CN106295393A

Electronic prescription operation method, device and system

Abstract

The invention discloses an electronic prescription operation method and device and an electronic prescription operation system. The electronic prescription operation method comprises the steps that a client side sends an electronic prescription operation request of a user to an electronic prescription management system; after the electronic prescription management system receives the operation request, by means of interaction with a hospital information system, the client side and/or a third party, the operation request is processed, wherein when both interaction parties taking part in processing the operation request transmit private data of the user, a sender uses a sharing quantum secrete for encryption, and a receiver uses a corresponding sharing quantum for decryption; the sharing quantum secretes are acquired by the sender and the receiver through a quantum secrete distribution protocol in a negotiation mode in advance. In this way, on one hand, the safety of the private data of the user is effectively guaranteed through the characters of the quantum secrete; on the other hand, anonymity authentication can be achieved, the certificate authority process is simplified, and the execution efficiency can be improved.

Term

8.8 yearsto projected expiry

Projected expiry 26 June 2035, counted from filing; an application has no term until it is granted.

  1. Priority and filed
  2. Published
  3. Today
  4. Projected expiry

49 claims: 26 independent, 23 dependent

  1. 1
    An electronic prescription operation method, which is characterized by comprising:a client sends a user's electronic prescription operation request to an electronic prescription management system;after receiving the operation request, the electronic prescription management system communicates with the hospital information system, the client and/or The interaction process between the third parties completes the processing of the operation request;wherein, when the two interacting parties involved in processing the operation request transmit user privacy data, the sender uses shared quantum key encryption, and the receiver uses the corresponding sharing Quantum key decryption;the shared quantum key is obtained by the sender and the receiver in advance through a quantum key distribution protocol. 1. 一种电子处方操作方法,其特征在于,包括: 客户端向电子处方管理系统发送用户的电子处方操作请求; 电子处方管理系统接收所述操作请求后,通过与医院信息系统、客户端和/或第三方 之间的交互过程,完成对所述操作请求的处理; 其中,参与处理所述操作请求的交互双方在传输用户隐私数据时,发送方采用共享量 子密钥加密,接收方采用相应的共享量子密钥解密;所述共享量子密钥是所述发送方与所 述接收方预先通过量子密钥分发协议协商获取的。
  2. 20
    23. 根据权利要求1-22任一项所述的电子处方操作方法,其特征在于,参与处理所述 操作请求的交互双方之间的数据传输是基于HTTPS连接的,并且交互双方各自所采用的数 字证书均为可信任第三方颁发。 twenty three. The electronic prescription operation method according to any one of claims 1-22, characterized in that the data transmission between the interactive parties involved in processing the operation request is based on HTTPS connection, and the digital certificates used by the interactive parties All are issued by a trusted third party.
  3. 21
    24. 根据权利要求1-22任一项所述的电子处方操作方法,其特征在于,参与处理所述 操作请求的交互双方之间在通过量子密钥分发协议协商共享量子密钥之前,执行双向身份 认证,并在认证通过后启动所述协商过程。 twenty four. The electronic prescription operation method according to any one of claims 1-22, wherein the two interacting parties involved in processing the operation request perform two-way identity authentication before negotiating to share a quantum key through a quantum key distribution protocol. , And start the negotiation process after the authentication is passed.
