HL7 Personal Health Record System Functional Model, Release 2
2.0.1-ballot - Normative Ballot
Publication Build: This will be filled in by the publication tooling
| Page standards status: Informative |
Manage Audit Trigger initiated to track extraordinary user access (break the glass).
Capture extraordinary user access (break the glass), both routine and exceptional, including key metadata (who, what, when, where, why).
| TI.2.1.2.8#01 | SHALL |
The system SHALL audit each occurrence when extraordinary access is successful (e.g., 'break the glass' scenario). |
| TI.2.1.2.8#02 | SHALL |
The system SHALL capture identity of the organization. |
| TI.2.1.2.8#03 | conditional SHALL |
IF known, THEN the system SHALL capture identity of the user. |
| TI.2.1.2.8#04 | SHALL |
The system SHALL capture identity of the system. |
| TI.2.1.2.8#05 | SHALL |
The system SHALL capture the event initiating audit trigger. |
| TI.2.1.2.8#06 | SHALL |
The system SHALL capture the date and time of the event initiating audit trigger. |
| TI.2.1.2.8#07 | SHALL |
The system SHALL capture identity of the location (i.e., network address). |
| TI.2.1.2.8#08 | SHALL |
The system SHALL capture the rationale for extraordinary user access. |