| HOME | ABOUT | MEMBERSHIP | NEWS & ANNOUNCEMENTS | MEETINGS | FAQ | CONTACT US | | Powered by American National Standards Institute |
![]() |
Return to detail page at www.hitsp.org | HITSP/TP20 |
| Next |
July 8, 2009
Version 1.4
HITSP Access Control Transaction Package
Submitted to:
Healthcare Information Technology Standards Panel
Submitted by:
Security, Privacy and Infrastructure Domain Technical Committee
(Formerly Security and Privacy Technical Committee)
Document Change History
|
Version Number |
Description of Change |
Name of Author |
Date Published |
|
1.0 |
Review Copy |
Security and Privacy Technical Committee |
July 20, 2007 |
|
1.0.1 |
Review Copy |
Security and Privacy Technical Committee |
October 5, 2007 |
|
1.1 |
Released for Implementation |
Security and Privacy Technical Committee |
October 15, 2007 |
|
Template Updated to V2.4 |
Project Team |
July 31, 2008 |
|
|
1.1.1 |
Review Copy |
Security, Privacy, and Infrastructure Domain Technical Committee |
August 20, 2008 |
|
1.2 |
Released for Implementation |
Security, Privacy, and Infrastructure Domain Technical Committee |
August 27, 2008 |
|
1.2.1 |
Review Copy |
Security, Privacy, and Infrastructure Domain Technical Committee |
December 10, 2008 |
|
1.3 |
Released for Implementation |
Security, Privacy, and Infrastructure Domain Technical Committee |
December 18, 2008 |
|
Template V2.5 |
Project Team |
June 30, 2009 |
|
|
1.3.1 |
Review Copy |
Security, Privacy, and Infrastructure Domain Technical Committee |
June 30, 2009 |
|
1.4 |
Released for Implementation |
Security, Privacy, and Infrastructure Domain Technical Committee |
July 8, 2009 |
Table of Contents
1.4.2 Conformance Scoping, Subsetting and Options
2.0 Transaction Package Definition
2.1.1 Transaction Package Constraints
2.1.3.1 Security Assertion Markup Language (SAML) Overview
2.1.3.1.1 SAML Healthcare Profile
2.1.3.2.1 WS-Trust Healthcare Profile
2.1.3.3.1 Enforcing Privacy Consent Directive Policies
2.1.3.3.2 XACML Healthcare Profile
2.2.2 Additional Constraints on Required Constructs
2.3.3 Informative Reference Standards
3.1 Access Control Implementation
3.2 Examples of the Application of Access Control
3.2.1 Process Query to Provide Laboratory Test Result Location(s)
3.3 Access Control and Authorization Services
3.4 Structural and Functional Roles
Figures and Tables
Figure 2-1 High Level Access Control Interactions
Figure 2-2 Detailed Access Control Interface Interaction Diagram
Figure 3-1 Development of Security and Privacy protections
Figure 3-2 Full list of Permissions from HL7
Figure 3-3 Role Structure (Adapted from ANSI INCITS Role Model)
Figure 3-4 Access Control Standards
Figure 3-5 WS-Trust Security Model
Figure 3-6 OASIS XACML Components
Table 2-1 Transaction Package Constraints
Table 2-3 Interface and Transaction/Content Constraints
Table 2-9 Construct Dependencies
Table 2-10 Additional Constraints on Required Constructs
Table 2-11 Regulatory Guidance
Table 2-13 Informative Reference Standards
Table 3-1 Full list of Permissions from HL7
![]() |
Return to detail page at www.hitsp.org | HITSP/TP20 |
| Next |