FHIR © HL7.org  |  FHIRsmith 4.0.1  |  Server Home  |  XIG Home  |  XIG Stats  | 

FHIR IG analytics

Packagehl7.ehrs.us.dhfpr2
Resource TypeRequirements
IdRequirements-DHFPR2-TI.2.1.2.9.json
FHIR VersionR5
Sourcehttps://build.fhir.org/ig/HL7/dhfp-ig/Requirements-DHFPR2-TI.2.1.2.9.html
URLhttp://hl7.org/ehrs/us/dhfpr2/Requirements/DHFPR2-TI.2.1.2.9
Version2.0.0-ballot
Statusactive
Date2025-12-19T08:44:27+00:00
NameTI_2_1_2_9_User_Permissions__Authorization__Security_Audit_Trigger
TitleTI.2.1.2.9 User Permissions (Authorization) Security Audit Trigger (Function)
Realmus
Authorityhl7
DescriptionManage Audit Trigger initiated to track user permissions (authorization).
PurposeCapture user permissions (authorization), both routine and exceptional, including key metadata (who, what, when, where, why).

Resources that use this resource

No resources found


Resources that this resource uses

No resources found


Narrative

Note: links and images are rebased to the (stated) source

Description I:

Capture user permissions (authorization), both routine and exceptional, including key metadata (who, what, when, where, why).

Criteria N:
TI.2.1.2.9#01 SHALL

The system SHALL audit each occurrence when user permissions (authorizations) are granted, removed or updated.

TI.2.1.2.9#02 SHALL

The system SHALL capture identity of the organization.

TI.2.1.2.9#03 SHALL conditional

IF known, THEN the system SHALL capture identity of the user.

TI.2.1.2.9#04 SHALL

The system SHALL capture identity of the system.

TI.2.1.2.9#05 SHALL

The system SHALL capture the event initiating audit trigger.

TI.2.1.2.9#06 SHALL

The system SHALL capture the date and time of the event initiating audit trigger.

TI.2.1.2.9#07 SHALL

The system SHALL capture identity of the location (i.e., network address).

TI.2.1.2.9#08 SHOULD

The system SHOULD capture the rationale for granting, removing or updating user permissions.

TI.2.1.2.9#09 SHALL

The system SHALL capture identity of user to whom permissions apply.

TI.2.1.2.9#10 SHALL

The system SHALL capture the new set of applicable user permissions (authorizations).


