Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.


Setting the available context

...

  1. SOR organizations: 
    • Identified by Constraints with Name attribute = "urn:dk:gov:saml:sorIdentifier" and value = {sor-id}
    • Refers to Fhir Organization with Identifier.system = "urn:oid:1.2.208.176.1.1" and Identifier.value = {sor-id}
    • Example:
      • Constraint:
        • <Constraint Name="urn:dk:gov:saml:sorIdentifier">950531000016003</Constraint>
      • Refers to Organization with: 
        • "Identifier": [{"system": "urn:oid:1.2.208.176.1.1", "value": "950531000016003"}]
  2. STS organizations
    • Identified by Constraints with Name attribute = "urn:dk:kombit:orgUnit" and value = {sts-id}
    • Refers to Fhir Organization with Identifier.system = "https://www.kombit.dk/sts/organisation" and Identifier.value = {sts-id}
    • Example:
      • Contraint:
        • <Constraint Name="urn:dk:kombit:orgUnit">eeeeeeee-b760-11e9-a2a3-2a2ae2dbcce4</Constraint>
      • Refers to Organization with: 
        • "Identifier": [{"system": "https://www.kombit.dk/sts/organisation", "value": "eeeeeeee-b760-11e9-a2a3-2a2ae2dbcce4"}]
  3. SSL organizations
    • Identified by Constraints with Name attribute =  "urn:dk:sundhed:ehealth:sslOrg"
    • Refers to Fhir Organization with Identifier.system = "http://ehealth.sundhed.dk/organization/ssl" and Identifier.value = {ssl-id}
    • Example:
      • Constraint:
        • <Constraint Name="urn:dk:sundhed:ehealth:sslOrg">aaaaaaaa-b760-11e9-a2a3-2a2ae2dbcce4</Constraint>
      • Refers to Organization with: 
        • "Identifier": [{"system": "http://ehealth.sundhed.dk/organization/ssl", "value": "aaaaaaaa-b760-11e9-a2a3-2a2ae2dbcce4"}]

...

Privileges:

Allowed privileges:

...

urn:dk:sundhed:ehealth:role:tele_medicine_actor

...

urn:dk:sundhed:ehealth:role:administrative_personnel

...

urn:dk:sundhed:ehealth:role:healthcare_professional

...

urn:dk:sundhed:ehealth:role:report_generator

...

urn:dk:sundhed:ehealth:role:questionnaire_editor

...

urn:dk:sundhed:ehealth:role:administrator

...

urn:dk:sundhed:ehealth:role:clinical_administrator

...

urn:dk:sundhed:ehealth:role:team_administrator

...

urn:dk:sundhed:ehealth:role:order_placer

...

urn:dk:sundhed:ehealth:role:service_and_logistics

...

urn:dk:sundhed:ehealth:role:incident_reporter

...

urn:dk:sundhed:ehealth:role:supporter

...

urn:dk:sundhed:ehealth:role:ssl_catalogue_annotator

...

urn:dk:sundhed:ehealth:role:ssl_catalogue_responsible

...

urn:dk:sundhed:ehealth:role:ssl_contract_responsible

...

urn:dk:sundhed:ehealth:role:treatment_responsible

...

, see Tokens, Roles and RBAC/ABAC#Privilege-Roles.