Basic Audit Log Patterns (BALP)
1.1.3 - Trial-Implementation International flag

This page is part of the IHE Basic Audit Log Patterns (BALP) (v1.1.3: Publication) based on FHIR (HL7® FHIR® Standard) R4. This is the current published version. For a full list of available versions, see the Directory of published versions

Resource Profile: SAMLaccessTokenUseMinimal - Detailed Descriptions

Active as of 2024-02-14

Definitions for the IHE.BasicAudit.SAMLaccessTokenUse.Minimal resource profile.

Guidance on how to interpret the contents of this table can be found here

0. AuditEvent
2. AuditEvent.agent
SlicingThis element introduces a set of slices on AuditEvent.agent. The slices are unordered and Open, and can be differentiated using the following discriminators:
  • pattern @ type
4. AuditEvent.agent.extension
SlicingThis element introduces a set of slices on AuditEvent.agent.extension. The slices are unordered and Open, and can be differentiated using the following discriminators:
  • value @ url
6. AuditEvent.agent.extension:assuranceLevel
Slice NameassuranceLevel
Control0..*
TypeExtension(AuditEvent.agent Assurance Level) (Extension Type: CodeableConcept)
Must Supporttrue
8. AuditEvent.agent.extension:otherId
Slice NameotherId
Control0..*
TypeExtension(AuditEvent.agent other identifiers) (Extension Type: Identifier)
Must Supporttrue
10. AuditEvent.agent:user
Slice Nameuser
Control1..*
12. AuditEvent.agent:user.extension:assuranceLevel
Slice NameassuranceLevel
Control0..*
TypeExtension(AuditEvent.agent Assurance Level) (Extension Type: CodeableConcept)
Must Supporttrue
14. AuditEvent.agent:user.extension:otherId
Slice NameotherId
Control0..*
TypeExtension(AuditEvent.agent other identifiers) (Extension Type: Identifier)
Must Supporttrue
16. AuditEvent.agent:user.type
Control1..?
Pattern Value{
  "coding" : [{
    "system" : "https://profiles.ihe.net/ITI/BALP/CodeSystem/UserAgentTypes",
    "code" : "UserSamlAgent"
  }]
}
18. AuditEvent.agent:user.who
Control1..?
20. AuditEvent.agent:user.who.identifier
NoteThis is a business identifier, not a resource identifier (see discussion)
22. AuditEvent.agent:user.who.identifier.system
ShortSAML Issuer
Must Supporttrue
24. AuditEvent.agent:user.who.identifier.value
ShortSAML Subject.NameID
Control1..?
Must Supporttrue
26. AuditEvent.agent:user.requestor
Pattern Valuetrue
28. AuditEvent.agent:user.policy
ShortSAML token ID
Control1..1
Must Supporttrue
30. AuditEvent.agent:user.media
Control0..0
32. AuditEvent.agent:user.network
Control0..0
34. AuditEvent.agent:user.purposeOfUse
ShortSAML subject:purposeofuse
Must Supporttrue