Assertion

AssertionId
ITIZ-013 Testable
predicate
Return a 403 “Forbidden” – This approach communicates that the reason for the failure is an Authorization failure. It should only be used when the client and/or user is trusted to be given this information. Thus, this method is used mostly when the user is allowed to know that access is forbidden. It does not explain how the user might change things to become authorized. This approach may leak that content exists.
Prescription level
Preferred / Should / Recommended
Page
9
Section
Z.7
Status
to be reviewed
Last changed
1/7/20 2:37:45 PM by Anne-Gaëlle Bergé
Comment
Should be clearly defined in each IHE profile

Applies to

Actors

AIPOs

Audit Messages

Integration Profiles

Transactions

Standards

Covered by

Tests

Test Steps

Rules

MBV

Covered by (Deprecated)

Tests

Test Steps

Rules

Document name
Provenance
Revision
Action
IHE ITI Appendix Z SupplementIHE.net2.1