Basic Audit Log Patterns (BALP)
1.1.3 - Trial-Implementation International flag

This page is part of the IHE Basic Audit Log Patterns (BALP) (v1.1.3: Publication) based on FHIR (HL7® FHIR® Standard) R4. This is the current published version. For a full list of available versions, see the Directory of published versions

: Audit Example of a basic SAML access token of comprehensive - TTL Representation

Raw ttl | Download


@prefix fhir: <http://hl7.org/fhir/> .
@prefix owl: <http://www.w3.org/2002/07/owl#> .
@prefix rdfs: <http://www.w3.org/2000/01/rdf-schema#> .
@prefix xsd: <http://www.w3.org/2001/XMLSchema#> .

# - resource -------------------------------------------------------------------

 a fhir:AuditEvent ;
  fhir:nodeRole fhir:treeRoot ;
  fhir:id [ fhir:v "ex-auditPoke-SAML-Comp"] ; # 
  fhir:meta [
    ( fhir:profile [
fhir:v "https://profiles.ihe.net/ITI/BALP/StructureDefinition/IHE.BasicAudit.SAMLaccessTokenUse.Comprehensive"^^xsd:anyURI ;
fhir:link <https://profiles.ihe.net/ITI/BALP/StructureDefinition/IHE.BasicAudit.SAMLaccessTokenUse.Comprehensive>     ] ) ;
    ( fhir:security [
fhir:system [ fhir:v "http://terminology.hl7.org/CodeSystem/v3-ActReason"^^xsd:anyURI ] ;
fhir:code [ fhir:v "HTEST" ]     ] )
  ] ; # 
  fhir:text [
fhir:status [ fhir:v "extensions" ] ;
fhir:div "<div xmlns=\"http://www.w3.org/1999/xhtml\"><p><b>Generated Narrative: AuditEvent</b><a name=\"ex-auditPoke-SAML-Comp\"> </a></p><div style=\"display: inline-block; background-color: #d9e0e7; padding: 6px; margin: 4px; border: 1px solid #8da1b4; border-radius: 5px; line-height: 60%\"><p style=\"margin-bottom: 0px\">Resource AuditEvent &quot;ex-auditPoke-SAML-Comp&quot; </p><p style=\"margin-bottom: 0px\">Profile: <a href=\"StructureDefinition-IHE.BasicAudit.SAMLaccessTokenUse.Comprehensive.html\">Basic AuditEvent pattern for when an activity was authorized by an SAML access token Comprehensive</a></p><p style=\"margin-bottom: 0px\">Security Labels: <span title=\"{http://terminology.hl7.org/CodeSystem/v3-ActReason http://terminology.hl7.org/CodeSystem/v3-ActReason}\">http://terminology.hl7.org/CodeSystem/v3-ActReason</span></p></div><p><b>type</b>: Application Activity (Details: DICOM code 110100 = 'Application Activity', stated as 'Application Activity')</p><p><b>subtype</b>: Boredom poke (Details: urn:ietf:rfc:1438 code poke = 'poke', stated as 'Boredom poke')</p><p><b>action</b>: R</p><p><b>recorded</b>: Dec 3, 2021, 3:49:00 AM</p><p><b>outcome</b>: 0</p><blockquote><p><b>agent</b></p><p><b>AuditEvent.agent Assurance Level</b>: high authentication process level of assurance <span style=\"background: LightGoldenRodYellow; margin: 4px; border: 1px solid khaki\"> (<a href=\"http://terminology.hl7.org/5.3.0/CodeSystem-v3-ObservationValue.html\">ObservationValue</a>#LOAAP4)</span></p><p><b>AuditEvent.agent other identifiers</b>: SAML subject-id/JohnDoe</p><p><b>AuditEvent.agent other identifiers</b>: National provider identifier/1234567@myNPIregistry.example.org</p><p><b>AuditEvent.agent other identifiers</b>: Provider number/JohnD</p><p><b>type</b>: information recipient <span style=\"background: LightGoldenRodYellow; margin: 4px; border: 1px solid khaki\"> (<a href=\"CodeSystem-UserAgentTypes.html\">The code used to identifiy a User Agent</a>#UserSamlAgent; <a href=\"http://terminology.hl7.org/5.3.0/CodeSystem-v3-ParticipationType.html\">ParticipationType</a>#IRCP)</span></p><p><b>who</b>: <span><code>https://sts.sykehuspartner.no</code>/05086900124</span></p><p><b>requestor</b>: true</p><p><b>policy</b>: <code>XC4WdYS0W5bjsMGc5Ue6tClD_5U</code></p><p><b>purposeOfUse</b>: patient requested <span style=\"background: LightGoldenRodYellow; margin: 4px; border: 1px solid khaki\"> (<a href=\"http://terminology.hl7.org/5.3.0/CodeSystem-v3-ActReason.html\">ActReason</a>#PATRQT)</span></p></blockquote><blockquote><p><b>agent</b></p><p><b>type</b>: healthcare provider <span style=\"background: LightGoldenRodYellow; margin: 4px; border: 1px solid khaki\"> (<a href=\"http://terminology.hl7.org/5.3.0/CodeSystem-v3-RoleClass.html\">RoleClass</a>#PROV)</span></p><p><b>who</b>: <span>: St. Mary of Examples</span></p><p><b>requestor</b>: false</p></blockquote><blockquote><p><b>agent</b></p><p><b>type</b>: homeCommunityId <span style=\"background: LightGoldenRodYellow; margin: 4px; border: 1px solid khaki\"> (unknown#homeCommunityId)</span></p><p><b>who</b>: <span>homeCommunityId/urn:uuid:cadbf8d0-5493-11ec-bf63-0242ac130002</span></p><p><b>requestor</b>: false</p></blockquote><h3>Sources</h3><table class=\"grid\"><tr><td style=\"display: none\">-</td><td><b>Site</b></td><td><b>Observer</b></td><td><b>Type</b></td></tr><tr><td style=\"display: none\">*</td><td>server.example.com</td><td><a href=\"Device-ex-device.html\">Device/ex-device</a></td><td>Application Server (Details: http://terminology.hl7.org/CodeSystem/security-source-type code 4 = 'Application Server', stated as 'Application Server')</td></tr></table><blockquote><p><b>entity</b></p><p><b>what</b>: <span>urn:uuid:a4b1d27e-5493-11ec-bf63-0242ac130002</span></p><p><b>type</b>: Consent (Details: http://hl7.org/fhir/resource-types code Consent = 'Consent', stated as 'Consent')</p><blockquote><p><b>detail</b></p><p><b>type</b>: urn:ihe:iti:xua:2012:acp</p><p><b>value</b>: urn:uuid:b8aa8eec-5493-11ec-bf63-0242ac130002</p></blockquote><blockquote><p><b>detail</b></p><p><b>type</b>: urn:oasis:names:tc:xacml:2.0:resource:resource-id</p><p><b>value</b>: urn:uuid:d7391e5a-5493-11ec-bf63-0242ac130002</p></blockquote></blockquote></div>"
  ] ; # 
  fhir:type [
fhir:system [ fhir:v "http://dicom.nema.org/resources/ontology/DCM"^^xsd:anyURI ] ;
fhir:code [ fhir:v "110100" ] ;
fhir:display [ fhir:v "Application Activity" ]
  ] ; # 
  fhir:subtype ( [
fhir:system [ fhir:v "urn:ietf:rfc:1438"^^xsd:anyURI ] ;
fhir:code [ fhir:v "poke" ] ;
fhir:display [ fhir:v "Boredom poke" ]
  ] ) ; # 
  fhir:action [ fhir:v "R"] ; # 
  fhir:recorded [ fhir:v "2021-12-03T09:49:00.000Z"^^xsd:dateTime] ; # 
  fhir:outcome [ fhir:v "0"] ; # 
  fhir:agent ( [
    ( fhir:extension [
fhir:url [ fhir:v "https://profiles.ihe.net/ITI/BALP/StructureDefinition/ihe-assuranceLevel"^^xsd:anyURI ] ;
fhir:value [
a fhir:CodeableConcept ;
        ( fhir:coding [
fhir:system [ fhir:v "http://terminology.hl7.org/CodeSystem/v3-ObservationValue"^^xsd:anyURI ] ;
fhir:code [ fhir:v "LOAAP4" ]         ] )       ]     ] [
fhir:url [ fhir:v "https://profiles.ihe.net/ITI/BALP/StructureDefinition/ihe-otherId"^^xsd:anyURI ] ;
fhir:value [
a fhir:Identifier ;
fhir:type [
          ( fhir:coding [
fhir:system [ fhir:v "https://profiles.ihe.net/ITI/BALP/CodeSystem/OtherIdentifierTypes"^^xsd:anyURI ] ;
fhir:code [ fhir:v "SAML-subject-id" ]           ] )         ] ;
fhir:value [ fhir:v "JohnDoe" ]       ]     ] [
