VERGENCE TM : TECHNICAL DATA SHEET



Similar documents
VMware AlwaysOn Point of Care Desktop. with Indigo Identityware software for Fast Access & Strong Authentication with Roaming Desktops

Oracle Enterprise Single Sign-on Technical Guide An Oracle White Paper June 2009

Enabling Fast and Secure Clinician Workflows with One-Touch Desktop Roaming W H I T E P A P E R

White paper December IBM Tivoli Access Manager for Enterprise Single Sign-On: An overview

Healthcare Information Security Today

CRESCENDO SERIES Smart Cards. Smart Card Solutions

How to Migrate Citrix XenApp to VMware Horizon 6 TECHNICAL WHITE PAPER

5 Day Imprivata Certification Course Agenda

Symantec Backup Exec.cloud

An Analysis of Propalms TSE and Microsoft Remote Desktop Services

Citrix Password Manager 4.5 Partner and Sales FAQ

Williamson County Technology Services Technology Project Questionnaire for Vendor (To be filled out withprospective solution provider)

Medical 360 Network Edition and Citrix

IBM Tivoli Access Manager for Enterprise Single Sign-On

Enhancing Password Management by Adding Security, Flexibility, and Agility IBM Redbooks Solution Guide

ADVANCED TWO-FACTOR AUTHENTICATION VIA YOUR MOBILE PHONE

Maximize your Remote Desktop Services

DigitalPersona Pro Enterprise

White Paper. Prepared by: Neil Shah Director, Product Management March, 2014 Version: 1. Copyright 2014, ezdi, LLC.

Converged Smart Card for Identity Assurance Solutions. Crescendo Series Smart Cards

HELP DOCUMENTATION E-SSOM INSTALLATION GUIDE

Foundation ACTIVE DIRECTORY AND MICROSOFT EXCHANGE PROVISIONING FOR HEALTHCARE PROVIDERS HEALTHCARE: A UNIQUELY COMPLEX ENVIRONMENT

A Nemaris Company. Formal Privacy & Security Assessment For Surgimap version and higher

Boost Healthcare Security and Patient Care with Imprivata Enhanced VDI

Endpoint Virtualization for Healthcare Providers

Dropbox for Business. Secure file sharing, collaboration and cloud storage. G-Cloud Service Description

IBM Security Access Manager for Enterprise Single Sign-On

RSA SecurID Two-factor Authentication

EMC Data Protection Advisor 6.0

Netop Remote Control Security Server

NetWrix Logon Reporter V 2.0

VMware Virtual Desktop Infrastructure (VDI) - The Best Strategy for Managing Desktop Environments Mike Coleman, VMware (mcoleman@vmware.

DigitalPersona Pro Enterprise

(A) User Convenience. Password Express Benefits. Increase user convenience and productivity

Propalms TSE Deployment Guide

Quick Start Guide for VMware and Windows 7

Optimized data protection through one console for physical and virtual systems, including VMware and Hyper-V virtual systems

Quick Start Guide for Parallels Virtuozzo

Microsoft and Citrix: Joint Virtual Desktop Infrastructure (VDI) Offering

Veritas Cluster Server from Symantec

Best Practices: Single Sign-On Drives Productivity, Security, and Adoption When Used with EHR at The Johns Hopkins Hospital

NETWRIX EVENT LOG MANAGER

WhitePaper. Private Cloud Computing Essentials

Privileged Access Management 15.2 Available Features

Choosing an SSO Solution Ten Smart Questions

Remote Application Server Version 14. Last updated:

NETWRIX IDENTITY MANAGEMENT SUITE

Authentication: Password Madness

RDS & VDI - Simple & Affordable. Parallels 2X RAS Selling Points

Remote Application Server Version 14. Last updated:

SECURE ACCESS TO THE VIRTUAL DATA CENTER

Connection Broker Managing User Connections to Workstations and Blades, OpenStack Clouds, VDI, and More

White Paper. Anywhere, Any Device File Access with IT in Control. Enterprise File Serving 2.0

Managing Your Microsoft Windows Server Fleet with AWS Directory Service. May 2015

Citrix Password Manager Using the Account Self-Service Feature. Citrix Password Manager 4.6 with Service Pack 1 Citrix XenApp 5.0, Platinum Edition

Bomgar License Comparison

Enterprise Access Control from Avigilon

EMC SYNCPLICITY FILE SYNC AND SHARE SOLUTION

Simplify essential workflows with dynamic scanning capabilities. GlobalScan NX Server 32/Server 750 Capture & Distribution Solution

AD Self-Service Suite for Active Directory

Netwrix Auditor for SQL Server

SA Series SSL VPN Virtual Appliances

System Requirements for Web Applications

Privileged Access Management 15.3 Available Features

2X ApplicationServer & LoadBalancer & VirtualDesktopServer Manual

Enterprise Storage Solution for Hyper-V Private Cloud and VDI Deployments using Sanbolic s Melio Cloud Software Suite April 2011

