ehealth SSO MyCareNet Tarification Willebroekkaai 38 Quai de Willebroeck BRUSSELS

Similar documents
Cookbook Qermid Defibrillator web service Version This document is provided to you free of charge by the. ehealth platform

Cookbook ORTHOpride web service Version v1. This document is provided to you free of charge by the. ehealth platform

OIOIDWS for Healthcare Token Profile for Identity Tokens 1.0

Ephorus Integration Kit

Configure Data Source for Automatic Import from CMDB

OATS Registration and User Entitlement Guide

JSR Java API for JSON Binding (JSON- B)

LiveEngage and Microsoft Dynamics Integration Guide Document Version: 1.0 September 2017

PAY EQUITY HEARINGS TRIBUNAL. Filing Guide. A Guide to Preparing and Filing Forms and Submissions with the Pay Equity Hearings Tribunal

Once the Address Verification process is activated, the process can be accessed by employees in one of two ways:

SmartPass User Guide Page 1 of 50

Your New Service Request Process: Technical Support Reference Guide for Cisco Customer Journey Platform

User Guide. Document Version: 1.0. Solution Version:

Joining SportsWare. Dear Wiley College Student-Athletes:

VMware AirWatch Certificate Authentication for Cisco IPSec VPN

Date: October User guide. Integration through ONVIF driver. Partner Self-test. Prepared By: Devices & Integrations Team, Milestone Systems

SAS Viya 3.2 Administration: Mobile Devices

ONTARIO LABOUR RELATIONS BOARD. Filing Guide. A Guide to Preparing and Filing Forms and Submissions with the Ontario Labour Relations Board

D e v e l o p e r s G u i d e

Compliance Guardian 4. User Guide

Callback Guide. A step by step guide to integrating Callback with your website. All the information you need to confirm Nochex payments.

Enrolling onto the Open Banking Directory How To Guide

UBC BLOGS NSYNC PLUGIN

Aras Innovator Viewer Add-Ons

In order to authenticate with the service, you will need to call the following endpoint:

Background Check Procedures for Sponsors

TRAINING GUIDE. Overview of Lucity Spatial

To start your custom application development, perform the steps below.

Guidance for Applicants: Submitting an application in AAS Ishango Grants Management

Adverse Action Letters

SDMS Training Parnter Support Portal Manual Version 1.0

MARYLAND PHYSICIANS CARE (00247) ERA ENROLLMENT INSTRUCTIONS

I - EDocman Installation EDocman component EDocman Categories module EDocman Documents Module...2

ComplyWorks Subscription User Guide. October 6, 2011

Simple Identity Management Profile

Stock Affiliate API workflow

Guidance for Submitting an application or Nomination in AAS Ishango Online System

OO Shell for Authoring (OOSHA) User Guide

How To: Submit a Training Request Through ZenDesk

Outlook Web Application (OWA) Basic Training

ABELMed Platform Setup Conventions

ArcGIS Metadata Required Elements Lists, New Jersey

IHIS Research Access Request Guidelines

ABELDent Platform Setup Conventions

Frequently Asked Questions Read and follow all instructions for success!

Wave IP 4.5. CRMLink Desktop User Guide

Kaltura Video Extension for SharePoint 2013 Deployment Guide for Microsoft Office 365. Version: 1.0

Sircon User Guide A Guide to Using the Vertafore Sircon Self-Service Portal

NSE 8 Certification. Exam Description for FortiGate 5.2 and higher

Access the site directly by navigating to in your web browser.

The following information must be submitted to the Central Office to renew your certificate(s).

ClassFlow Administrator User Guide

NCTA-Certified Cloud Technologist (NCT) Exam NCT-110

SERVICE LEVEL AGREEMENT. Mission: Certificates Management

USER MANUAL DIGITAL APPLICATION FORM GRANTS FOR VISITORS

AvePoint Perimeter Pro 1.9

Registering for FEMA assistance

Managing User Accounts

Design Document: LinkedIn Basics

Uploading Files with Multiple Loans

Creating a TES Encounter/Transaction Entry Batch

Creating an Online Account

ITIL 2011 Service Offerings and Agreements (SOA)

INTEGRATING OBSERVEIT WITH HP ARCSIGHT CEF

RSA SecurID (Token): Passcode & PIN Initialization / Setup Guide

Users, groups, collections and submissions in DSpace. Contents

In Outlook, how do I allow other users to view my Calendar or other folders in my Exchange mailbox?