  4. 22
    25. An electronic prescription operation device, characterized by comprising:an operation request sending unit, used for a client to send a user's electronic prescription operation request to an electronic prescription management system;an operation request processing unit, used for an electronic prescription management system to receive the operation After the request, through the interaction process with the hospital information system, the client and/or the third party, the processing of the operation request is completed;wherein, the operation request sending unit and the operation request processing unit each include a quantum secret The key encryption and decryption sub-unit is used for both parties involved in processing the operation request when transmitting user privacy data, the sender uses the shared quantum key for encryption, and the receiver uses the corresponding shared quantum key for decryption;the shared quantum key It is obtained by the sender and the receiver through a quantum key distribution protocol negotiation in advance. 25. 一种电子处方操作装置,其特征在于,包括: 操作请求发送单元,用于客户端向电子处方管理系统发送用户的电子处方操作请求; 操作请求处理单元,用于电子处方管理系统接收所述操作请求后,通过与医院信息系 统、客户端和/或第三方之间的交互过程,完成对所述操作请求的处理; 其中,所述操作请求发送单元和所述操作请求处理单元各自包括量子密钥加解密子单 元,用于参与处理所述操作请求的交互双方在传输用户隐私数据时,发送方采用共享量子 密钥加密,接收方采用相应的共享量子密钥解密;所述共享量子密钥是所述发送方与所述 接收方预先通过量子密钥分发协议协商获取的。
  5. 27
    31. A request method for establishing a binding relationship, characterized in that the method is implemented on the client side, and includes:using a preset hash algorithm to calculate a hash value of user privacy data used to verify user identity, so The user refers to a user who initiates a binding relationship establishment request;a binding relationship establishment request is sent to an electronic prescription management system, and the request carries the user's identity, the hash value, and the information of the hospital for which the binding relationship is to be established The identification of the system and the identification of the patient of the user corresponding to the hospital information system, wherein at least the hash value is encrypted using a shared quantum key with the electronic prescription management system. 31. 一种用于建立绑定关系的请求方法,其特征在于,所述方法在客户端实施,包括: 采用预设的散列算法,计算用于验证用户身份的用户隐私数据的散列值,所述用户是 指发起绑定关系建立请求的用户; 向电子处方管理系统发送绑定关系建立请求,所述请求中携带所述用户的标识、所述 散列值、待建立绑定关系的医院信息系统的标识、以及所述用户对应于所述医院信息系统 的患者标识,其中,至少所述散列值是采用与所述电子处方管理系统之间的共享量子密钥 加密的。
  6. 28
    32. A request device for establishing a binding relationship, characterized in that the device is deployed on a client, and includes:a hash value calculation unit, configured to use a preset hash algorithm to calculate a user for verifying user identity The hash value of the private data;the binding request encryption sending unit, which sends a binding relationship establishment request to the electronic prescription management system, the request carrying the user's identity, the hash value, and the hospital whose binding relationship is to be established The identification of the information system and the patient identification of the user corresponding to the hospital information system, wherein at least the hash value is encrypted using a shared quantum key with the electronic prescription management system. 32. 一种用于建立绑定关系的请求装置,其特征在于,所述装置部署于客户端,包括: 散列值计算单元,用于采用预设的散列算法,计算用于验证用户身份的用户隐私数据 的散列值; 绑定请求加密发送单元,向电子处方管理系统发送绑定关系建立请求,所述请求中携 带所述用户的标识、所述散列值、待建立绑定关系的医院信息系统的标识、以及所述用户对 应于所述医院信息系统的患者标识,其中,至少所述散列值是采用与所述电子处方管理系 统之间的共享量子密钥加密的。
  7. 29
    33. A method for establishing a binding relationship, characterized in that the method is implemented in an electronic prescription management system, and includes:receiving a binding relationship establishment request sent by a client;using a shared quantum with the client The key performs corresponding decryption operations on the information carried in the request, and obtains the user ID, the hash value, the hospital information system ID, and the patient ID;according to the obtained hospital information system ID, the hash value, and The binding verification request of the patient identification is forwarded to the corresponding hospital information system, wherein at least the hash value is encrypted using a shared quantum key with the hospital information system;receiving the information sent by the hospital information system The verification passes the response, and the mapping relationship between the user ID, the hospital information system ID and the patient ID is established, and the binding operation is completed. 33. —种用于建立绑定关系的方法,其特征在于,所述方法在电子处方管理系统中实 施,包括: 接收客户端发送的绑定关系建立请求; 采用与所述客户端之间的共享量子密钥对所述请求中携带的信息执行相应的解密操 作,获取用户标识、散列值、医院信息系统标识、以及患者标识; 根据获取的医院信息系统标识,将携带所述散列值、以及所述患者标识的绑定验证请 求转发给相应的医院信息系统,其中至少所述散列值是采用与所述医院信息系统之间的共 享量子密钥加密的; 接收所述医院信息系统发送的验证通过应答,并建立所述用户标识、所述医院信息系 统标识与所述患者标识之间的映射关系,完成绑定操作。
