AGFA HE/001132 manual Security Profiles, Association Level Security, Application Level Security

Page 72

HE/001132

Document No. 001132, Revision 2.0

Page 72 of 92

Agfa HealthCare

 

NodeID Livelink : 14140190

14 June, 2007

 

 

 

5SECURITY

5.1Security Profiles

The workstation supports the following profiles:

ØBasic TLS Secure Transport Connection Profile

ØBasic Network Address Management Profile

ØBasic Time synchronization Profile

5.2Association Level Security

"Workstation" supports secure associations using TLS. Associations are only allowed to be opened when they are received from an AE title that is known to the Workstation (i.e. the specific AE title has been configured in the "Workstation Service & Configuration Tool".).

5.3Application Level Security

"Workstation" supports application level security by means of role based access control. These user roles are associated to the Windows XP users. In the "Workstation Service & Configuration Tool", user roles can be assigned to certain accounts. Some of the user roles can be modified or new ones can be created by a user with the appropriate rights.

By default the workstation will be configured to automatically log the current user out after a certain period of non-activity.

Audit logging to an external repository is supported

"Workstation" can be configured to get its time from an NTP-server.

Image 72
Contents Agfa Healthcare Document Information 1 Network Services Supported 2 Media Services SupportedWorkflow Management Print ManagementTable of Contents RIS MppsGsps Gsps IODRevision Record Purpose and Intended Audience of this DocumentGeneral Remarks Integration and Validation ActivitiesAcronyms and Abbreviations Related DocumentsApplication Data Flow Diagram Implementation ModelDicom Modality Worklist query on Accession Number Functional Definition of Dicom Print Application EntityFunctional Definition of RIS Application Entity Dicom Modality WorklistSequencing of Real World Activities 2 sequencing constraintsAE Specifications Association Establishment Policies GeneralNumber of Associations Asynchronous Nature Implementation Identifying Information6 Dicom implementation Class and Version for Dicom Store AE 51.0.1.3Store Gsps Proposed Presentation Contexts 7 Association Reject ReasonsResult Response Reason/Diag 8 Presentation Contexts Proposed by Dicom Store AE Name List UID List NegotiationJpeg LLNH1 SCUDigital X-ray Image Storage for presentation SOP Class Digital X-ray Image Storage for processing SOP ClassDigital Mammography Image Storage for processing SOP Class Grayscale Softcopy Presentation State Storage SOP Class 9 Use of Gsps vs. Burning in the imageGraphic Layer Module 0070,0060 Graphic Layer Sequence PixelLeft Graphic Layer Module0070,0001 Graphic Annotation Sequence Graphic Annotation ModuleCircle Freehand InterpolatedPerpendicular Calibration ruler Distance is composed of a line with a text value Leg Length Difference Display Shutter Module RectangularStorage Commitment Push Model SOP Class 10 Dicom spatial transformation module attributesEventreport Action 13 Dicom Command Communication Failure Behavior 11 Storage Commitment N-ACTION InformationAction Type Name Attribute Tag Requirement Exception BehaviorAccepted Presentation Contexts SCPSOP Specific Conformance Storage Commitment SOP Class 15 Storage Commitment N-EVENT-REPORT expected InformationAction Type Attribute Tag Requirement Name SOP Specific Conformance Verification SOP Class 16 Storage Commitment N-EVENT-REPORT BehaviorEvent Type Name Behavior 18 SOP Classes for the Dicom Print Application Entity 19 Dicom Application ContextSOP Class SOP Class UID 22 Dicom implementation Class and Version for Dicom Print AE DPM1.XXCreate -RSP CREATE-RSPACTION-RQ ACTION-RSP DELETE-RQ DELETE-RSP Basic Film Session SOP Class 23 Presentation Contexts Proposed by Dicom Print AEDicom Create Action 24 Supported N-CREATE Attributes for a Basic Film Session25 N-CREATE Status Codes Attribute Name Tag ValueBasic Film Box SOP Class 26 N-ACTION Status CodesCreate 27 Supported N-CREATE