{
  "resourceType": "ValueSet",
  "id": "audit-event-sub-type",
  "meta": {
    "lastUpdated": "2017-04-18T21:44:43.294+00:00",
    "profile": [
      "http://hl7.org/fhir/StructureDefinition/shareablevalueset"
    ]
  },
  "text": {
    "status": "generated",
    "div": "<div xmlns=\"http://www.w3.org/1999/xhtml\">\n            <h2>Audit Event Sub-Type</h2>\n            <div>\n              <p>More detailed code concerning the type of the audit event - defined by DICOM with some FHIR specific additions.</p>\n\n            </div>\n            <p>\n              <b>Copyright Statement:</b> These codes are excerpted from Digital Imaging and Communications in Medicine (DICOM) Standard, Part 16: Content Mapping Resource, Copyright © 2011 by the National Electrical Manufacturers Association.\n            </p>\n            <p>This value set includes codes from the following code systems:</p>\n            <ul>\n              <li>Include these codes as defined in \n                <a href=\"http://dicom.nema.org/resources/ontology/DCM\">\n                  <code>http://dicom.nema.org/resources/ontology/DCM</code>\n                </a>\n                <table class=\"none\">\n                  <tr>\n                    <td>\n                      <b>Code</b>\n                    </td>\n                    <td>\n                      <b>Display</b>\n                    </td>\n                  </tr>\n                  <tr>\n                    <td>\n                      <a href=\"codesystem-dicom-dcim.html#dicom-dcim-110120\">110120</a>\n                    </td>\n                    <td>Application Start</td>\n                    <td>Audit event: Application Entity has started</td>\n                  </tr>\n                  <tr>\n                    <td>\n                      <a href=\"codesystem-dicom-dcim.html#dicom-dcim-110121\">110121</a>\n                    </td>\n                    <td>Application Stop</td>\n                    <td>Audit event: Application Entity has stopped</td>\n                  </tr>\n                  <tr>\n                    <td>\n                      <a href=\"codesystem-dicom-dcim.html#dicom-dcim-110122\">110122</a>\n                    </td>\n                    <td>Login</td>\n                    <td>Audit event: User login has been attempted</td>\n                  </tr>\n                  <tr>\n                    <td>\n                      <a href=\"codesystem-dicom-dcim.html#dicom-dcim-110123\">110123</a>\n                    </td>\n                    <td>Logout</td>\n                    <td>Audit event: User logout has been attempted</td>\n                  </tr>\n                  <tr>\n                    <td>\n                      <a href=\"codesystem-dicom-dcim.html#dicom-dcim-110124\">110124</a>\n                    </td>\n                    <td>Attach</td>\n                    <td>Audit event: Node has been attached</td>\n                  </tr>\n                  <tr>\n                    <td>\n                      <a href=\"codesystem-dicom-dcim.html#dicom-dcim-110125\">110125</a>\n                    </td>\n                    <td>Detach</td>\n                    <td>Audit event: Node has been detached</td>\n                  </tr>\n                  <tr>\n                    <td>\n                      <a href=\"codesystem-dicom-dcim.html#dicom-dcim-110126\">110126</a>\n                    </td>\n                    <td>Node Authentication</td>\n                    <td>Audit event: Node Authentication has been attempted</td>\n                  </tr>\n                  <tr>\n                    <td>\n                      <a href=\"codesystem-dicom-dcim.html#dicom-dcim-110127\">110127</a>\n                    </td>\n                    <td>Emergency Override Started</td>\n                    <td>Audit event: Emergency Override has started</td>\n                  </tr>\n                  <tr>\n                    <td>\n                      <a href=\"codesystem-dicom-dcim.html#dicom-dcim-110128\">110128</a>\n                    </td>\n                    <td>Network Configuration</td>\n                    <td>Audit event: Network configuration has been changed</td>\n                  </tr>\n                  <tr>\n                    <td>\n                      <a href=\"codesystem-dicom-dcim.html#dicom-dcim-110129\">110129</a>\n                    </td>\n                    <td>Security Configuration</td>\n                    <td>Audit event: Security configuration has been changed</td>\n                  </tr>\n                  <tr>\n                    <td>\n                      <a href=\"codesystem-dicom-dcim.html#dicom-dcim-110130\">110130</a>\n                    </td>\n                    <td>Hardware Configuration</td>\n                    <td>Audit event: Hardware configuration has been changed</td>\n                  </tr>\n                  <tr>\n                    <td>\n                      <a href=\"codesystem-dicom-dcim.html#dicom-dcim-110131\">110131</a>\n                    </td>\n                    <td>Software Configuration</td>\n                    <td>Audit event: Software configuration has been changed</td>\n                  </tr>\n                  <tr>\n                    <td>\n                      <a href=\"codesystem-dicom-dcim.html#dicom-dcim-110132\">110132</a>\n                    </td>\n                    <td>Use of Restricted Function</td>\n                    <td>Audit event: A use of a restricted function has been attempted</td>\n                  </tr>\n                  <tr>\n                    <td>\n                      <a href=\"codesystem-dicom-dcim.html#dicom-dcim-110133\">110133</a>\n                    </td>\n                    <td>Audit Recording Stopped</td>\n                    <td>Audit event: Audit recording has been stopped</td>\n                  </tr>\n                  <tr>\n                    <td>\n                      <a href=\"codesystem-dicom-dcim.html#dicom-dcim-110134\">110134</a>\n                    </td>\n                    <td>Audit Recording Started</td>\n                    <td>Audit event: Audit recording has been started</td>\n                  </tr>\n                  <tr>\n                    <td>\n                      <a href=\"codesystem-dicom-dcim.html#dicom-dcim-110135\">110135</a>\n                    </td>\n                    <td>Object Security Attributes Changed</td>\n                    <td>Audit event: Security attributes of an object have been changed</td>\n                  </tr>\n                  <tr>\n                    <td>\n                      <a href=\"codesystem-dicom-dcim.html#dicom-dcim-110136\">110136</a>\n                    </td>\n                    <td>Security Roles Changed</td>\n                    <td>Audit event: Security roles have been changed</td>\n                  </tr>\n                  <tr>\n                    <td>\n                      <a href=\"codesystem-dicom-dcim.html#dicom-dcim-110137\">110137</a>\n                    </td>\n                    <td>User security Attributes Changed</td>\n                    <td>Audit event: Security attributes of a user have been changed</td>\n                  </tr>\n                  <tr>\n                    <td>\n                      <a href=\"codesystem-dicom-dcim.html#dicom-dcim-110138\">110138</a>\n                    </td>\n                    <td>Emergency Override Stopped</td>\n                    <td>Audit event: Emergency Override has Stopped</td>\n                  </tr>\n                  <tr>\n                    <td>\n                      <a href=\"codesystem-dicom-dcim.html#dicom-dcim-110139\">110139</a>\n                    </td>\n                    <td>Remote Service Operation Started</td>\n                    <td>Audit event: Remote Service Operation has Begun</td>\n                  </tr>\n                  <tr>\n                    <td>\n                      <a href=\"codesystem-dicom-dcim.html#dicom-dcim-110140\">110140</a>\n                    </td>\n                    <td>Remote Service Operation Stopped</td>\n                    <td>Audit event: Remote Service Operation has Stopped</td>\n                  </tr>\n                  <tr>\n                    <td>\n                      <a href=\"codesystem-dicom-dcim.html#dicom-dcim-110141\">110141</a>\n                    </td>\n                    <td>Local Service Operation Started</td>\n                    <td>Audit event: Local Service Operation has Begun</td>\n                  </tr>\n                  <tr>\n                    <td>\n                      <a href=\"codesystem-dicom-dcim.html#dicom-dcim-110142\">110142</a>\n                    </td>\n                    <td>Local Service Operation Stopped</td>\n                    <td>Audit event: Local Service Operation Stopped</td>\n                  </tr>\n                </table>\n              </li>\n              <li>Include all codes defined in \n                <a href=\"codesystem-restful-interaction.html\">\n                  <code>http://hl7.org/fhir/restful-interaction</code>\n                </a>\n              </li>\n            </ul>\n          </div>"
  },
  "extension": [
    {
      "url": "http://hl7.org/fhir/StructureDefinition/structuredefinition-ballot-status",
      "valueString": "Informative"
    },
    {
      "url": "http://hl7.org/fhir/StructureDefinition/structuredefinition-fmm",
      "valueInteger": 3
    },
    {
      "url": "http://hl7.org/fhir/StructureDefinition/structuredefinition-wg",
      "valueCode": "sec"
    }
  ],
  "url": "http://hl7.org/fhir/ValueSet/audit-event-sub-type",
  "identifier": [
    {
      "system": "urn:ietf:rfc:3986",
      "value": "urn:oid:2.16.840.1.113883.4.642.3.457"
    }
  ],
  "version": "20100826",
  "name": "Audit Event Sub-Type",
  "status": "active",
  "experimental": true,
  "date": "2010-08-26",
  "publisher": "NEMA/DICOM",
  "contact": [
    {
      "telecom": [
        {
          "system": "url",
          "value": "http://hl7.org/fhir"
        },
        {
          "system": "email",
          "value": "fhir@lists.hl7.org"
        }
      ]
    }
  ],
  "description": "More detailed code concerning the type of the audit event - defined by DICOM with some FHIR specific additions.",
  "copyright": "These codes are excerpted from Digital Imaging and Communications in Medicine (DICOM) Standard, Part 16: Content Mapping Resource, Copyright © 2011 by the National Electrical Manufacturers Association.",
  "compose": {
    "include": [
      {
        "system": "http://dicom.nema.org/resources/ontology/DCM",
        "concept": [
          {
            "code": "110120"
          },
          {
            "code": "110121"
          },
          {
            "code": "110122"
          },
          {
            "code": "110123"
          },
          {
            "code": "110124"
          },
          {
            "code": "110125"
          },
          {
            "code": "110126"
          },
          {
            "code": "110127"
          },
          {
            "code": "110128"
          },
          {
            "code": "110129"
          },
          {
            "code": "110130"
          },
          {
            "code": "110131"
          },
          {
            "code": "110132"
          },
          {
            "code": "110133"
          },
          {
            "code": "110134"
          },
          {
            "code": "110135"
          },
          {
            "code": "110136"
          },
          {
            "code": "110137"
          },
          {
            "code": "110138"
          },
          {
            "code": "110139"
          },
          {
            "code": "110140"
          },
          {
            "code": "110141"
          },
          {
            "code": "110142"
          }
        ]
      },
      {
        "system": "http://hl7.org/fhir/restful-interaction"
      }
    ]
  }
}