Medical Apparatus Definition File Update Control
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The existing medical information systems face security risks due to the ability of external servers to freely update definition files intended for authorized servers, potentially leading to unauthorized modifications.
Innovation Solution
A medical information system configuration where the medical apparatus includes a client-side definition file storage unit and an updating unit that only allows authorized servers to update the definition file by acquiring and updating it from the server-side definition file, while rejecting any connection requests from external servers, ensuring secure and controlled data uploading.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If the server side is permitted to freely update the definition file, then the authorized server can update the definition file, but external servers different from the authorized server can also rewrite the definition file without permission
Solution Approach 1:
The patent introduces a client-side definition file storage unit as an intermediary between the server and the medical apparatus. This intermediary stores a local copy of the definition file and uses it to verify server identity and control uploading modes, preventing unauthorized servers from modifying the definition file while allowing authorized servers to update it.
Solution Approach 2:
The patent implements preliminary action by storing the definition file locally in the medical apparatus before actual data uploading occurs. This pre-stored definition file serves as a reference to verify server authorization and control the uploading process, ensuring that unauthorized modifications are prevented before they can affect data security.
2Reliability
If the medical apparatus holds a definition file that defines a mode of uploading, then the uploading process can be controlled, but the server side cannot freely update the definition file
Solution Approach 1:
The patent implements dynamics by making the definition file update mechanism conditional rather than static. The server can update the definition file, but only when the medical apparatus initiates a connection request. This dynamic control mechanism balances reliability (controlled updates) with adaptability (flexible updates when needed).
3Ease of operation
If the communication control unit accepts connection requests from the server, then the server can push the definition file, but security is compromised as external servers can also connect
Solution Approach 1:
The patent applies inversion by reversing the traditional client-server interaction model. Instead of the server pushing the definition file to the medical apparatus, the medical apparatus initiates connection requests to the server to fetch the definition file. This inversion ensures that only authorized servers can respond to these requests, eliminating security vulnerabilities while maintaining ease of operation.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
The communication control unit of the external communication apparatus requests a communication connection to the server. When a communication connection with the server is established, the communication control unit acquires the server side definition file from the server. The updating unit of the external communication apparatus updates the client side definition file with the server side definition file acquired by the communication control unit. The communication control unit of the external communication apparatus is configured to upload the medical apparatus side data to the server based on the client side definition file. Further, the communication control unit of the external communication apparatus is configured to reject a connection request from the server.