TKB Clinical Process Activity Actions
0.1.0 - ci-build Sweden

TKB Clinical Process Activity Actions - Local Development build (v0.1.0) built by the FHIR (HL7® FHIR® Standard) Build Tools. See the Directory of published versions

Security

Security

This section describes security requirements for consuming and providing the services.

TLS

  • TLS 1.2 or higher is required

WS-Security

  • SITHS certificates for mutual TLS
  • Digital signature and timestamp in SOAP headers

Example WS-Security Header (truncated)

<wsse:Security xmlns:wsse="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1.0.xsd">
  <wsu:Timestamp xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd">
    <wsu:Created>2025-01-01T10:00:00Z</wsu:Created>
    <wsu:Expires>2025-01-01T10:05:00Z</wsu:Expires>
  </wsu:Timestamp>
  <!-- BinarySecurityToken and Signature would be included here -->
</wsse:Security>

PDL Compliance

  • Access control, blocking (spärr), audit logging, consent handling