AuditIUAgetAccessToken

IHE IUA ITI-71 AuditEvent for a successful Get Access Token

activeBasic Audit Log Patterns (BALP)1.1.4resource26 key elements

Defines constraints on the AuditEvent Resource to record when a ITI-71 - Get Access Token succeeds

This AuditEvent is recorded by Authorization Client and/or Authorization Server that are grouped with ATNA Secure Node or Secure Application.

  • User Authenticated event
  • ITI-71 subtype
  • 2 or 3 agents

- client - - auth-server - user user

  • 1 entity

- the access token request

Metadata

hl7.org/fhir
Canonical URL
https://profiles.ihe.net/ITI/BALP/StructureDefinition/IHE.IUA.71
ID
IHE.IUA.71
Type
Base Definition
Derivation
constraint
Mandatory and Must-Support Elements

Elements with cardinality > 0 or marked as Must Support (S)

PathCard.TypeFlagsDescription
subtype1..1
1+
outcome
1+
agent2..3
1+
:client1..1
1+
agent.type
1+
agent.who
1+
agent.network
1+
:auth-server1..1
1+
agent.type
1+
agent.who
1+
agent.network
1+
agent.type
1+
agent.role
S
agent.who
1+
agent.name
S
agent.purposeOfUse
S
source
S
entity1..1
1+
:token-request1..1
1+
entity.type
1+
entity.role
1+
entity.query
1+
contains the http request in raw form, without the code_verifier value
entity.what
1+
holds the token id issued
entity.type
1+
entity.role
1+
entity.detail
1+
holds the key values from the response