A_19303-21 - Legal Policy – gesetzlich vorgegebene Zugriffsrechte
Das ePA-Aktensystem MUSS alle in der folgenden Tabelle aufgeführten Regeln der Legal Policy bei jedem Zugriff auf Daten und Dienste des Aktenkontos durchsetzen.
Tabelle 1: Legal Policy
Kategorie | Nutzergruppe | |||||||||||
Technischer Identifier | Med |
Apo | Pflege | GH | HME | AM | KTR | OM | DiGA | eRP | Ver | |
Medical Services (XDS Document Service) |
Zugriffsrecht gemäß § 352 SGB V | |||||||||||
reports | CRUD | R | R | R | R | R | - | - | - | - | RD | |
emp | CRUD | CRUD | R | R | R | R | - | - | - | - | RD | |
emergency | CRUD | R | R | R | R | R | - | - | - | - | RD | |
eab | CRUD | R | R | R | R | R | - | - | - | - | RD | |
dental |
CRUD | - | R | - | - | R | - | - | - | - | RD | |
childsrecord | RD | R | R | RD | R | R | - | - | - | - | RD | |
child |
CRUD | R | R | CRUD | R | R | - | - | - | - | RD (CU (*)) | |
pregnancy_childbirth |
CRUD | R | R | CRUD | R | R | - | - | - | - | RD | |
vaccination |
CRUD | CRUD | R | R | - | CRUD | - | - | - | - | RD | |
patient | RD | R | R | R | R | R | C | - | - | - | CRUD | |
receipt | RD | RD | - | R | R | R | CU | - | - | - | RD | |
health_risk_analysis | - | - | - | - | - | - | C | - | - | - | RD | |
diga | R | R | R | R | R | R | - | - | CU | - | RD | |
care | CRUD | R | CRUD | R | R | R | - | - | - | - | RD | |
eau | CRUD | - | - | - | - | R | - | - | - | - | RD | |
rehab | CRUD | - | - | - | - | - | - | - | - | - | RD | |
transcripts | CRUD | - | - | - | - | - | - | - | - | - | RD | |
other | CRUD | - | - | - | - | R | - | - | - | - | RD | |
Medical Services (FHIR Data Service) |
Zugriffsrecht |
|||||||||||
medication | R | R | R | R | R | R | - | - | - | CU | R | |
Basic Services | Zugriffsrecht | |||||||||||
Consent Decisions | - | - | - | - | - | - | - | x | - | - | x | |
Constraints | - | - | - | - | - | - | - | - | - | - | x | |
Entitlements | x | x | x | x | x | x | - | - | - | - | x | |
Entitlements.Blocked User | - | - | - | - | - | - | - | x | - | - | x | |
Audit Events | - | - | - | - | - | - | - | x | - | - | x | |
Information | x | x | x | x | x | x | x | x | x | x | - | |
Devices | - | - | - | - | - | - | - | - | - | - | x |
Nutzergruppen:
Legende:
Hinweise:
A_19303-22 - Legal Policy – gesetzlich vorgegebene Zugriffsrechte
Das ePA-Aktensystem MUSS alle in der folgenden Tabelle aufgeführten Regeln der Legal Policy bei jedem Zugriff auf Daten und Dienste des Aktenkontos durchsetzen.
Tabelle 2: Legal Policy
Kategorie | Nutzergruppe | |||||||||||
Technischer Identifier | Med |
Apo | Pflege | GH | HME | AM | KTR | OM | DiGA | eRP | Ver | |
Medical Services (XDS Document Service) |
Zugriffsrecht gemäß § 352 SGB V | |||||||||||
reports | CRUD | R | R | R | CRUD | R | - | - | - | - | RD | |
emp | CRUD | CRUD | R | R | R | R | - | - | - | - | RD | |
emergency | CRUD | R | R | R | R | R | - | - | - | - | RD | |
eab | CRUD | R | R | R | R | R | - | - | - | - | RD | |
dental |
CRUD | - | R | - | - | R | - | - | - | - | RD | |
childsrecord | RD | R | R | RD | R | R | - | - | - | - | RD | |
child |
CRUD | R | R | CRUD | R | R | - | - | - | - | RD (CU (*)) | |
pregnancy_childbirth |
CRUD | R | R | CRUD | R | R | - | - | - | - | RD | |
vaccination |
CRUD | CRUD | R | R | - | CRUD | - | - | - | - | RD | |
patient | RD | R | R | R | R | R | C | - | - | - | CRUD | |
receipt | RD | RD | - | R | R | R | CU | - | - | - | RD | |
health_risk_analysis | - | - | - | - | - | - | C | - | - | - | RD | |
diga | R | R | R | R | R | R | - | - | CU | - | RD | |
care | CRUD | R | CRUD | R | R | R | - | - | - | - | RD | |
eau | CRUD | - | - | - | - | R | - | - | - | - | RD | |
rehab | CRUD | - | - | - | - | - | - | - | - | - | RD | |
transcripts | CRUD | - | - | - | - | - | - | - | - | - | RD | |
other | CRUD | - | - | - | - | R | - | - | - | - | RD | |
Medical Services (FHIR Data Service) |
Zugriffsrecht |
|||||||||||
medication | R | R | R | R | R | R | - | - | - | CU | R | |
Basic Services | Zugriffsrecht | |||||||||||
Consent Decisions | - | - | - | - | - | - | - | x | - | - | x | |
Constraints | - | - | - | - | - | - | - | - | - | - | x | |
Entitlements | x | x | x | x | x | x | - | - | - | - | x | |
Entitlements.Blocked User | - | - | - | - | - | - | - | x | - | - | x | |
Audit Events | - | - | - | - | - | - | - | x | - | - | x | |
Information | x | x | x | x | x | x | x | x | x | x | - | |
Devices | - | - | - | - | - | - | - | - | - | - | x |
Nutzergruppen:
Legende:
Hinweise: