HL7 Personal Health Record System Functional Model, Release 2
2.0.1-ballot - Normative Ballot

This page is part of the HL7 Personal Health Record System Functional Model, Release 2 (v2.0.1-ballot: Normative 1 Ballot 1) based on FHIR (HL7® FHIR® Standard) v5.0.0. No current official version has been published yet. For a full list of available versions, see the Directory of published versions

Requirements: TI.2.1.2.2 User Authentication to the System (Start user session) Security Audit Trigger (Function)

Page standards status: Informative
Statement N:

Manage Audit Trigger initiated to track user authentication to the system (start user session).

Description I:

Capture user authentication to the system (start user session), both routine and exceptional, including key metadata (who, what, when, where, why).

Actors:
ehr
Criteria N:
TI.2.1.2.2#01 SHALL

The system SHALL audit each occurrence of user authentication at logon (start session).

TI.2.1.2.2#02 SHALL

The system SHALL capture identity of the organization.

TI.2.1.2.2#03 conditional SHALL

IF known, THEN the system SHALL capture identity of the user.

TI.2.1.2.2#04 SHALL

The system SHALL capture identity of the system.

TI.2.1.2.2#05 SHALL

The system SHALL capture the event initiating audit trigger.

TI.2.1.2.2#06 SHALL

The system SHALL capture the date and time of the event initiating audit trigger.

TI.2.1.2.2#07 SHALL

The system SHALL capture identity of the location (i.e., network address).

TI.2.1.2.2#08 SHALL

The system SHALL capture the method of user authentication (e.g., user ID, password, biometrics, token, security question(s)).