Search Criteria : 27 assertions found for this search Review filtered assertions

Assertion

Applies to

Applied to
Not applied to

Coverage

Covered by
Not covered by
Id scheme
Assertion id
Status
Testable?
#Coverage
#Applies to
Comment
Predicate
Page
Tags
Last changed
Actions
ATNAATNA-1reviewedTestable 0 0 I think this is redundant to ATNA-11. This is just a generic statement about the ITI-19 transaction. > No, the use of bi-directionnal certificate authentication is implicit in ITI19-1, this assertion makes it explicit.The Audit Trail and Node Authentication Integration Profile requires the use of bi-directional certificate-based node authentication for connections to and from each node.72Section 9.410/21/21 3:14:28 PM by NicolasBailliet
ATNAATNA-13reviewedTestable 0 0 This is a grouping requirement. ITI-1 is not required by the ATNA profile. > According to 2nd Review group, the TF is the reference.Secure Node actor which claims support for the Audit Trail and Node Authentication (ATNA) integration profile shall perform the Maintain Time [ITI-1] transaction72Table 9.3-15/21/19 5:24:31 PM by NicolasBailliet
ATNAATNA-14reviewedTestable 0 0 I disagree with this assertion. Section 9.7 reads "If the product claims only to include the Secure Application Actor, that indicates that only those security features that apply to the application features are provided by the product." I expect SAs to support ITI-19 for its IHE transactions that carry PHI. > Yes, this is the philosophy of the SA actor in the TF : "required only for transactions containing PHI". According to 2nd Review group, the TF is the reference, so we won't delete this assertion.Secure Application actor which claims support for the Audit Trail and Node Authentication (ATNA) integration profile may perform the Authentication Node [ITI-19] transaction69Table 9.1-15/21/19 5:24:31 PM by NicolasBailliet
ATNAATNA-15reviewedTestable 0 0 Secure Application actor which claims support for the Audit Trail and Node Authentication (ATNA) integration profile may perform the Maitain Time [ITI-1] transaction72Table 9.3-15/21/19 5:24:31 PM by NicolasBailliet
ATNAATNA-16reviewedTestable 0 0 see previous comment on ITI-19Secure Application actor which claims support for the Audit Trail and Node Authentication (ATNA) integration profile may perform the Record Audit Event [ITI-20] transaction69Table 9.1-17/2/20 3:26:10 PM by sryan
ATNAATNA-17reviewedTestable 0 0 The Secure Node Actor shall include the Authenticate Node [ITI-19] transaction for all network connections that may expose private information. 69Table 9.1-17/2/20 3:26:13 PM by sryan
ATNAATNA-18reviewedTestable 0 0 The Secure Node Actor shall ensure all local user activity (login, logout, etc.) protected to ensure only authorized users. 69Section 9.1.1.15/21/19 5:24:31 PM by NicolasBailliet
ATNAATNA-19reviewedTestable 0 0 I think this is redundant with assertion ATNA-12The Secure Node Actor shall include the record Audit Event as specified in ITI TF-2a: 3.2069Section 9.1.1.15/21/19 5:24:31 PM by NicolasBailliet
ATNAATNA-2reviewedTestable 0 0 probably not a testable assertionSecure Nodes shall either prohibit, or be designed and verified to prevent access to PHI, whenever connections are not bi-directionally node-authenticated .69Section 9.1.15/21/19 5:24:31 PM by NicolasBailliet
ATNAATNA-23reviewedTestable 0 0 Secure Node actor may support the Radiology Audit Trail option71Table 9.2-15/21/19 5:24:31 PM by NicolasBailliet
ATNAATNA-24reviewedTestable 0 0 Secure Application actors may support the Radiology Audit Trail option71Table 9.2-15/21/19 5:24:31 PM by NicolasBailliet
ATNAATNA-25reviewedTestable 0 0 Actors in the IHE Radiology domain Profiles which claim support of the Audit Trail and Node Authentication (ATNA) integration profile are required to implement the Radiology Audit Trail option.83Section 9.5.25/21/19 5:24:31 PM by NicolasBailliet
ATNAATNA-26reviewedTestable 0 0 Audit Record Forwarder actor which claims support of the Audit Trail and Node Authentication (ATNA) integration profile shall support the Record Audit Event [ITI-20] transaction.69Table 9.1-15/21/19 5:24:31 PM by NicolasBailliet
ATNAATNA-27reviewedTestable 0 0 The Secure Node shall use the Authenticate Node transaction for all network connections to or from the node that may expose private information as specified in ITI TF-2a: 3.1969Section 9.1.1.15/21/19 5:24:31 PM by NicolasBailliet
ATNAATNA-28reviewedTestable 0 0 The Secure Application shall use the Authenticate Node transaction for all network connections to or from the application that may expose private information as specified in ITI TF-2a: 3.1970Section 9.1.1.25/21/19 5:24:31 PM by NicolasBailliet
ATNAATNA-29reviewedTestable 0 0 The Secure Application shall provide sufficient authentication methods to ensure that only authorized users access the Secure Application70Section 9.1.1.25/21/19 5:24:31 PM by NicolasBailliet
ATNAATNA-3reviewedTestable 0 0 A Secure Node Actor shall be configurable to support both connection authentication and physically secured networks 72Section 9.45/21/19 5:24:31 PM by NicolasBailliet
ATNAATNA-30reviewedTestable 0 0 The Secure Application shall detect and report a Record Audit Event as specified in ITI TF-2a: 3.2070Section 9.1.1.25/21/19 5:24:31 PM by NicolasBailliet
ATNAATNA-31reviewedTestable 0 0 The Audit Repository shall support all messages complying with the Syslog RFCs shall be accepted. The Audit Repository may ignore or process messages in non-IHE message formats. This may be for backwards compatibility or other reasons.70Section 9.1.1.35/21/19 5:24:31 PM by NicolasBailliet
ATNAATNA-32reviewedTestable 0 0 The Audit Record Forwarder shall be grouped with an Audit Record Repository71Section 9.1.1.45/21/19 5:24:31 PM by NicolasBailliet