This wiki has undergone a migration to Confluence found Here
<meta name="googlebot" content="noindex">

Difference between revisions of "HL7 FHIR Security 2018-02-06"

From HL7Wiki
Jump to navigation Jump to search
(Created page with "==Call Logistics== Weekly: '''Tuesday at 05:00 EST''' (2 PM PST) Web conference desktop and VOIP https://www.freeconferencecall.com/join/security36 Online Meeting ID: secur...")
 
 
(One intermediate revision by the same user not shown)
Line 24: Line 24:
 
||  .||[mailto:rgelzer@provider-resources.com Reed Gelzer] RM-ES Lead
 
||  .||[mailto:rgelzer@provider-resources.com Reed Gelzer] RM-ES Lead
 
||||.||[mailto:gfm@securityrs.com Glen Marshal]
 
||||.||[mailto:gfm@securityrs.com Glen Marshal]
||||.||[mailto:joe.lamy@aegis.net Joe Lamy] AEGIS
+
||||x||[mailto:joe.lamy@aegis.net Joe Lamy] AEGIS
 
|-
 
|-
 
||  .||[mailto:Diana.Proud-Madruga@engilitycorp.com Diana Proud-Madruga]
 
||  .||[mailto:Diana.Proud-Madruga@engilitycorp.com Diana Proud-Madruga]
Line 32: Line 32:
 
||  .||[mailto:irina.connelly@gtri.gatech.edu Irina Connelly]
 
||  .||[mailto:irina.connelly@gtri.gatech.edu Irina Connelly]
 
||||.||[mailto:Mario.hyland@aegis.net Mario Hyland ] AEGIS
 
||||.||[mailto:Mario.hyland@aegis.net Mario Hyland ] AEGIS
||||x||[mailto:mark.underwood@kryptonbrothers.com Mark Underwood] NIST
+
||||.||[mailto:mark.underwood@kryptonbrothers.com Mark Underwood] NIST
 
|-
 
|-
 
|}
 
|}
Line 47: Line 47:
 
=Minutes=
 
=Minutes=
 
* John chaired
 
* John chaired
 +
* did not review previous minutes
 +
* Reviewed current block vote candidates
 +
** Kathleen wants to add to 14028
 +
** Joe provided some fixes to existing wording proposal
 +
* Reviewed those not in block vote
 +
* Worked on mapping Provenance with Event Pattern
 +
** Event pattern requires a status element. Provenance is a statement, not a resource that will go through a lifecycle
 +
** Event pattern requires a subject element. Provenance is used for all FHIR Resources, therefore there is no dedicated subject element. Provenance is discovered from the target it points at, not from the subjects.
 +
** It does seem that Provenance.reason should get renamed to Provenance.purpose so that it is more clear, and so that it doesn't conflict with Event.reasonCode concept.
 +
** It does seem that activity should get renamed to reasonCode as it is the activity that caused the create/update/delete that is preserved in Provenance. It is not clear, so need more thought on this one.
 +
** Should rename agent to performer. This would be better understood in context of the Event pattern, and also by the records and security domains.
 +
* AuditEvent
 +
** Similar observations to Provenance
 +
* Action: John to bring this up with Lloyd

Latest revision as of 13:21, 7 February 2018

Call Logistics

Weekly: Tuesday at 05:00 EST (2 PM PST)

Web conference desktop and VOIP https://www.freeconferencecall.com/join/security36 
Online Meeting ID: security36
Phone: +1 515-604-9567, Participant Code: 880898
 Please be aware that teleconference meetings are recorded to assist with creating the meeting minutes 

Back to HL7 FHIR security topics

Attendees

Member Name Member Name Member Name
x John Moehrke Security Co-Chair x Kathleen Connor Security Co-Chair . Alexander Mense Security Co-chair
. Suzanne Gonzales-Webb CBCC Co-Chair . Johnathan Coleman CBCC Co-Chair . Mike Davis
. Reed Gelzer RM-ES Lead . Glen Marshal x Joe Lamy AEGIS
. Diana Proud-Madruga . Rob Horn . Beth Pumo
. Irina Connelly . Mario Hyland AEGIS . Mark Underwood NIST

Agenda


Minutes

  • John chaired
  • did not review previous minutes
  • Reviewed current block vote candidates
    • Kathleen wants to add to 14028
    • Joe provided some fixes to existing wording proposal
  • Reviewed those not in block vote
  • Worked on mapping Provenance with Event Pattern
    • Event pattern requires a status element. Provenance is a statement, not a resource that will go through a lifecycle
    • Event pattern requires a subject element. Provenance is used for all FHIR Resources, therefore there is no dedicated subject element. Provenance is discovered from the target it points at, not from the subjects.
    • It does seem that Provenance.reason should get renamed to Provenance.purpose so that it is more clear, and so that it doesn't conflict with Event.reasonCode concept.
    • It does seem that activity should get renamed to reasonCode as it is the activity that caused the create/update/delete that is preserved in Provenance. It is not clear, so need more thought on this one.
    • Should rename agent to performer. This would be better understood in context of the Event pattern, and also by the records and security domains.
  • AuditEvent
    • Similar observations to Provenance
  • Action: John to bring this up with Lloyd