  8. 30
    34. A device for establishing a binding relationship, characterized in that the device is deployed in an electronic prescription management system, and includes:a binding establishment request receiving unit, configured to receive a binding relationship establishment request sent by a client;and binding establishment The request decryption unit is configured to use the shared quantum key with the client to perform a corresponding decryption operation on the information carried in the request, and obtain a user ID, a hash value, a hospital information system ID, and a patient ID;The binding verification request encryption forwarding unit is configured to forward the binding verification request carrying the hash value and the patient identification to the corresponding hospital information system according to the acquired hospital information system identifier, wherein at least the hash value The value is encrypted using the shared quantum key with the hospital information system;the binding relationship establishment unit is used to receive the verification pass response sent by the hospital information system, and establish the user identification and the hospital information The mapping relationship between the system identifier and the patient identifier completes the binding operation. 34. 一种用于建立绑定关系的装置,其特征在于,所述装置部署于电子处方管理系统, 包括: 绑定建立请求接收单元,用于接收客户端发送的绑定关系建立请求; 绑定建立请求解密单元,用于采用与所述客户端之间的共享量子密钥对所述请求中 携带的信息执行相应的解密操作,获取用户标识、散列值、医院信息系统标识、以及患者标 识; 绑定验证请求加密转发单元,用于根据获取的医院信息系统标识,将携带所述散列值、 以及所述患者标识的绑定验证请求转发给相应的医院信息系统,其中至少所述散列值是采 用与所述医院信息系统之间的共享量子密钥加密的; 绑定关系建立单元,用于接收所述医院信息系统发送的验证通过应答,并建立所述用 户标识、所述医院信息系统标识与所述患者标识之间的映射关系,完成绑定操作。
  9. 31
    35. A method for verifying a binding relationship, characterized in that the method is implemented in a hospital information system, and includes:35. 一种用于验证绑定关系的方法,其特征在于,所述方法在医院信息系统中实施,包 括: Receiving a binding verification request sent by an electronic prescription management system;using the shared quantum key with the electronic prescription management system to perform a corresponding decryption operation on the information carried in the request to obtain a hash value and a patient identification;According to the received patient identification, look up the preset user privacy data used to verify the user identity, use the preset hash algorithm to calculate the hash value of the user privacy data found, and determine whether the calculated hash value is different from the Whether the hash values obtained in the request are consistent;if they are consistent, a verification pass response is sent to the electronic prescription management system. 接收电子处方管理系统发送的绑定验证请求; 采用与所述电子处方管理系统之间的共享量子密钥对所述请求中携带的信息执行相 应的解密操作,获取散列值、以及患者标识; 根据接收的患者标识查找预置的、用于验证用户身份的用户隐私数据,采用预设的散 列算法计算找到的用户隐私数据的散列值,并判断计算得到的散列值与从所述请求中获取 的散列值是否一致; 若一致,向所述电子处方管理系统发送验证通过应答。
  10. 32
    36. A device for verifying a binding relationship, characterized in that the method is deployed in a hospital information system and includes:a binding verification request receiving unit for receiving a binding verification request sent by an electronic prescription management system;binding verification The request decryption unit is configured to use the shared quantum key with the electronic prescription management system to perform corresponding decryption operations on the information carried in the request to obtain the hash value and the patient identification;hash value calculation and comparison The unit is used to find preset user privacy data used to verify user identity according to the received patient identification, calculate the hash value of the user privacy data found by using a preset hash algorithm, and determine the calculated hash value Whether it is consistent with the hash value obtained from the request;the verification pass response unit is used to send a verification pass response to the electronic prescription management system when the output of the hash value calculation and comparison unit is yes. 36. —种用于验证绑定关系的装置,其特征在于,所述方法部署于医院信息系统,包 括: 绑定验证请求接收单元,用于接收电子处方管理系统发送的绑定验证请求; 绑定验证请求解密单元,用于采用与所述电子处方管理系统之间的共享量子密钥对所 述请求中携带的信息执行相应的解密操作,获取散列值、以及患者标识; 散列值计算比对单元,用于根据接收的患者标识查找预置的、用于验证用户身份的用 户隐私数据,采用预设的散列算法计算找到的用户隐私数据的散列值,并判断计算得到的 散列值与从所述请求中获取的散列值是否一致; 验证通过应答单元,用于当所述散列值计算比对单元的输出为是时,向所述电子处方 管理系统发送验证通过应答。
  11. 33