IT S ABOUT TIME REMOVING TECHNOLOGICAL BARRIERS TO IMPROVE PATIENT CARE. Enabling Healthcare. Securely

Connection Broker Managing User Connections to Workstations, Blades, VDI, and More. Quick Start with Microsoft Hyper-V

Accops HyWorks v2.5. Quick Start Guide. Last Update: 4/18/2016

Directory Integration with Okta. An Architectural Overview. Okta Inc. 301 Brannan Street San Francisco, CA

Table Of Contents. - Microsoft Windows - WINDOWS XP - IMPLEMENTING & SUPPORTING MICROSOFT WINDOWS XP PROFESSIONAL...10

Enterprise Solution for Remote Desktop Services System Administration Server Management Server Management (Continued)...

Open Directory. Apple s standards-based directory and network authentication services architecture. Features

LANDesk White Paper. LANDesk Management Suite for Lenovo Secure Managed Client

Benefit. Allows you to integrate RES PowerFuse with application virtualization technologies other than SoftGrid (e.g. Citrix XenApp, VMWare Thinapp).

Smart Card Deployment in the Data Center: Best Practices for Integrating Smart Card Authentication in a Secure KVM Environment

Frequently Asked Questions

Netwrix Auditor for Active Directory

RES PowerFuse Version Comparison Chart (1/9)

Backup Exec 15: Protecting Microsoft SQL

Greenway Medical Technologies PrimeSuite Integrated EHR, PM and Interoperability Solution

Advanced Authentication

The Top 5 Federated Single Sign-On Scenarios

Universal Viewer Zero Footprint Client 1

An Oracle White Paper December Leveraging Oracle Enterprise Single Sign-On Suite Plus to Achieve HIPAA Compliance

DirX Identity V8.5. Secure and flexible Password Management. Technical Data Sheet

IBM Security Access Manager for Enterprise Single Sign-On Version User Guide IBM SC

Veritas Backup Exec 15: Deduplication Option

Transcription:

VERGENCE TM : TECHNICAL DATA SHEET DATASHEET PRODUCT OVERVIEW With the move from paper charts to electronic medical records, caregivers have been slowed down by passwords and searching for the same patient in multiple applications. was purpose-built for healthcare to eliminate clicks, simplify authentication, and bring patient records to caregivers in about the time it takes to flip the page on a chart. It delivers this by unifying single sign-on, role-based application access, context management, multi-factor authentication and centralized auditing into a fully integrated, clinical workstation solution. Key features: Single sign-on with fast user switching Patient context management Re-authentication for rapid order signing Role-based access with patient-centric system navigation Fast application access Web-based administration Intuitive wizard for point-and-click application enablement Plug-and-play connectivity with over 120 HL7 CCOW-compliant applications including AllScripts, Cerner, Epic,and GE Extensible toolkit for connecting to any application Device independence via Citrix, Terminal Server, and VDI, including session roaming Scalable and reliable with automated load balancing and fail over 1

Way2Care TM Way2Care enables readers to work with to further simplify and speed access to electronic medical records. With the tap of a badge, physicians and other caregivers can unlock a workstation or thin client device, launch their primary EHR, call a roaming VDI session, sign orders, and then lock the device. It is simple, fast, and secure. Key features: Works with your existing passive proximity badges Simply tap to logon, sign orders, and lock a workstation Configurable and centrally controlled one tap authentication grace period Supports session roaming with a tap of the badge from Windows clients End user badge self-enrollment Privacy Auditor TM Privacy Auditor is an advanced auditing solution that allows healthcare organizations to monitor caregiver access to electronic health records. When used in conjunction with the clinical workstation solution which includes single sign-on (SSO), two-factor authentication, and context management, Privacy Auditor is able to track application access by user across the enterprise and provide analysis as to who has viewed what patient records, when, where, and how often. Key Features: Increase controls for regulatory compliance (e.g. HIPAA, SB 541, etc.) Accelerate time to complete external and internal audits Centrally monitor access to electronic patient records across multiple applications Help protect patient privacy and strengthen internal controls Gain insight into how systems are being used 2

