Da Vinci Clinical Data Exchange (CDex), published by HL7 International / Payer/Provider Information Exchange Work Group. This guide is not an authorized publication; it is the continuous build for version 2.1.0 built by the FHIR (HL7® FHIR® Standard) CI Build. This version is based on the current content of https://github.com/HL7/davinci-ecdx/ and changes regularly. See the Directory of published versions
| Official URL: http://hl7.org/fhir/us/davinci-cdex/Requirements/cdex-signer | Version: 2.1.0 | ||||
| Standards status: Trial-use | Maturity Level: 2 | Computable Name: CDexSignerRequirements | |||
| Other Identifiers: OID:2.16.840.1.113883.4.642.40.21.36.4 | |||||
Copyright/Legal: Used by permission of HL7 International all rights reserved Creative Commons License |
|||||
This Requirements resource lists all the CDex Signer requirements defined in the narrative sections of this IG.
Language: en
| CONF-026 | SHALL | Both CDex Task Attachment Request Profile and the DTR Standard Questionnaire profile have the overlapping capability to indicate that a signature is required. Signers SHALL meet both the Task and Questionnaire signature expectations. Links:
|
| CONF-027 | SHALL | SHALL use the CDex Digital Signature Profile with the CDex Signature Bundle Profile for digitally signed Bundles and with the CDex SDC QuestionnaireResponse Profile for digitally signed QuestionnaireResponse. Links:
|
| CONF-028 | SHALL | [Implementers SHALL follow the following FHIR R6 JSON Signature rules]: The Signature.data is base64 encoded JWS-Signature [RFC 7515]: JSON Web Signature (JWS) Links:
|
| CONF-029 | SHALL | [Implementers SHALL follow the following FHIR R6 JSON Signature rules]: The JWS mime type Links:
|
| CONF-030 | SHALL | [Implementers SHALL follow the following FHIR R6 JSON Signature rules]:...SHALL use the IETF JSON Canonicalization Scheme (JCS) (see RFC 8785) to generate the canonical form of the resource. Links:
|
| CONF-031 | SHALL | [Implementers SHALL follow the following FHIR R6 JSON Signature rules]:... the URI Links:
|
| CONF-034 | SHALL | [Implementers SHALL follow the following FHIR R6 JSON Signature rules]: Links:
|
| CONF-035 | SHALL | [Implementers SHALL follow the following FHIR R6 JSON Signature rules]: For signatures representing the entire QuestionnaireResponse, Links:
|
| CONF-036 | SHALL | [Implementers SHALL follow the following FHIR R6 JSON Signature rules]: For signatures representing an item in the QuestionnaireResponse, the Links:
|
| CONF-037 | SHALL | [Implementers SHALL follow the following FHIR R6 JSON Signature rules]: The signature SHALL include a Links:
|
| CONF-038 | SHALL | [Implementers SHALL follow the following FHIR R6 JSON Signature rules]: The Links:
|
| CONF-039 | SHALL | [Implementers SHALL follow the following FHIR R6 JSON Signature rules]: The Links:
|
| CONF-040 | SHALL | [The signature header] SHALL include an Links:
|
| CONF-042 | SHALL | [The signature header] SHALL have Links:
|
| CONF-043 | SHALL | [The signature header] SHALL include a Links:
|
| CONF-044 | SHALL | [The signature header] SHALL include a Links:
|
| CONF-046 | SHALL | [The signature] SHALL support JWS compact serialization format for single signatures Links:
|
| CONF-048 | SHALL | The [signature] certificate SHALL include a Subject Alternative Name (SAN) Links:
|
| CONF-049 | SHALL | [The] Subject Alternative Name (SAN) ... SHALL match the Links:
|
| CONF-045 | SHOULD | [The signature] SHOULD use the hashing algorithm SHA256. The signature validation policy will apply to the signature and determine the acceptability Links:
|
| CONF-047 | SHOULD | [The signature] SHOULD support JWS JSON Serialization format to represent multiple signatures with identical parameter values except Links:
|
| CONF-032 | MAY | Implementers that support both XML and JSON wire formats MAY support cross format signatures by:
Links:
|
| CONF-070 | SHALL | [Implementers SHALL follow the following FHIR R6 JSON Signature rules]: The signature is a [Detached] Signature (where the content that is signed is removed from the JWS) Links:
|
| CONF-071 | SHALL | [Implementers SHALL follow the following FHIR R6 JSON Signature rules]: The Links:
|
| CONF-072 | SHALL | [Implementers SHALL follow the following FHIR R6 JSON Signature rules]: When FHIR Resources are signed, the signature is across the Canonical JSON form of the resource(s) Links:
|