Attributes for a Basic Film BoxBasic Grayscale Image Box SOP Class 28 N-CREATE Status Codes∙ N-SET Printer SOP Class 30 N-SET Status Codes∙ N-EVENT-REPORT ∙ N-GET31 Notification Event Information Event Type Event Type ID Attribute Tag Name32 Supported Attributes for N-GET on a Printer Attribute Name Tag Value33 Notification Event Information Event Type Name Event Type ID Attribute Tag34 Supported N-GET Attributes for a Print Job Attribute Name Tag Value Execution Status 2100Tag Name Supported Default 35 Supported Attributes for Presentation LUT36 N-CREATE confirmation and response Status codes HIGH, MED, LOWSee §2.2.1.4.1.4 RIS Application Entity Specification SOP Classes Supported 37 SOP Classes for the Dicom Store Application Entity38 Dicom Application Context 41 Dicom implementation Class and Version for Dicom RIS AESOP Specific Conformance Modality Worklist SOP Class 42 Presentation Contexts Proposed by Dicom Store AE44 Dicom Command Communication Failure Behavior Service Status Status CodeRequested Procedure 43 C-Find Response Status Handling BehaviorAttribute name Tag Broad Query Accession number Imaging Service RequestVisit Identification Visit StatusPatient Identification Patient DemographicPatient Medical User defined fields 46 List of User defined Dicom fieldsTag Description Mpps Application Entity Specification SOP Classes Supported Modality Performed Procedure Step 840.10008.3.1.2.3.3 Yes47 SOP Classes for the Dicom Store Application Entity 48 Dicom Application ContextCreate Mpps in Progress SET Mpps CompletedService Further Meaning Status Code Behavior SOP Specific Conformance Mpps52 Presentation Contexts Proposed by Dicom Store AE ∙ N-CREATE ∙ N-SET54 Dicom Command Communication Failure Behavior Performed Procedure Step Relationship55 Mpps N-CREATE/N-SET Request Identifier Attribute TagPerformed Procedure Step Information Progress CompletedImage Acquisition Results View Position Billing And Material Management Code ModuleRadiation Dose Module Agfa HealthCare Network Interfaces Physical Medium SupportAdditional Protocols Configuration AE Title/ Presentation Address Mapping Local AE TitlesRemote AE Title/ Presentation Address Mapping StorageCR image, Gsps Enabled DX image for processing or MG image for processingConfiguration of a RIS Query keys 1.2.2 RISConfiguration of RIS Mapping Protocol CodesExample of a Japanese SPS 4 Configurable Printer parameters Parameter Configurable Yes/noMpps Printing5 Configurable Parameters for Workstation Job descriptionDicom Print AE ParametersParameter Configurable Default value Yes/no Storage parametersSTORE-RQ Storage Commit ParametersModality Worklist Parameters Mpps ParametersPrint Parameters 1 Application Data Flow Diagram for Media Storage File Meta Information for Implementation Class and VersionOffline-Media Application Entity Specification Real World Activities Real World Activity Export to CD-RAgfa DTF1.0.XX FSC2 Necessary Values when performing an Anonymous Export Media Storage Application ProfileOptions Attribute Tag Set to …Media Configuration 840.10008.1.2Support for Extended Character Sets Security Profiles Association Level SecurityApplication Level Security IOD Contents AnnexesAttribute Name Tag Value Presence Source StudyAlways Series NeverEquipment Empty UID 1.2 CR CR Image IOD 2 IOD of Created CR Image SOP InstancesModule Reference Presence of Module VOI LUT AlwaysCR Modules 3 CR Modules of Created SOP InstancesSource Value Series KVP1.3 DX DX Image IOD DX Modules4 IOD of Created DX Image SOP Instances 5 DX Module of Created SOP InstancesOriginal Identity AlwaysYES Always ADCRectangle Always Acquisition Context Acquisition Context Sequence 0040 1.4 MG MG Image IOD 6 IOD of Created MG Image SOP InstancesLandscape Portrait AlwaysMG Modules Gsps Gsps IOD7 MG Module of Created SOP Instances 8 IOD of Created DX Image SOP InstancesGsps Modules 9 Gsps Modules of Created SOP InstancesGsps Always Scale to FIT AlwaysPixel Anap Attribute Mapping Modality Worklist Image IODModality Worklist Image IODGrayscale Image Consistency This document was approved by