ARCHITECTURE Figure 1. Architecture XP, Win 7, Citrix, RDS, VDI Authentication & Identification Devices Authenticator Web Tools SSO/Context Modules Vault Web Administration Reporting Bridge Wizard Launchpad / Application Management Server/Vault Active Directory User Network IDs & Credentials Workstation Group Membership Context Manager Way2Care Cache Vault Admin & Audit Services Central Configuration Services Application Bridge Store Encrypted Credential Store Load Balance, Fail-Over, Back-up, Synchronization, & SNMP Services AUDIT DATABASE Arising out of experience with fetal monitoring systems where uptime is critical and downtime intolerable, is a highly-available, fault-tolerant system. The core consists of a set of self-contained servers called Vaults, available as either physical or virtual appliances, that run a locked-down operating system with automated redundancy. Over the past twelve years, this architecture has been refined based on hundreds of deployments, including tens of thousands of users at some of the largest deployments of single sign-on (SSO) in healthcare, to provide caregivers with anytime access to this mission-critical system. On the client side, a small layer of software called Desktop Components resides on any combination of thick client computers, virtual desktops, and application presentation servers, including Citrix, Microsoft Hyper-V, VMware, and Windows Terminal Server (WTS). Application credentials are stored on the Vault using AES 128-bit encryption and transmitted securely to the point of care, providing single sign-on to participating applications. For a single view spanning multiple applications, Privacy Auditor captures and stores access and usage data in an external SQL database where beyond the five pre-packaged reports, the data is available for unfettered analysis. 3

PRODUCT SPECIFICATIONS Workstation Models Client Workstation OS Support Remote Desktop OS Support Virtualization Support Launchpad Shared Workstation for fast user switching with autologon Windows account, and Personal Workstation for full Windows profile; Multiple Sessions to support simultaneous, multiple users on same workstation with full Windows profile. Windows 7 (32-bit or 64-bit) Windows Embedded Standard 7 Windows XP, SP3 (32-bit only), or Windows XP Professional Tablet Edition (32-bit only) Windows XPe SP3, or Windows Embedded Standard 2009 (32-bit only) Windows Server 2003 SP2 (32-bit or 64-bit) Windows Server 2003 R2 (32-bit or 64-bit) Windows Server 2008 (32-bit or 64-bit) Windows Server 2008 R2 Published desktops and applications via Windows Terminal Services, Citrix, Clearcube and VMWare VDI. Role-based application toolbar, quick click patient list, lock and logoff buttons. Authentication Directory Active Directory 2003/2008 / 2008 R2. Way2Care Readers Way2Care Badge Support Active Directory Password Reset Passive RFID Card Provisioning Application Automated Provisioning Application Self Provisioning Application Bridge Building HL7 CCOW Support Number of Concurrent Sessions Vault Operating System Vault Datastore Vault Management Protocol RFIdeas and OMNIKEY readers Readers are compatible with nearly all 125kHz and 13.56MHz contactless cards/tags/labels. Partial list: AWID, HID, iclass, Indala, Casi-Rusco Yes, supports self-enrollment with administrator set options End user self-provisioning Native integration with Caradigm s provision TM solution or other provisioning solution via the provisioning API Password learning on first logon for bridged applications; passwords not required for HL7 CCOW compliant applications Visual point-and-click Wizard to build SSO and Context bridges for web, client, and terminal applications. Event based API can respond to any application event. Yes, out-of-the-box for both SSO and Patient Context 2,500 per vault Linux CentOS OpenLDAP. Password stored with AES 128-bit encryption SNMP Achievable Uptime 99.999% 3

SERVICES AND SUPPORT Installation Our fixed-fee implementation is a shared-risk model where the costs and scope are known up-front, and the focus is a successful go-live. Rather than the cookie-cutter approach common for SSO, a implementation is tailored to the needs of your organization including knowledge-transfer via hands-on training to ensure that your IT team is equipped to support and expand the solution for years to come. Support Caradigm s Product Support Team provides 24x7x365 support and is staffed by engineers who have an average of ten years experience providing technical support. We implement and support all elements proposed in our total solution via a single contract. Training We provide resources on-site during implementation to facilitate knowledge transfer to your local IT team. After your initial roll-out we offer a combination of self-paced online courses, instructor-led online classes, and instructor-led classes at our training facility in Andover, targeted to all levels of technical competency. MORE INFORMATION Visit us at www.caradigm.com or contact us at info@caradigm.com 3

About Caradigm Formed by GE Healthcare and Microsoft Corp. in June 2012, Caradigm is a 50 50 joint venture focused on enabling health systems and payers to drive continuous improvements in care. Caradigm software helps healthcare professionals across care settings to use data to gain critical insights, collaborate with each other and with patients, and to develop and implement innovative care solutions. Amalga, ehealth Information Exchange and and applications built by partners to extend these products allow clinicians, administrators and finance teams timely access to key information, helping them to take steps to solve some of healthcare s biggest problems, including chronic disease management, preventable hospital readmissions and hospital acquired conditions, and to advance integrated, accountable care. Caradigm is headquartered in Bellevue, Washington. For more information about the company, visit http://www.caradigm.com. 2012 Caradigm. All rights reserved. Caradigm, Amalga, provision, Privacy Auditor, Way2Care, and are trademarks of Caradigm USA LLC. This material is provided for informational purposes only. Caradigm makes no warranties, express or implied. Product specifications are subject to change.