Basic Audit Log Patterns (BALP)
1.1.4-current - ci-build International flag

Basic Audit Log Patterns (BALP), published by IHE IT Infrastructure Technical Committee. This guide is not an authorized publication; it is the continuous build for version 1.1.4-current built by the FHIR (HL7® FHIR® Standard) CI Build. This version is based on the current content of https://github.com/IHE/ITI.BasicAudit/ and changes regularly. See the Directory of published versions

Example AuditEvent: Server - Audit Example of a basic patient identifiable Query (GET)

Server - Audit Example of a basic patient identifiable Query (GET)

Audit Example for a RESTful Query using GET with a patient subject, recorded by the Server

  • recorded by the server peer client
  • server is FHIR application server defined by ex-device
  • client is a computer at myMachine.example.org
  • user is John Smith
  • query is for an Observation for given patient
  • patient is specified
  • X-Request-Id is specified

The http GET requested

GET test.fhir.org/r4/Observation?patient=ex-patient&_lastUpdated=gt2020-11-06T21:52:30.300Z&_sort=_lastUpdated&_count=10
Accept: application/fhir+json; fhirVersion=4.0
X-Request-Id: cc6d168e-5871-11ec-bf63-0242ac130002

Generated Narrative: AuditEvent ex-auditBasicQueryGetServer

type: Audit Event ID rest: Restful Operation

subtype: FHIR Restful Interactions search: search

action: Execute

recorded: 2020-04-29 09:49:00+0000

outcome: Success

agent

type: Source Role ID

who: myMachine.example.org

requestor: false

Networks

-AddressType
*2001:0db8:85a3:0000:0000:8a2e:0370:7334IP Address

agent

type: Destination Role ID

who: Device

requestor: false

Networks

-AddressType
*http://server.example.com/fhirURI

agent

type: information recipient

who: John Smith

requestor: true

Sources

-SiteObserverType
*server.example.comDeviceAudit Event Source Type 4: Application Server

entity

type: Audit event entity type 2: System Object

role: AuditEventEntityRole 24: Query

description: GET test.fhir.org/r4/Observation?patient=ex-patient&_lastUpdated=gt2020-11-06T21:52:30.300Z&_sort=_lastUpdated&_count=10 Accept: application/fhir+json; fhirVersion=4.0 X-Request-Id: cc6d168e-5871-11ec-bf63-0242ac130002

query: R0VUIHRlc3QuZmhpci5vcmcvcjQvT2JzZXJ2YXRpb24/cGF0aWVudD1leC1wYXRpZW50Jl9sYXN0VXBkYXRlZD1ndDIwMjAtMTEtMDZUMjE6NTI6MzAuMzAwWiZfc29ydD1fbGFzdFVwZGF0ZWQmX2NvdW50PTEwCkFjY2VwdDogYXBwbGljYXRpb24vZmhpcitqc29uOyBmaGlyVmVyc2lvbj00LjAKWC1SZXF1ZXN0LUlkOiBjYzZkMTY4ZS01ODcxLTExZWMtYmY2My0wMjQyYWMxMzAwMDI=

entity

what: John Schmidt Other, DoB: 1923-07-25

type: Audit event entity type 1: Person

role: AuditEventEntityRole 1: Patient

entity

what: Identifier: cc6d168e-5871-11ec-bf63-0242ac130002

type: Entity Types that are defined in IHE BasicAudit XrequestId: transport specific unique identifier where http X-Request-Id is used