Skip to main content

AuditEvent

A record of an event made for purposes of maintaining a security log. Typical uses include detection of intrusion attempts and monitoring for inappropriate usage.

These interaction paths describe standard FHIR R4 patterns. Availability can depend on the API capabilities enabled for your Ovok project.

InteractionMethodPath
ReadGET/fhir/R4/AuditEvent/[id]
VreadGET/fhir/R4/AuditEvent/[id]/_history/[vid]
UpdatePUT/fhir/R4/AuditEvent/[id]
PatchPATCH/fhir/R4/AuditEvent/[id]
DeleteDELETE/fhir/R4/AuditEvent/[id]
CreatePOST/fhir/R4/AuditEvent
SearchGET/fhir/R4/AuditEvent
HistoryGET/fhir/R4/AuditEvent/[id]/_history

Top-level elements​

ElementTypeCardinalityDescription
idstring0..1Logical id of this artifact
metaMeta0..1Metadata about the resource
implicitRulesuri0..1A set of rules under which this content was created
languagecode0..1Language of the resource content
textNarrative0..1Text summary of the resource, for human interpretation
containedResource0..*Contained, inline Resources
extensionExtension0..*Additional content defined by implementations
modifierExtensionExtension0..*Extensions that cannot be ignored
typeCoding1..1Type/identifier of event
subtypeCoding0..*More specific type/id for the event
actioncode0..1Type of action performed during the event
periodPeriod0..1When the activity occurred
recordedinstant1..1Time when the event was recorded
outcomecode0..1Whether the event succeeded or failed
outcomeDescstring0..1Description of the event outcome
purposeOfEventCodeableConcept0..*The purposeOfUse of the event
agentBackboneElement1..*Actor involved in the event
sourceBackboneElement1..1Audit Event Reporter
entityBackboneElement0..*Data or objects used

Resource-specific search parameters​

ParameterTypeDescription
actiontokenType of action performed during the event
addressstringIdentifier for the network access point of the user device
agentreferenceIdentifier of who
agent-namestringHuman friendly name for the agent
agent-roletokenAgent role in the event
altidtokenAlternative User identity
datedateTime when the event was recorded
entityreferenceSpecific instance of resource
entity-namestringDescriptor for entity
entity-roletokenWhat role the entity played
entity-typetokenType of entity involved
outcometokenWhether the event succeeded or failed
patientreferenceIdentifier of who
policyuriPolicy that authorized event
sitetokenLogical source location within the enterprise
sourcereferenceThe identity of source detecting the event
subtypetokenMore specific type/id for the event
typetokenType/identifier of event

Reference​

Official FHIR R4 spec: AuditEvent.
Maturity: Trial Use 3 (FMM 3).