    37. A request method for updating a shared key, characterized in that the method is implemented on a client side, and includes:generating a new shared key for the user to be updated with the shared key and the hospital information system, and using the user and the hospital information system to generate a new shared key. The shared key currently used by the hospital information system encrypts the new shared key;sends a shared key update request to the electronic prescription management system, the request carries the user's identity and the hospital information system's identity And the encrypted new shared key, wherein at least the encrypted new shared key is encrypted using a shared quantum key with the electronic prescription management system. 37. 一种用于更新共享密钥的请求方法,其特征在于,所述方法在客户端实施,包括: 为待更新共享密钥的用户和医院信息系统生成新共享密钥,并采用所述用户与所述医 院信息系统当前采用的共享密钥对所述新共享密钥加密; 向电子处方管理系统发送共享密钥更新请求,所述请求中携带所述用户的标识、所述 医院信息系统的标识、以及所述加密后的新共享密钥,其中至少所述加密后的新共享密钥 是采用与所述电子处方管理系统之间的共享量子密钥加密的。 3& A request device for updating a shared key, characterized in that the device is deployed on the client, and includes: a new shared key generating unit, used to generate a new shared key for the user and the hospital information system to be updated The shared key is used to encrypt the new shared key with the shared key currently used by the user and the hospital information system;the key update request encryption sending unit is used to send the shared key update to the electronic prescription management system Request, the request carries the identity of the user, the identity of the hospital information system, and the encrypted new shared key, wherein at least the encrypted new shared key is used with the electronic prescription The shared quantum key between management systems is encrypted. 3& —种用于更新共享密钥的请求装置,其特征在于,所述装置部署于客户端,包括: 新共享密钥生成单元,用于为待更新共享密钥的用户和医院信息系统生成新共享密 钥,并采用所述用户与所述医院信息系统当前采用的共享密钥对所述新共享密钥加密; 密钥更新请求加密发送单元,用于向电子处方管理系统发送共享密钥更新请求,所述 请求中携带所述用户的标识、所述医院信息系统的标识、以及所述加密后的新共享密钥,其 中至少所述加密后的新共享密钥是采用与所述电子处方管理系统之间的共享量子密钥加 密的。
  12. 34
    39. A method for forwarding a shared key update request, characterized in that the method is implemented in an electronic prescription management system, and includes:receiving a shared key update request sent by a client;The shared quantum key performs corresponding decryption operations on the information carried in the request, and obtains the ciphertext of the new shared key, the user ID, and the hospital information system ID;according to the pre-established binding between the user and the hospital information system Relationship, find the patient ID corresponding to the user ID and the hospital information system ID;according to the acquired hospital information system ID, update the ciphertext carrying the new shared key and the shared key of the patient ID The request is forwarded to the corresponding hospital information system, where at least the ciphertext of the new shared key is used and 39. 一种用于转发共享密钥更新请求的方法,其特征在于,所述方法在电子处方管理系 统中实施,包括: 接收客户端发送的共享密钥更新请求; 采用与所述客户端之间的共享量子密钥对所述请求中携带的信息执行相应的解密操 作,获取新共享密钥的密文、用户标识、以及医院信息系统标识; 根据预先建立的用户与医院信息系统之间的绑定关系,查找与所述用户标识和所述医 院信息系统标识对应的患者标识; 根据获取的医院信息系统标识,将携带所述新共享密钥的密文、以及所述患者标识的 共享密钥更新请求转发给相应的医院信息系统,其中至少所述新共享密钥的密文是采用与 The shared quantum key between the hospital information systems is encrypted. 所述医院信息系统之间的共享量子密钥加密的。
  13. 35
    40. A device for forwarding a shared key update request, characterized in that the device is deployed in an electronic prescription management system, and includes:a key update request receiving unit for receiving a shared key update request sent by a client;The key update request decryption unit is used to use the shared quantum key with the client to perform corresponding decryption operations on the information carried in the request, and obtain the ciphertext of the new shared key, user identification, and hospital information System identification;The patient identification search unit is used to search for the patient identification corresponding to the user identification and the hospital information system identification according to the pre-established binding relationship between the user and the hospital information system;the key update request is encrypted and forwarded Unit for forwarding the ciphertext carrying the new shared key and the shared key update request of the patient identification to the corresponding hospital information system according to the acquired hospital information system identification, wherein at least the new shared secret The ciphertext of the key is encrypted using a shared quantum key with the hospital information system. 40. 一种用于转发共享密钥更新请求的装置,其特征在于,所述装置部署于电子处方管 理系统,包括: 密钥更新请求接收单元,用于接收客户端发送的共享密钥更新请求; 密钥更新请求解密单元,用于采用与所述客户端之间的共享量子密钥对所述请求中 携带的信息执行相应的解密操作,获取新共享密钥的密文、用户标识、以及医院信息系统标 识; 患者标识查找单元,用于根据预先建立的用户与医院信息系统之间的绑定关系,查找 与所述用户标识和所述医院信息系统标识对应的患者标识; 密钥更新请求加密转发单元,用于根据获取的医院信息系统标识,将携带所述新共享 密钥的密文、以及所述患者标识的共享密钥更新请求转发给相应的医院信息系统,其中至 少所述新共享密钥的密文是采用与所述医院信息系统之间的共享量子密钥加密的。
