Hi all
I would be interested to hear how many of you are connecting to the
internet using a PC which is directly (by cable or modem) also
connected to your practice's clinical system, whatever that may be.
Any, none, few ? What are the general views on the security issues
of this ?
We are (finally - ongoing saga nearing conclusion) upgrading our
system to a reasonable PC network. I would like to have internet
access for about four of the PCs on the network, but I am taking
fright at the potential security issues including :
1.Patient data theoretically available to a determined hacker. This
always strikes me as unlikely as if IP address is allocated
dynamically how will they find us ? Also, if the database is on a
file server and the LAN is run with Novell - this needs to be
specifically gated to TCP/IP I hear, so this should prevent access -
or at least hinder it. Are these fair enough points ?
2.The digital virus risk. If we protect our workstations and server
with, say, Dr Solomons, would this be adequate ?
3. Also, what if we want to access BBSs such as PryMarie and others -
would this be considered safe enough.
I know NHS.net will allow managed access to the net through
appropriate firewalls, but we cannot wait for that. What I want to
know is what is the general view on whether the risk of connecting
these PCs is small enough
to be *acceptable* or is it really too risky ?
Paul
Dr Paul Miller
Bridgeton Health Centre, Glasgow
http://users.colloquium.co.uk/~p_miller/index.htm
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
|