HP MPS Service. HP MPS Printer Identification Stickers

MySabre API RELEASE NOTES MYSABRE API VERSION 2.0 (PART OF MYSABRE RELEASE 7.0) OCTOBER 28, 2006 PRODUCTION

USO RESTRITO. SNMP Agent. Functional Description and Specifications Version: 1.1 March 20, 2015

Kaltura Video Tool for Sakai CLE Quick Start Guide. Version: 2.0

Pearson VUE Forms of Candidate Identification

Remote Document Delivery

Data Processing Information for Users of the Career and Alumni Portal of HTW Berlin (Data Privacy Policy)

ROCK-POND REPORTING 2.1

Renewal Reminder. User Guide. Copyright 2009 Data Springs Inc. All rights reserved.

File Submission Guidelines

PAGE NAMING STRATEGIES

To open the event for editing: click on the EDIT link in the far right column of the listing. To view the event: click on the EVENT TITLE.

Imagine for MSDNAA Student SetUp Instructions

Release Notes Version: - v18.13 For ClickSoftware StreetSmart September 22, 2018

Password Management Guidelines

STANLEY Healthcare University Training & Certification Portal. Quick Reference Guide

DICOM Correction Proposal

Frequently Asked Questions Read and follow all instructions for success!

Aras Innovator 8.1 Document #: Last Modified: 4/4/2007. Copyright 2007 Aras Corporation All Rights Reserved.

TPP: Date: October, 2012 Product: ShoreTel PathSolutions System version: ShoreTel 13.x

INSERTING MEDIA AND OBJECTS

E-Lock Policy Manager White Paper

New Tenancy Contact - User manual

Update: Users are updated when their information changes (examples: Job Title or Department). o

CRISP Directory Input File Requirement for MHBE Carriers

Technical Paper. Installing and Configuring SAS Environment Manager in a SAS Grid Environment with a Shared Configuration Directory

Info folder for the certification as Project Director IPMA Level A

Secure Messaging API

iallworx User s Guide

Kaltura MediaSpace Installation and Upgrade Guide. Version: 5.0

Chalkable Classroom For Students

List Notification Feature

Tips & Tricks Data Entry Tool How to import files from Excel or Access into the DET

Transcription:

ehealth SSO MyCareNet Tarificatin This dcument is prvided t yu free f charge by the ehealth platfrm Willebrekkaai 38 Quai de Willebreck 38 1000 BRUSSELS All are free t circulate this dcument with reference t the URL surce. ehealth SSO-MyCareNet Tarificatin v.2 dd 12.09.2016 1/7

Table f cntents Table f cntents... 2 1 Dcument management... 3 1.1 Dcument histry... 3 2 Use f the ehealth SSO slutin... 4 2.1 Healthcare prfessinal... 4 2.1.1 Dctr as individual... 5 2.1.2 Dentist as individual... 5 2.2 Dctr within a hspital... 5 2.3 Healthcare institutin... 5 2.3.1 Guard pst... 6 2.4 Mandate hlder... 6 2.4.1 Mandated rganizatin... 6 2.4.2 Mandated persn... 7 T the attentin f: IT expert willing t integrate this web service. ehealth SSO-MyCareNet Tarificatin v.2 dd 12.09.2016 2/7

1 Dcument management 1.1 Dcument histry Versin Date Authr Descriptin f changes / remarks 1 11/04/2014 ehealth First versin 2 07/09/2016 ehealth Update with new target grups ehealth SSO-MyCareNet Tarificatin v.2 dd 12.09.2016 3/7