  14. 36
    41. A method for updating a shared key, characterized in that the method is implemented in a hospital information system, and includes:receiving a shared key update request sent by an electronic prescription management system;The shared quantum key performs corresponding decryption operations on the information carried in the request to obtain the ciphertext of the new shared key and the patient identification;the shared key corresponding to the patient identification is used to pair the new shared key Decrypt the ciphertext of, and obtain a new shared key corresponding to the patient identification, that is, a new shared key between users corresponding to the patient identification. 41. 一种用于更新共享密钥的方法,其特征在于,所述方法在医院信息系统中实施,包 括: 接收电子处方管理系统发送的共享密钥更新请求; 采用与所述电子处方管理系统之间的共享量子密钥对所述请求中携带的信息执行相 应的解密操作,获取新共享密钥的密文、以及患者标识; 采用与所述患者标识对应的共享密钥对所述新共享密钥的密文解密,获取与所述患者 标识对应的新共享密钥,即与所述患者标识对应用户之间的新共享密钥。
  15. 37
    42. A device for updating a shared key, characterized in that the device is deployed in a hospital information system and includes:a forwarding request receiving unit for receiving a shared key update request sent by an electronic prescription management system;a forwarding request decryption unit , Used to use the shared quantum key with the electronic prescription management system to perform corresponding decryption operations on the information carried in the request, to obtain the ciphertext of the new shared key and the patient identification;new key acquisition unit , Used to decrypt the ciphertext of the new shared key by using the shared key corresponding to the patient identification, and obtain the new shared key corresponding to the patient identification, that is, the exchange between users corresponding to the patient identification New shared key. 42. —种用于更新共享密钥的装置,其特征在于,所述装置部署于医院信息系统,包 括: 转发请求接收单元,用于接收电子处方管理系统发送的共享密钥更新请求; 转发请求解密单元,用于采用与所述电子处方管理系统之间的共享量子密钥对所述请 求中携带的信息执行相应的解密操作,获取新共享密钥的密文、以及患者标识; 新密钥获取单元,用于采用与所述患者标识对应的共享密钥对所述新共享密钥的密文 解密,获取与所述患者标识对应的新共享密钥,即与所述患者标识对应用户之间的新共享 密钥。
  16. 38
    43. A request method for obtaining an electronic prescription, characterized in that the method is implemented on a client side, and includes:sending an electronic prescription obtaining request to an electronic prescription management system, the request carrying the identification of the user who initiated the request, The identification of the hospital information system that provides the electronic prescription and the identification of the electronic prescription;receiving the electronic prescription sent by the electronic prescription management system;using the shared quantum key with the electronic prescription management system to decrypt the received electronic prescription, and The decrypted electronic prescription is decrypted again by using the shared key between the user and the hospital information system to obtain the original information of the electronic prescription. 43. 一种用于获取电子处方的请求方法,其特征在于,所述方法在客户端实施,包括: 向电子处方管理系统发送电子处方获取请求,所述请求中携带发起所述请求的用户的 标识、提供电子处方的医院信息系统的标识、以及电子处方标识; 接收所述电子处方管理系统发送的电子处方; 采用与所述电子处方管理系统之间的共享量子密钥对接收的电子处方解密,并采用所 述用户与所述医院信息系统之间的共享密钥对解密后的电子处方再次解密,获取所述电子 处方的原始信息。
  17. 39
    44. A request device for obtaining an electronic prescription, characterized in that the device is deployed on a client side, and includes:a prescription obtaining request sending unit for sending an electronic prescription obtaining request to an electronic prescription management system, the request carrying an initiation The identification of the requested user, the identification of the hospital information system that provides the electronic prescription, and the identification of the electronic prescription;a prescription information receiving unit for receiving the electronic prescription sent by the electronic prescription management system;44. 一种用于获取电子处方的请求装置,其特征在于,所述装置部署于客户端,包括: 处方获取请求发送单元,用于向电子处方管理系统发送电子处方获取请求,所述请求 中携带发起所述请求的用户的标识、提供电子处方的医院信息系统的标识、以及电子处方 标识; 处方信息接收单元,用于接收所述电子处方管理系统发送的电子处方; The original prescription acquisition unit is used to decrypt the received electronic prescription using the shared quantum key with the electronic prescription management system, and to decrypt the received electronic prescription using the shared key between the user and the hospital information system The electronic prescription is decrypted again, and the original information of the electronic prescription is obtained. 原始处方获取单元,用于采用与所述电子处方管理系统之间的共享量子密钥对接收的 电子处方解密,并采用所述用户与所述医院信息系统之间的共享密钥对解密后的电子处方 再次解密,获取所述电子处方的原始信息。
  18. 40
