Jonathan, you hit the nail on the head. The solution that "makes it" across the barrier. I like OpenVPN, because it is secure, Open Source and I can customize it. There are scripts out there to only allow VPN connections during certain hours of the day.
I too have a history in these industries and it is a "who you know and how well" along with "what will the auditors say"... On Mon, Mar 14, 2011 at 4:17 PM, Jonathan Bartels <[email protected]> wrote: > Not trying to argue or shoot down ideas here. I'm actually hoping for > some clever tools and tricks from this crowd. I've spent my career as > a software developer in healthcare. > > Healthcare is a market with relatively common problems, but > significant barriers to adoption. Its not an easy place to just jump > in and get something done. > > Simon - It sounds like your father in-law might "get it" can you > elaborate a little more on what he wants to accomplish? Which EMR > vendor is he using? > > On Mon, Mar 14, 2011 at 3:02 PM, Andrew Latham <[email protected]> wrote: >> OpenVPN on normal computers like laptops, just works. You can >> configure the installer to setup everything and just smile. On the >> tablets I am sure a package could be created and pushed to the users. >> >> As for administration, use something like Zentyal to manage the CA. >> >> On Mon, Mar 14, 2011 at 3:50 PM, Jonathan Bartels >> <[email protected]> wrote: >>> Good idea as long as "tablet" includes Android phones, iPhone, iPod >>> Touch, and the iPad. >>> >>> The iPad was the new hotness at HIMSS (big healthcare IT show) this >>> year. I'm on the fence as to which device is the best for a given >>> application. There is a strong argument from the doctors and high >>> level staff to use the devices they have rather than having to use a >>> shared employer-owned device like their assistants and nurses. It also >>> gives the sales goons at conventions and excuse to buy iPads and give >>> them away in exchange for sitting thru sales presentations. >>> >>> Also can you get the IT staff comfortable with supporting OpenVPN on >>> devices? >>> >>> How does the OpenVPN authentication work on a mobile device? Do you >>> sign into the device, sign into the VPN, then sign into the >>> application? You're going to lose most users at the 2nd login when >>> they have to have a decent VPN password. >>> >>> SSO is an option, but again will it be supported on tablets and will >>> it be supported by the applications they need to use? Many >>> applications support LDAP, poorly. >>> >>> Token based authentication could work, but still presents hurdles. >>> RSAKeys are good as are OpenID dongles. Can you make it work on a >>> tablet? >>> >>> These technical challenges aren't impossible but when you consider the >>> adoption hurdles you have in even a modest clinic, it starts to get >>> really sticky. >>> >>> On Mon, Mar 14, 2011 at 12:51 PM, Andrew Latham <[email protected]> wrote: >>>> OpenVPN on the tablets... Its easy, scalable, secure and you can log >>>> connections... >>>> >>>> >>>> On Mon, Mar 14, 2011 at 1:24 PM, Simón Ruiz <[email protected]> wrote: >>>>> Hey, I was asked a question by my father-in-law about what sort of >>>>> hardware he might use to connect WiFi tablets to their medical >>>>> office's system specifically to interact with their EMR software, >>>>> which means legally sensitive information would need to be transmitted >>>>> wirelessly. >>>>> >>>>> Does anyone have experience with the practical/legal implications? >>>>> >>>>> What level of security, or what type of security scheme, would be >>>>> appropriate for this type of use-case? >>>>> >>>>> I understand it's dead easy to crack WEP encryption, and not too hard >>>>> to crack WPA, so most consumer level devices would be dangerous to try >>>>> to use, right? >>>>> >>>>> Any ideas? >>>>> >>>>> Simón >>>>> >>>>> _______________________________________________ >>>>> Fwlug mailing list >>>>> [email protected] >>>>> http://fortwaynelug.org/mailman/listinfo/fwlug_fortwaynelug.org >>>>> >>>>> This is a public list and all posts are archived publicly. Please keep >>>>> this in mind before posting. >>>>> >>>> >>>> >>>> >>>> -- >>>> ~~~ Andrew "lathama" Latham [email protected] ~~~ >>>> >>>> _______________________________________________ >>>> Fwlug mailing list >>>> [email protected] >>>> http://fortwaynelug.org/mailman/listinfo/fwlug_fortwaynelug.org >>>> >>>> This is a public list and all posts are archived publicly. Please keep >>>> this in mind before posting. >>>> >>> >>> >>> >>> -- >>> ----- >>> Jonathan Bartels >>> >>> _______________________________________________ >>> Fwlug mailing list >>> [email protected] >>> http://fortwaynelug.org/mailman/listinfo/fwlug_fortwaynelug.org >>> >>> This is a public list and all posts are archived publicly. Please keep this >>> in mind before posting. >>> >> >> >> >> -- >> ~~~ Andrew "lathama" Latham [email protected] ~~~ >> >> _______________________________________________ >> Fwlug mailing list >> [email protected] >> http://fortwaynelug.org/mailman/listinfo/fwlug_fortwaynelug.org >> >> This is a public list and all posts are archived publicly. Please keep this >> in mind before posting. >> > > > > -- > ----- > Jonathan Bartels > > _______________________________________________ > Fwlug mailing list > [email protected] > http://fortwaynelug.org/mailman/listinfo/fwlug_fortwaynelug.org > > This is a public list and all posts are archived publicly. Please keep this > in mind before posting. > -- ~~~ Andrew "lathama" Latham [email protected] ~~~ _______________________________________________ Fwlug mailing list [email protected] http://fortwaynelug.org/mailman/listinfo/fwlug_fortwaynelug.org This is a public list and all posts are archived publicly. Please keep this in mind before posting.
