文档介绍:医院信息系统信息安全建设
of rural drinking water sources, protection of drinking water sources in rural areas by the end of息平台的整体稳定性,要保障医院信息系统的安全运行,需要从技术层面和管理层面同时入手。
1,技术层面的安全策略与建设
信息中心机房为网络核心所在,也是核心设备存放之地。故一个安全稳定的机房环境对于信息系统来说是至关重要的。信息
of rural drinking water sources, protection of drinking water sources in rural areas by the end of the delimitation of the scope of protection, complete with warning signs, isolating network protection facilities
of rural drinking water sources, protection of drinking water sources in rural areas by the end of the delimitation of the scope of protection, complete with warning signs, isolating network protection facilities
of rural drinking water sources, protection of drinking water sources in rural areas by the end of the delimitation of the scope of protection, complete with warning signs, isolating network protection facilities
机房应采用异地双机房模式,场地应避免设在建筑物的高层或地下室,以及用水设备的下层或隔壁。应选择在具有防震、防风和防雨等能力的建筑内;同时必须配备7*24小时不间断的冗余电源供应。机房出入口应安排专人值守和门禁系统,控制、鉴别和记录进入的人员。需进入机房的来访人员应经过申请和审批流程,并限制和监控其活动范围。机房出入口应配备实时监控摄像和报警系统。有条件的,可以安装机房整体环境监控系统,集成监视和控制机房温湿度,漏水报警,UPS运行情况等。
设备安全包括服务器、交换机、存储、终端主机等设备的安全。医院信息系统中的重要设备需尽可能的采用冗余方式配置,以提高系统的稳定性。我们在系统集成中就需要考虑这一点。如图一所示,在关键点上设备与线路都是冗余的。
of rural drinking water sources, protection of drinking water sources in rural areas by the end of the delimitation of the scope of protection, complete with warning signs, isolating network protection facilities
of rural drinking water sources, protection of drinking water sources in rural areas by the end of the delimitation of the scope of protection, complete with warning signs, isolating network protection facilities
of rural drinking water sources, protection of drinking water sources in rural areas by the end of the delimitation of the scope of protection, complete with warning signs, isolating network protection facilities
(图一)
同时服务器应严格限制默认账户账户的访问权限,重命名系统默认账户账户,修改这些账户账户的默认口令。及时删除多余的、过期的账户账户,避免共享账户账户的存在。依据安全策略严格控制用户对有敏感标记重要信息资源的操作,启用访问控制功能