2 Use f the ehealth SSO slutin This sectin specifies hw the call t STS must be dne in rder t access the web service. Yu must precise several attributes in the request. T access the MyCareNet tarificatin web service (WS), the respnse tken must cntain: - true fr all f the blean certificatin attributes. - a value fr all the nihii11 certificatin attributes If yu: - btain false fr ne blean certificatin attributes - d nt btain any value fr ne f the nihii11 certificatin attributes then yu shuld cntact ehealth t verify whether the requested test cases were cnfigured in the right way. The dcuments Tarificatin_STS_samlRequest.xml and Tarificatin_STS_samlRespnse.xml prvide STS request/respnse examples. Currently, nly general practitiners (r their mandate-hlder) can access the tarificatin service. In rder t facilitate the Single-Sign-On (SSO) the SAML tkens as described in this sectin (dctr as individual) are the same as fr sme ther services which are used by the general practitiners (e.g. MyCareNet GMF Ntificatin service, MyCareNet Registratin service). 2.1 Healthcare prfessinal The request fr the SAML tken is secured with the prfessinal s eid 1. The certificate used by the Hlder-Of-Key (HOK) verificatin mechanism is an ehealth certificate. The required attributes are the fllwing (AttributeNamespace: "urn:be:fgv:identificatin-namespace"): The scial security identificatin number f the prfessinal: urn:be:fgv:ehealth:1.0:certificatehlder:persn:ssin urn:be:fgv:persn:ssin Fr each prfessinal, the fllwing infrmatin must be asserted by ehealth: The scial security identificatin number f the prfessinal : (AttributeNamespace: "urn:be:fgv:identificatin-namespace") urn:be:fgv:ehealth:1.0:certificatehlder:persn:ssin urn:be:fgv:persn:ssin The user uses his/her persnal certificate (AttributeNamespace: "urn:be:fgv:certifiednamespace:ehealth"): urn:be:fgv:ehealth:1.0:certificatehlder:persn:ssin:usersessin:blean Depending n the prfessinal categry, ther attributes may be asserted by ehealth. These attributes are listed in the belw sectins. 1 As fallback, in absence f the eid, the persnal ehealth certificate can be used fr authenticatin instead. ehealth SSO-MyCareNet Tarificatin v.2 dd 12.09.2016 4/7

2.1.1 Dctr as individual Dctr as individual must als request this attribute in the AttributeQuery: The NIHII number f the dctr (AttributeNamespace: "urn:be:fgv:certified-namespace:ehealth"): urn:be:fgv:persn:ssin:ehealth:1.0:dctr:nihii11 2.1.2 Dentist as individual Dentist must als request this attribute in the AttributeQuery: The NIHII number f the dentist (AttributeNamespace: "urn:be:fgv:certified-namespace:ehealth"): urn:be:fgv:persn:ssin:ehealth:1.0:nihii:dentist:nihii11 2.2 Dctr within a hspital The SAML tken request is secured with the ehealth certificate f the hspital. The certificate used by the HOK verificatin mechanism is the same ehealth certificate. The required attributes are the fllwing (AttributeNamespace: "urn:be:fgv:identificatin-namespace"): The scial security identificatin number f the dctr: urn:be:fgv:persn:ssin The NIHII number f the hspital: urn:be:fgv:ehealth:1.0:certificatehlder:hspital:nihii-number urn:be:fgv:ehealth:1.0:hspital:nihii-number Dctr must als specify which infrmatin must be asserted by ehealth: The scial security identificatin number f the dctr (AttributeNamespace: "urn:be:fgv:identificatin-namespace"): urn:be:fgv:persn:ssin The NIHII number f the hspital: urn:be:fgv:ehealth:1.0:certificatehlder:hspital:nihii-number urn:be:fgv:ehealth:1.0:hspital:nihii-number The NIHII number f the dctr (AttributeNamespace: "urn:be:fgv:certified-namespace:ehealth"): urn:be:fgv:persn:ssin:ehealth:1.0:dctr:nihii11 The hspital must be a recgnized hspital (AttributeNamespace: "urn:be:fgv:certifiednamespace:ehealth"): urn:be:fgv:ehealth:1.0:certificatehlder:hspital:nihii-number:recgnisedhspital:blean 2.3 Healthcare institutin The SAML tken request is secured with the ehealth certificate f the institutin. The certificate used by the HOK verificatin mechanism is the same ehealth certificate. The institutin type defines the required attributes. ehealth SSO-MyCareNet Tarificatin v.2 dd 12.09.2016 5/7

