A Data Grid for medical images has been developed at the Image Processing and Informatics Laboratory, USC to provide distribution and fault-tolerant storage of medical imaging studies across Internet2 and public domain. Although back-up policies and grid certificates guarantee privacy and authenticity of grid-access-points, there still lacks a method to guarantee the sensitive DICOM images have not been altered or corrupted during transmission across a public domain. This paper takes steps toward achieving full image transfer security within the Data Grid by utilizing DICOM image authentication and a HIPAA-compliant auditing system. The 3-D lossless digital signature embedding procedure involves a private 64 byte signature that is embedded into each original DICOM image volume, whereby on the receiving end the signature can to be extracted and verified following the DICOM transmission. This digital signature method has also been developed at the IPILab. The HIPAA-Compliant Auditing System (H-CAS) is required to monitor embedding and verification events, and allows monitoring of other grid activity as well. The H-CAS system federates the logs of transmission and authentication events at each grid-access-point and stores it into a HIPAA-compliant database. The auditing toolkit is installed at the local grid-access-point and utilizes Syslog [1], a client-server standard for log messaging over an IP network, to send messages to the H-CAS centralized database. By integrating digital image signatures and centralized logging capabilities, DICOM image integrity within the Medical Imaging and Informatics Data Grid can be monitored and guaranteed without loss to any image quality.
[1]
H. K. Huang,et al.
Authenticity and integrity of digital mammography images
,
2001,
IEEE Transactions on Medical Imaging.
[2]
Jessica J. Fridrich,et al.
Lossless Data Embedding—New Paradigm in Digital Watermarking
,
2002,
EURASIP J. Adv. Signal Process..
[3]
Bo Liu,et al.
Digital signature embedding (DSE) for medical image integrity in a data grid off-site backup archive
,
2005,
SPIE Medical Imaging.
[4]
Ian T. Foster,et al.
The data grid: Towards an architecture for the distributed management and analysis of large scientific datasets
,
2000,
J. Netw. Comput. Appl..
[5]
H. K. Huang,et al.
A HIPAA-Compliant Architecture for Securing Clinical Images
,
2005,
Journal of Digital Imaging.
[6]
Brent J Liu,et al.
Utilizing data grid architecture for the backup and recovery of clinical image data.
,
2005,
Computerized medical imaging and graphics : the official journal of the Computerized Medical Imaging Society.
[7]
H. K. Huang,et al.
The role of a Data Grid in worldwide imaging-based clinical trials
,
2007,
J. High Speed Networks.