Source1

{
  "resourceType": "Requirements",
  "id": "DHFPR2-TI.2.1.2.9",
  "meta": {
    "profile": [
      "http://hl7.org/ehrs/uv/ehrsfmr2/StructureDefinition/FMFunction"
    ]
  },
  "language": "en",
  "text": {
    "status": "extensions",
    "div": "<!-- snip (see above) -->"
  },
  "extension": [
    {
      "url": "http://hl7.org/fhir/StructureDefinition/structuredefinition-standards-status",
      "valueCode": "informative"
    },
    {
      "url": "http://hl7.org/ehrs/uv/ehrsfmr2/StructureDefinition/requirements-change-info",
      "valueCode": "NC"
    },
    {
      "url": "http://hl7.org/fhir/StructureDefinition/structuredefinition-wg",
      "valueCode": "ehr"
    },
    {
      "url": "http://hl7.org/fhir/StructureDefinition/structuredefinition-fmm",
      "valueInteger": 1,
      "_valueInteger": {
        "extension": [
          {
            "url": "http://hl7.org/fhir/StructureDefinition/structuredefinition-conformance-derivedFrom",
            "valueCanonical": "http://hl7.org/ehrs/us/dhfpr2/ImplementationGuide/hl7.ehrs.us.dhfpr2"
          }
        ]
      }
    }
  ],
  "url": "http://hl7.org/ehrs/us/dhfpr2/Requirements/DHFPR2-TI.2.1.2.9",
  "version": "2.0.0-ballot",
  "name": "TI_2_1_2_9_User_Permissions__Authorization__Security_Audit_Trigger",
  "title": "TI.2.1.2.9 User Permissions (Authorization) Security Audit Trigger (Function)",
  "status": "active",
  "date": "2025-12-19T08:44:27+00:00",
  "publisher": "HL7 International / Electronic Health Records",
  "contact": [
    {
      "telecom": [
        {
          "system": "url",
          "value": "http://www.hl7.org/Special/committees/ehr"
        }
      ]
    }
  ],
  "description": "Manage Audit Trigger initiated to track user permissions (authorization).",
  "jurisdiction": [
    {
      "coding": [
        {
          "system": "urn:iso:std:iso:3166",
          "code": "US"
        }
      ]
    }
  ],
  "purpose": "Capture user permissions (authorization), both routine and exceptional, including key metadata (who, what, when, where, why).",
  "derivedFrom": [
    "http://hl7.org/ehrs/uv/ehrsfmr2/Requirements/EHRSFMR2-TI.2.1.2.9"
  ],
  "statement": [
    {
      "extension": [
        {
          "url": "http://hl7.org/ehrs/uv/ehrsfmr2/StructureDefinition/requirements-dependent",
          "valueBoolean": false
        },
        {
          "url": "http://hl7.org/ehrs/uv/ehrsfmr2/StructureDefinition/requirements-change-info",
          "valueCode": "NC"
        }
      ],
      "key": "DHFPR2-TI.2.1.2.9-01",
      "label": "TI.2.1.2.9#01",
      "conformance": [
        "SHALL"
      ],
      "conditionality": false,
      "requirement": "The system SHALL audit each occurrence when user permissions (authorizations) are granted, removed or updated.",
      "derivedFrom": "TI.2.1.2.9#1"
    },
    {
      "extension": [
        {
          "url": "http://hl7.org/ehrs/uv/ehrsfmr2/StructureDefinition/requirements-dependent",
          "valueBoolean": false
        },
        {
          "url": "http://hl7.org/ehrs/uv/ehrsfmr2/StructureDefinition/requirements-change-info",
          "valueCode": "NC"
        }
      ],
      "key": "DHFPR2-TI.2.1.2.9-02",
      "label": "TI.2.1.2.9#02",
      "conformance": [
        "SHALL"
      ],
      "conditionality": false,
      "requirement": "The system SHALL capture identity of the organization.",
      "derivedFrom": "TI.2.1.2.9#2"
    },
    {
      "extension": [
        {
          "url": "http://hl7.org/ehrs/uv/ehrsfmr2/StructureDefinition/requirements-dependent",
          "valueBoolean": false
        },
        {
          "url": "http://hl7.org/ehrs/uv/ehrsfmr2/StructureDefinition/requirements-change-info",
          "valueCode": "NC"
        }
      ],
      "key": "DHFPR2-TI.2.1.2.9-03",
      "label": "TI.2.1.2.9#03",
      "conformance": [
        "SHALL"
      ],
      "conditionality": true,
      "requirement": "IF known, THEN the system SHALL capture identity of the user.",
      "derivedFrom": "TI.2.1.2.9#3"
    },
    {
      "extension": [
        {
          "url": "http://hl7.org/ehrs/uv/ehrsfmr2/StructureDefinition/requirements-dependent",
