 100 nanoseconds on every internet machine for the next 1600 years.

• UUIDs can be registered in an OID registry. For example the OID 2.25 has been reserved as a registration authority for UUIDs.

Scope of the three types of unique

identifiers

.

URIs

UUIDs OIDsRegistered

UUIDs(in OID

repository)

URI or Uniform Resource Locator

• A string that identifies a name or internet resource. There are two types of URI and a resource can be addressed by both types simultaneously.– URL (Uniform Resource Locator) is a widely used

type of URI that identifies and provides a means for retrieving an internet resource.

– URN (Uniform Resource Name) is a mechanism for naming or finding a resource and associating meta-information with a name. The presence of a URN for a resource does not necessarily imply that the resource is available. A URN can be used to represent an OID. The joint ISO-ITU OID for Ireland in URN syntax is

– urn:oid:2.16.382

Thank youDamon.berry@dit.ie