    45. A method for forwarding electronic prescriptions, characterized in that the method is implemented in an electronic prescription management system, including:receiving an electronic prescription acquisition request sent by a client, and acquiring the user identification and hospital information system carried in the request Identification and electronic prescription identification;determine whether the electronic prescription corresponding to the user identification and the electronic prescription identification is stored, if yes, obtain the stored electronic prescription, if not, obtain the electronic prescription from the hospital information system Using the shared quantum key with the client to encrypt the acquired electronic prescription and send it to the client;wherein, the acquiring the electronic prescription from the hospital information system includes: Establish the binding relationship between the user and the hospital information system, search for the patient ID corresponding to the user ID and the hospital information system ID;and according to the hospital information system ID, carry the patient ID and the hospital information system ID The electronic prescription acquisition request of the electronic prescription identification is sent to the corresponding hospital information system;the electronic prescription corresponding to the user identification and the electronic prescription identification sent by the hospital information system is received;Decrypt the received electronic prescription as the electronic prescription obtained from the hospital information system, and store the electronic prescription. 45. —种用于转发电子处方的方法,其特征在于,所述方法在电子处方管理系统中实 施,包括: 接收客户端发送的电子处方获取请求,获取所述请求中携带的用户标识、医院信息系 统标识、以及电子处方标识; 判断是否存储了与所述用户标识和所述电子处方标识对应的电子处方,若是,获取所 述已存储的电子处方,若否,从医院信息系统获取所述电子处方; 采用与所述客户端之间的共享量子密钥,对所述获取的电子处方加密、并发送给所述 客户端; 其中,所述从医院信息系统获取所述电子处方,包括: 根据预先建立的用户与医院信息系统之间的绑定关系,查找与所述用户标识和所述医 院信息系统标识对应的患者标识;并根据所述医院信息系统标识,将携带所述患者标识和 所述电子处方标识的电子处方获取请求发送给相应的医院信息系统; 接收所述医院信息系统发送的、与所述用户标识和所述电子处方标识对应的电子处 方; 采用与所述医院信息系统之间的共享量子密钥对接收的所述电子处方解密,作为所述 从医院信息系统获取的电子处方,并存储所述电子处方。
  19. 41
    46. A device for forwarding electronic prescriptions, characterized in that the device is deployed in an electronic prescription management system, and includes:a prescription acquisition request receiving unit, configured to receive an electronic prescription acquisition request sent by a client, and the request carries The user ID, the hospital information system ID, and the electronic prescription ID of the electronic prescription;the electronic prescription acquisition unit is used to determine whether the electronic prescription corresponding to the user ID and the electronic prescription ID is stored, and if so, to obtain the stored electronic prescription. Prescription, if not, obtain the electronic prescription from the hospital information system;the electronic prescription encryption forwarding unit is used to use the shared quantum key with the client to encrypt the obtained electronic prescription and send it to the The client. 46. 一种用于转发电子处方的装置,其特征在于,所述装置部署于电子处方管理系统, 包括: 处方获取请求接收单元,用于接收客户端发送的电子处方获取请求,获取所述请求中 携带的用户标识、医院信息系统标识、以及电子处方标识; 电子处方获取单元,用于判断是否存储了与所述用户标识和所述电子处方标识对应的 电子处方,若是,获取所述已存储的电子处方,若否,从医院信息系统获取所述电子处方; 电子处方加密转发单元,用于采用与所述客户端之间的共享量子密钥,对所述获取的 电子处方加密、并发送给所述客户端。
  20. 42
    47. A method for providing electronic prescriptions, characterized in that the method is implemented in a hospital information system, and includes:receiving an electronic prescription acquisition request sent by an electronic prescription management system, and acquiring the patient identification and the electronic prescription carried in the request Identification;find the electronic prescription corresponding to the patient identification and the electronic prescription identification;use the shared key corresponding to the patient identification to encrypt the electronic prescription, and use the shared quantum with the electronic prescription management system The encrypted electronic prescription is re-encrypted by the key and sent to the electronic prescription management system. 47. 一种用于提供电子处方的方法,其特征在于,所述方法在医院信息系统中实施,包 括: 接收电子处方管理系统发送的电子处方获取请求,获取所述请求中携带的患者标识和 电子处方标识; 查找与所述患者标识和所述电子处方标识对应的电子处方; 采用与所述患者标识对应的共享密钥对所述电子处方加密,采用与所述电子处方管 理系统之间的共享量子密钥对加密后的电子处方再次加密,并发送给所述电子处方管理系 统。 