Security and Permissions
Authentication
Trifolia-on-FHIR is designed to minimally require that the user authenticate in order to access the data that is stored on the FHIR servers that ToF is configured to use. Additional permissions may be required depending on the configuration of the ToF installation.
Permissions
If the ToF installation is configured to require permissions, only data that the user has been permitted to view/edit will be access to them in the user interface. The remainder of this section presumes that permissions are enabled in the installation.
Permissions are maintained for each individual resource in the system. For example, permissions may be different for an instance of an ImplementationGuide compared to a StructureDefinintion that the implementation guide references.
Each edit screen contains a "Permissions" tab which allows the user to define the permissions for the resource. The user may search for users and groups, and add read and/or write permissions to the resource for the selected users/groups.
The user may select a different resource to copy permissions from. This can be done either by:
- Selecting a resource type and typing search criteria in the text field. Suggestions will be presented below the text field. Select one of the suggestions and press the "Copy" button.
- Click the "Search" button next to the text field to select a resource using the advanced search pop-up window. Once a resource has been identified and selected, click the "Copy" button.
If you have been granted permissions to a resource via a group and that resource has other groups associated with it that you aren't a member of, the name of the group will not be shown and the "Permissions" tab will only show you the ID of those other groups.
If you do not have permissions to edit a resource, you will not be able to click the "Edit" button on the resource from the browse screen. Future enhancements may be made to allow the user to access the "Edit" screen in a disabled state when the user doesn't have edit permissions to the resource.
Managing Groups
All users may create/manage their own groups. A group may only have one manager.
To create/edit/delete groups, click your name in the top-right of ToF, and select the "Groups" tab. Changes made to the "Groups" tab are persisted immediately; pressing "Save" is not required and only applies to editing information for your profile.
When you create a group, you are automatically added as a member to the group. You cannot remove yourself as a member from the group.
Importing Resources
When importing new resources, the permissions for those new resources are defaulted to allow the user performing the import view/edit access. To allow additional permissions, you will need to edit each resource and grant additional permissions.
Created with the Personal Edition of HelpNDoc: Create HTML Help, DOC, PDF and print manuals from 1 single source