*Action Items*
New
[AI] {Keith and SteveO} will compose a note to send the MACE-Dir list about
the MedMid WG’s interest in integrity and audit of data in the medical
environment.
[AI] {Jere, Mike, Jack and SteveO} will begin developing a case study pertaining
to data integrity and audit.
[AI] {Group} will forward via the list related links to data integrity and audit
in the medical environment.
[AI] {Jack} will report to the group the VA’s progress to date on data
integrity and audit.
[AI] {SteveO} will send Grouper and Signet links to the group via the list.
*Participants*
Jack Buchanan, University of Tennessee – Memphis (Chair)
Paul Jolly, AAMC
Keith Hazelton, University of Wisconsin - Madison
Mike McGill, Internet2
Jere Retzer, Oregon Health Science University
Mary Kratz, University of Michigan
Terrie Clark, Internet2
Steve Olshansky, Internet2
Ann West, Internet2/EDUCAUSE
*Discussion*
Tufts University will be discussing potential synergies between TUSK and Signet
with representatives of the Signet WG.
http://middleware.internet2.edu/signet/
The group discussed the applicability of developing new use cases pertaining to data integrity and audit. In healthcare it is important to understand where data comes from and who accesses the data within the scope of an identity provider site and an information provider site. When permitting access to data over multiple sites there are requirements to track and ensure the data integrity and reliability. It was also discussed that this topic extends beyond Shibboleth implementations. And, that this topic applies directly to concerns shared by the MACE-Dir and MedMid WG’s. However, the group is not aware of any existing operational recommendations for data audit and integrity assurance at this time. The VA is examining these types of issues. The group hopes to understand the VA’s assessment of data integrity and audit when it is available for review.
The next call is Thursday, December 9, 2004 at 2:00PM ET.