2.3.1 Guard pst The required attributes are the fllwing (AttributeNamespace: "urn:be:fgv:identificatin-namespace"): The NIHII number f the guard pst: urn:be:fgv:ehealth:1.0:guardpst:nihii-number urn:be:fgv:ehealth:1.0:certificatehlder:guardpst:nihii-number The healthcare institutin must als specify which infrmatin must be asserted by ehealth: The NIHII number f the healthcare institutin (AttributeNamespace: urn:be:fgv:identificatin-namespace ): urn:be:fgv:ehealth:1.0:guardpst:nihii-number urn:be:fgv:ehealth:1.0:certificatehlder:guardpst:nihii-number The healthcare institutin must be recgnized (AttributeNamespace: urn:be:fgv:certifiednamespace:ehealth): urn:be:fgv:ehealth:1.0:certificatehlder:guardpst:nihii-number:recgnisedguardpst:blean 2.4 Mandate hlder 2.4.1 Mandated rganizatin The SAML tken request is secured with the ehealth certificate f the mandated rganizatin. The certificate used by the HOK verificatin mechanism is the same ehealth certificate. The required attributes are the fllwing (AttributeNamespace: "urn:be:fgv:identificatin-namespace"): The CBE number f the mandated rganizatin: urn:be:fgv:ehealth:1.0:certificatehlder:enterprise:cbe-number urn:be:fgv:kb-bce:rganizatin:cbe-number Mandated rganizatin must als specify which infrmatin must be asserted by ehealth: The CBE number f the mandated rganizatin (AttributeNamespace: "urn:be:fgv:identificatin-namespace"): urn:be:fgv:ehealth:1.0:certificatehlder:enterprise:cbe-number urn:be:fgv:kb-bce:rganizatin:cbe-number The mandated rganizatin must be a recgnized mandated rganizatin (AttributeNamespace: "urn:be:fgv:certified-namespace:ehealth"): The service name : urn:be:fgv:kb-bce:rganizatin:cbe-number:ehealth:1.0:recgnisedmandatary:blean urn:be:fgv:ehealth:1.0.servicename:external with the value insurability ehealth SSO-MyCareNet Tarificatin v.2 dd 12.09.2016 6/7

2.4.2 Mandated persn The request fr the SAML tken is secured with the eid 2 f the mandated persn. The certificate used by the HOK verificatin mechanism is an ehealth certificate. The required attributes are the fllwing (AttributeNamespace: "urn:be:fgv:identificatin-namespace"): The scial security identificatin number f the mandated persn: urn:be:fgv:ehealth:1.0:certificatehlder:persn:ssin urn:be:fgv:persn:ssin Mandated persns have als t specify which infrmatin must be asserted by ehealth: The scial security identificatin number f the mandated persn: (AttributeNamespace: "urn:be:fgv:identificatin-namespace") urn:be:fgv:ehealth:1.0:certificatehlder:persn:ssin urn:be:fgv:persn:ssin The user uses his/her persnal certificate (AttributeNamespace: "urn:be:fgv:certified-namespace:ehealth"): urn:be:fgv:ehealth:1.0:certificatehlder:persn:ssin:usersessin:blean The persn must be a recgnized mandated persn: (AttributeNamespace: "urn:be:fgv:certified-namespace:ehealth") urn:be:fgv:persn:ssin:ehealth:1.0:recgnisedmandatary:blean The service name (AttributeNamespace: "urn:be:fgv:identificatin-namespace"): urn:be:fgv:ehealth:1.0.servicename:external with the value insurability 2 As fallback, in absence f the eid, the persnal ehealth certificate can be used fr authenticatin instead. ehealth SSO-MyCareNet Tarificatin v.2 dd 12.09.2016 7/7