This wiki has undergone a migration to Confluence found Here
<meta name="googlebot" content="noindex">

HL7 FHIR Security 2018-02-20

From HL7Wiki
Jump to navigation Jump to search

Call Logistics

Weekly: Tuesday at 05:00 EST (2 PM PST)

Web conference desktop and VOIP https://www.freeconferencecall.com/join/security36 
Online Meeting ID: security36
Phone: +1 515-604-9567, Participant Code: 880898
 Please be aware that teleconference meetings are recorded to assist with creating the meeting minutes 

Back to HL7 FHIR security topics

Attendees

Member Name Member Name Member Name
x John Moehrke Security Co-Chair . Kathleen Connor Security Co-Chair . Alexander Mense Security Co-chair
. Suzanne Gonzales-Webb CBCC Co-Chair x Johnathan Coleman CBCC Co-Chair . Mike Davis
. Reed Gelzer RM-ES Lead . Glen Marshal x Joe Lamy AEGIS
. Diana Proud-Madruga . Rob Horn . Beth Pumo
. Irina Connelly . Mario Hyland AEGIS . Mark Underwood NIST

Agenda

Block vote

  • 10579 New+Security+and+Privacy+%22Module%22+page+needs+content (John Moehrke) Considered - No action required
  • 12462 Security%2FPrivacy+Module+page+should+explain+W5+realty+that+provenance+elements+in+other+resources+vs+use+of+Provenance+as+a+resource (John Moehrke) Considered - No action required
  • 12463 explain+relationship+between+Provenance+and+AuditEvent. (John Moehrke) Considered - No action required
  • 13014 Provenance.agent.relatedAgentType+doesn%27t+make+sense (Lloyd McKenzie) Considered - No action required
  • 13571 AuditEvent.entity.identifier+vs+resource+vs+URI+-+explain+why+each+should+be+used (John Moehrke) Not Persuasive
  • 14810 role+should+point+to+dicm-402-roleid+-+2018-Jan+Core+%23150 (Nayan Mergu) Not Persuasive
  • 12941 Security+Role+vocabulary+should+include+ISO+21298 (John Moehrke) Persuasive
  • 14193 Signature+datatype+definition+needs+to+be+inclusive+of+electronic+signature (Lloyd McKenzie) Persuasive
  • 14370 Provenance+-+Party+References+needs+update+now+that+userId+is+gone (John Moehrke) Persuasive
  • 14515 Why+Uppercased+PERMIT (Lin Zhang) Persuasive
  • 10580 How+should+test+data+be+identified%3F (John Moehrke) Persuasive with Mod
  • 13011 The+value+set+for+security-role-type+is+broken+for+Provenance (Lloyd McKenzie) Persuasive with Mod
  • 13013 Valueset+for+Provenance.activity+is+broken (Lloyd McKenzie) Persuasive with Mod
  • 14028 Explain+how+one+might+use+AuditEvent+to+inform+an+Accounting+of+Disclosures (Kathleen Connor) Persuasive with Mod
  • 14809 period+and+recorded+are+redundant+-+2018-Jan+Core+%23149 (Nayan Mergu) Persuasive with Mod

Minutes

  • John chaired
  • agenda approved
  • Previous minutes not approved due to low turn out. Will move them to next meeting
  • Reviewed Block Vote
    • No notifications of removal or issues received
    • Motion to approve Johnathan Coleman/Joe Lamy: 2-0-0
  • Reviewed 15541 - on an informative addition of some de-identification security-tags from the HCS -- Motion to Approve Johnathan Coleman/Joe Lamy: 2-0-0
  • Reviewed 10579 - on an informative statement around isModifier elements as dangerous to modify/remove during De-Identification -- Johnathan wanted more review time
  • Reviewed 13822 - on guidance for processing and return results when a user uses query parameters they don't have rights to use -- Need more review time
  • Discussed Event Pattern mapping to Provenance and AuditEvent.
    • Lloyd assured John over the past week that it was appropriate to map to Event Pattern even with the concerns raised.
    • John to apply just a map, no renaming. This in support of work on 13841 and 13842
  • adjourn 30 minutes