          "valueBoolean": false
        },
        {
          "url": "http://hl7.org/ehrs/uv/ehrsfmr2/StructureDefinition/requirements-change-info",
          "valueCode": "NC"
        }
      ],
      "key": "DHFPR2-TI.2.1.2.9-04",
      "label": "TI.2.1.2.9#04",
      "conformance": [
        "SHALL"
      ],
      "conditionality": false,
      "requirement": "The system SHALL capture identity of the system.",
      "derivedFrom": "TI.2.1.2.9#4"
    },
    {
      "extension": [
        {
          "url": "http://hl7.org/ehrs/uv/ehrsfmr2/StructureDefinition/requirements-dependent",
          "valueBoolean": false
        },
        {
          "url": "http://hl7.org/ehrs/uv/ehrsfmr2/StructureDefinition/requirements-change-info",
          "valueCode": "NC"
        }
      ],
      "key": "DHFPR2-TI.2.1.2.9-05",
      "label": "TI.2.1.2.9#05",
      "conformance": [
        "SHALL"
      ],
      "conditionality": false,
      "requirement": "The system SHALL capture the event initiating audit trigger.",
      "derivedFrom": "TI.2.1.2.9#5"
    },
    {
      "extension": [
        {
          "url": "http://hl7.org/ehrs/uv/ehrsfmr2/StructureDefinition/requirements-dependent",
          "valueBoolean": false
        },
        {
          "url": "http://hl7.org/ehrs/uv/ehrsfmr2/StructureDefinition/requirements-change-info",
          "valueCode": "NC"
        }
      ],
      "key": "DHFPR2-TI.2.1.2.9-06",
      "label": "TI.2.1.2.9#06",
      "conformance": [
        "SHALL"
      ],
      "conditionality": false,
      "requirement": "The system SHALL capture the date and time of the event initiating audit trigger.",
      "derivedFrom": "TI.2.1.2.9#6"
    },
    {
      "extension": [
        {
          "url": "http://hl7.org/ehrs/uv/ehrsfmr2/StructureDefinition/requirements-dependent",
          "valueBoolean": false
        },
        {
          "url": "http://hl7.org/ehrs/uv/ehrsfmr2/StructureDefinition/requirements-change-info",
          "valueCode": "NC"
        }
      ],
      "key": "DHFPR2-TI.2.1.2.9-07",
      "label": "TI.2.1.2.9#07",
      "conformance": [
        "SHALL"
      ],
      "conditionality": false,
      "requirement": "The system SHALL capture identity of the location (i.e., network address).",
      "derivedFrom": "TI.2.1.2.9#7"
    },
    {
      "extension": [
        {
          "url": "http://hl7.org/ehrs/uv/ehrsfmr2/StructureDefinition/requirements-dependent",
          "valueBoolean": false
        },
        {
          "url": "http://hl7.org/ehrs/uv/ehrsfmr2/StructureDefinition/requirements-change-info",
          "valueCode": "NC"
        }
      ],
      "key": "DHFPR2-TI.2.1.2.9-08",
      "label": "TI.2.1.2.9#08",
      "conformance": [
        "SHOULD"
      ],
      "conditionality": false,
      "requirement": "The system SHOULD capture the rationale for granting, removing or updating user permissions.",
      "derivedFrom": "TI.2.1.2.9#8"
    },
    {
      "extension": [
        {
          "url": "http://hl7.org/ehrs/uv/ehrsfmr2/StructureDefinition/requirements-dependent",
          "valueBoolean": false
        },
        {
          "url": "http://hl7.org/ehrs/uv/ehrsfmr2/StructureDefinition/requirements-change-info",
          "valueCode": "NC"
        }
      ],
      "key": "DHFPR2-TI.2.1.2.9-09",
      "label": "TI.2.1.2.9#09",
      "conformance": [
        "SHALL"
      ],
      "conditionality": false,
      "requirement": "The system SHALL capture identity of user to whom permissions apply.",
      "derivedFrom": "TI.2.1.2.9#9"
    },
    {
      "extension": [
        {
          "url": "http://hl7.org/ehrs/uv/ehrsfmr2/StructureDefinition/requirements-dependent",
          "valueBoolean": false
        },
        {
          "url": "http://hl7.org/ehrs/uv/ehrsfmr2/StructureDefinition/requirements-change-info",
          "valueCode": "NC"
        }
      ],
      "key": "DHFPR2-TI.2.1.2.9-10",
      "label": "TI.2.1.2.9#10",
      "conformance": [
        "SHALL"
      ],
      "conditionality": false,
      "requirement": "The system SHALL capture the new set of applicable user permissions (authorizations).",
      "derivedFrom": "TI.2.1.2.9#10"
    }
  ]
}