4& A device for providing electronic prescriptions, characterized in that the device is deployed in a hospital information system, and includes: a forwarding prescription acquisition request receiving unit, configured to receive an electronic prescription acquisition request sent by an electronic prescription management system, and obtain the The patient identification and electronic prescription identification carried in the request;4&一种用于提供电子处方的装置,其特征在于,所述装置部署于医院信息系统,包 括: 转发处方获取请求接收单元,用于接收电子处方管理系统发送的电子处方获取请求, 获取所述请求中携带的患者标识和电子处方标识; The electronic prescription search unit is used to search for the electronic prescription corresponding to the patient identification and the electronic prescription identification;the electronic prescription encryption sending unit is used to encrypt the electronic prescription by using the shared key corresponding to the patient identification, The encrypted electronic prescription is re-encrypted by using the shared quantum key with the electronic prescription management system and sent to the electronic prescription management system. 电子处方查找单元,用于查找与所述患者标识和所述电子处方标识对应的电子处方; 电子处方加密发送单元,用于采用与所述患者标识对应的共享密钥对所述电子处方加 密,采用与所述电子处方管理系统之间的共享量子密钥对加密后的电子处方再次加密,并 发送给所述电子处方管理系统。
  21. 43
    49. A request method for authorizing a third party, characterized in that the method is implemented on a client terminal, and includes:sending a request for authorizing a third party to an electronic prescription management system, the request carrying the identity of the user who initiated the request, The third-party identification and the electronic prescription identification authorized to view by the third party;receiving the electronic prescription sent by the electronic prescription management system;using the shared quantum key with the electronic prescription management system to decrypt the received electronic prescription, and using The shared key between the user and the hospital information system that provides the electronic prescription decrypts the decrypted electronic prescription again to obtain the original information of the electronic prescription;adopts the first third party with a corresponding decryption key The encryption key encrypts the original information of the electronic prescription, and sends the electronic prescription forwarding request carrying the third-party identification and the ciphertext of the electronic prescription to the electronic prescription management system, wherein at least the electronic prescription The ciphertext is encrypted using a shared quantum key with the electronic prescription management system. 49. 一种用于授权第三方的请求方法,其特征在于,所述方法在客户端实施,包括: 向电子处方管理系统发送授权第三方请求,所述请求中携带发起所述请求的用户的标 识、第三方标识、以及授权第三方查看的电子处方标识; 接收所述电子处方管理系统发送的电子处方; 采用与所述电子处方管理系统之间的共享量子密钥对接收的电子处方解密,并采用所 述用户与提供所述电子处方的医院信息系统之间的共享密钥对解密后的电子处方再次解 密,获取所述电子处方的原始信息; 采用所述第三方具有对应解密密钥的第一加密密钥对所述电子处方的原始信息加密, 并将携带所述第三方标识、以及所述电子处方密文的电子处方转发请求发送给所述电子处 方管理系统,其中,至少所述电子处方密文是采用与所述电子处方管理系统之间的共享量 子密钥加密的。
  22. 44
    50. A request device for authorizing a third party, characterized in that the device is deployed on a client, and includes:an authorized third party request sending unit for sending a request for authorizing a third party to an electronic prescription management system, and the request carries The identification of the user who initiated the request, the third-party identification, and the electronic prescription identification authorized for the third party to view;an electronic prescription receiving unit for receiving the electronic prescription sent by the electronic prescription management system;an original prescription acquiring unit for using The shared quantum key with the electronic prescription management system decrypts the received electronic prescription, and uses the shared key between the user and the hospital information system that provides the electronic prescription to decrypt the decrypted electronic prescription again , Obtain the original information of the electronic prescription;an electronic prescription encryption sending unit for encrypting the original information of the electronic prescription by using the first encryption key of the third party with a corresponding decryption key, and carrying the first encryption key The tripartite identification and the electronic prescription forwarding request of the electronic prescription ciphertext are sent to the electronic prescription management system, wherein at least the electronic prescription ciphertext is encrypted using a shared quantum key with the electronic prescription management system of. 50. 一种用于授权第三方的请求装置,其特征在于,所述装置部署于客户端,包括: 授权第三方请求发送单元,用于向电子处方管理系统发送授权第三方请求,所述请求 中携带发起所述请求的用户的标识、第三方标识、以及授权第三方查看的电子处方标识; 电子处方接收单元,用于接收所述电子处方管理系统发送的电子处方; 原始处方获取单元,用于采用与所述电子处方管理系统之间的共享量子密钥对接收的 电子处方解密,并采用所述用户与提供所述电子处方的医院信息系统之间的共享密钥对解 密后的电子处方再次解密,获取所述电子处方的原始信息; 电子处方加密发送单元,用于采用所述第三方具有对应解密密钥的第一加密密钥对所 述电子处方的原始信息加密,并将携带所述第三方标识、以及所述电子处方密文的电子处 方转发请求发送给所述电子处方管理系统,其中,至少所述电子处方密文是采用与所述电 子处方管理系统之间的共享量子密钥加密的。
  23. 45