fhir:url [ fhir:v "https://profiles.ihe.net/ITI/BALP/StructureDefinition/ihe-otherId"^^xsd:anyURI ] ;
fhir:value [
a fhir:Identifier ;
fhir:type [
          ( fhir:coding [
fhir:system [ fhir:v "http://terminology.hl7.org/CodeSystem/v2-0203"^^xsd:anyURI ] ;
fhir:code [ fhir:v "NPI" ]           ] )         ] ;
fhir:value [ fhir:v "1234567@myNPIregistry.example.org" ]       ]     ] [
fhir:url [ fhir:v "https://profiles.ihe.net/ITI/BALP/StructureDefinition/ihe-otherId"^^xsd:anyURI ] ;
fhir:value [
a fhir:Identifier ;
fhir:type [
          ( fhir:coding [
fhir:system [ fhir:v "http://terminology.hl7.org/CodeSystem/v2-0203"^^xsd:anyURI ] ;
fhir:code [ fhir:v "PRN" ]           ] )         ] ;
fhir:value [ fhir:v "JohnD" ]       ]     ] ) ;
fhir:type [
      ( fhir:coding [
fhir:system [ fhir:v "https://profiles.ihe.net/ITI/BALP/CodeSystem/UserAgentTypes"^^xsd:anyURI ] ;
fhir:code [ fhir:v "UserSamlAgent" ]       ] [
fhir:system [ fhir:v "http://terminology.hl7.org/CodeSystem/v3-ParticipationType"^^xsd:anyURI ] ;
fhir:code [ fhir:v "IRCP" ] ;
fhir:display [ fhir:v "information recipient" ]       ] )     ] ;
fhir:who [
fhir:identifier [
fhir:system [ fhir:v "https://sts.sykehuspartner.no"^^xsd:anyURI ] ;
fhir:value [ fhir:v "05086900124" ]       ]     ] ;
fhir:requestor [ fhir:v "true"^^xsd:boolean ] ;
    ( fhir:policy [ fhir:v "XC4WdYS0W5bjsMGc5Ue6tClD_5U"^^xsd:anyURI ] ) ;
    ( fhir:purposeOfUse [
      ( fhir:coding [
fhir:system [ fhir:v "http://terminology.hl7.org/CodeSystem/v3-ActReason"^^xsd:anyURI ] ;
fhir:code [ fhir:v "PATRQT" ]       ] )     ] )
  ] [
fhir:type [
      ( fhir:coding [
fhir:system [ fhir:v "http://terminology.hl7.org/CodeSystem/v3-RoleClass"^^xsd:anyURI ] ;
fhir:code [ fhir:v "PROV" ] ;
fhir:display [ fhir:v "healthcare provider" ]       ] )     ] ;
fhir:who [
fhir:identifier [
fhir:value [ fhir:v "1234567@myOrganizationRegistry.example.org" ]       ] ;
fhir:display [ fhir:v "St. Mary of Examples" ]     ] ;
fhir:requestor [ fhir:v "false"^^xsd:boolean ]
  ] [
fhir:type [
      ( fhir:coding [
fhir:system [ fhir:v "urn:ihe:iti:xca:2010"^^xsd:anyURI ] ;
fhir:code [ fhir:v "homeCommunityId" ]       ] )     ] ;
fhir:who [
fhir:identifier [
fhir:type [
          ( fhir:coding [
fhir:system [ fhir:v "urn:ihe:iti:xca:2010"^^xsd:anyURI ] ;
fhir:code [ fhir:v "homeCommunityId" ]           ] )         ] ;
fhir:value [ fhir:v "urn:uuid:cadbf8d0-5493-11ec-bf63-0242ac130002" ]       ]     ] ;
fhir:requestor [ fhir:v "false"^^xsd:boolean ]
  ] ) ; # 
  fhir:source [
fhir:site [ fhir:v "server.example.com" ] ;
fhir:observer [
fhir:reference [ fhir:v "Device/ex-device" ]     ] ;
    ( fhir:type [
fhir:system [ fhir:v "http://terminology.hl7.org/CodeSystem/security-source-type"^^xsd:anyURI ] ;
fhir:code [ fhir:v "4" ] ;
fhir:display [ fhir:v "Application Server" ]     ] )
  ] ; # 
  fhir:entity ( [
fhir:what [
fhir:identifier [
fhir:value [ fhir:v "urn:uuid:a4b1d27e-5493-11ec-bf63-0242ac130002" ]       ]     ] ;
fhir:type [
fhir:system [ fhir:v "http://hl7.org/fhir/resource-types"^^xsd:anyURI ] ;
fhir:code [ fhir:v "Consent" ] ;
fhir:display [ fhir:v "Consent" ]     ] ;
    ( fhir:detail [
fhir:type [ fhir:v "urn:ihe:iti:xua:2012:acp" ] ;
fhir:value [ fhir:v "urn:uuid:b8aa8eec-5493-11ec-bf63-0242ac130002" ]     ] [
fhir:type [ fhir:v "urn:oasis:names:tc:xacml:2.0:resource:resource-id" ] ;
fhir:value [ fhir:v "urn:uuid:d7391e5a-5493-11ec-bf63-0242ac130002" ]     ] )
  ] ) . #