    51. An electronic prescription forwarding method for authorizing a third party, characterized in that the method is implemented in an electronic prescription management system, and includes:receiving a third-party authorization request sent by a client, obtaining a user identification carried in the request, Third-party identification and electronic prescription identification;using the shared quantum key with the client to encrypt the electronic prescription corresponding to the user identification and the electronic prescription identification, and sending to the client;receiving The electronic prescription forwarding request sent by the client;using the shared quantum key with the client to perform the corresponding decryption operation on the information carried in the request to obtain the third-party identification and the electronic prescription;using the shared quantum key with the client The shared quantum key between the three parties encrypts the electronic prescription, and sends the encrypted electronic prescription to the corresponding third party according to the third-party identification. 51. 一种用于授权第三方的电子处方转发方法,其特征在于,所述方法在电子处方管理 系统中实施,包括: 接收客户端发送的授权第三方请求,获取所述请求中携带的用户标识、第三方标识、以 及电子处方标识; 采用与所述客户端之间的共享量子密钥,对与所述用户标识和所述电子处方标识对应 的电子处方加密,并发送给所述客户端; 接收客户端发送的电子处方转发请求; 采用与所述客户端之间的共享量子密钥对所述请求中携带的信息执行相应的解密操 作,获取第三方标识、以及电子处方; 采用与所述第三方之间的共享量子密钥对所述电子处方加密,并根据所述第三方标 识,将加密后的电子处方发送给相应的第三方。
  24. 46
    52. An electronic prescription forwarding device for authorizing a third party, characterized in that the device is deployed in an electronic prescription management system, and includes:52. 一种用于授权第三方的电子处方转发装置,其特征在于,所述装置部署于电子处方 管理系统,包括: The authorized third-party request receiving unit is used to receive the authorized third-party request sent by the client, and obtain the user ID, the third-party ID, and the electronic prescription ID carried in the request;the electronic prescription encryption forwarding unit is used to use the The shared quantum key between the clients encrypts the electronic prescription corresponding to the user ID and the electronic prescription ID, and sends it to the client;the prescription forwarding request receiving unit is used to receive the electronic prescription sent by the client Prescription forwarding request;prescription forwarding request decryption unit, configured to use the shared quantum key with the client to perform corresponding decryption operations on the information carried in the request to obtain a third-party identification and electronic prescription;electronic prescription The third-party sending unit is configured to encrypt the electronic prescription using the shared quantum key with the third party, and send the encrypted electronic prescription to the corresponding third party according to the third-party identifier. 授权第三方请求接收单元,用于接收客户端发送的授权第三方请求,获取所述请求中 携带的用户标识、第三方标识、以及电子处方标识; 电子处方加密转发单元,用于采用与所述客户端之间的共享量子密钥,对与所述用户 标识和所述电子处方标识对应的电子处方加密,并发送给所述客户端; 处方转发请求接收单元,用于接收客户端发送的电子处方转发请求; 处方转发请求解密单元,用于采用与所述客户端之间的共享量子密钥对所述请求中携 带的信息执行相应的解密操作,获取第三方标识、以及电子处方; 电子处方发送第三方单元,用于采用与所述第三方之间的共享量子密钥对所述电子处 方加密,并根据所述第三方标识,将加密后的电子处方发送给相应的第三方。
  25. 47
    53. A method for obtaining an authorized prescription, characterized in that the method is implemented in a third party, and includes:receiving an electronic prescription sent by an electronic prescription management system;using a shared quantum key pair with the electronic prescription management system The received electronic prescription is decrypted, and the decrypted electronic prescription is decrypted again by using the decryption key corresponding to the first encryption key used by the client that initiated the authorization operation to obtain the original information of the electronic prescription. 53. 一种用于获取授权处方的方法,其特征在于,所述方法在第三方实施,包括: 接收电子处方管理系统发送的电子处方; 采用与所述电子处方管理系统之间的共享量子密钥对接收的电子处方解密,并采用与 发起授权操作的客户端所采用的第一加密密钥对应的解密密钥对解密后的电子处方再次 解密,获取所述电子处方的原始信息。
  26. 48
    54. A device for obtaining an authorized prescription, characterized in that the device is deployed in a third party, and includes:a third party receiving electronic prescription unit for receiving an electronic prescription sent by an electronic prescription management system;a third party decrypting an electronic prescription unit, Used for decrypting the received electronic prescription using the shared quantum key with the electronic prescription management system, and using the decryption key corresponding to the first encryption key used by the client that initiated the authorization operation to decrypt the The electronic prescription is decrypted again, and the original information of the electronic prescription is obtained. 54. 一种用于获取授权处方的装置,其特征在于,所述装置部署于第三方,包括: 第三方接收电子处方单元,用于接收电子处方管理系统发送的电子处方; 第三方解密电子处方单元,用于采用与所述电子处方管理系统之间的共享量子密钥对 接收的电子处方解密,并采用与发起授权操作的客户端所采用的第一加密密钥对应的解密 密钥对解密后的电子处方再次解密,获取所述电子处方的原始信息。
Independent claims26