Permission |
The PermissionPolicyIdentifiers type exposes the following members.
| Name | Description | |
|---|---|---|
| AccessAuditLog | Unrestricted access to the audit repository | |
| AccessClientAdministrativeFunction | Access administrative function on the SanteDB Client | |
| ActivateMatchConfiguration | Activate match configuration | |
| AdministerApplet | Access to administrative applet information | |
| AdministerConceptDictionary | Administer the concept dictionary | |
| AdministerWarehouse | Administer data warehouse | |
| AlterClinicalProtocolConfigurationDefinition | Unrestricted access to modify clinical protocol definitions | |
| AlterDataTemplates | Permission to alter templates | |
| AlterIdentity | Policy identifier for allowing of creating new identities | |
| AlterLocalIdentity | Policy identifier for allowing of creating new identities | |
| AlterMatchConfiguration | Un-restricted match configurations | |
| AlterPolicy | Allows an identity to alter a policy | |
| AlterRoles | Policy identifier for allowance of altering passwords | |
| AlterSecurityChallenge | Policy identifier for allowing for the editing of an identity's security | |
| AlterSystemConfiguration | Unrestricted system configuration | |
| AlterSystemJobSchedule | Alter a job schedule | |
| AssignCertificateToIdentity | Permission to assign a certificate to an entity | |
| AssignPolicy | Allows identity to alter administrative object policy | |
| ChangePassword | Policy identifier for allowance of changing passwords | |
| CreateAnyBackup | Unrestricted backups | |
| CreateApplication | Policy identifier for allowing of creating new applications | |
| CreateClinicalProtocolConfigurationDefinition | Create a clinical protocol | |
| CreateDevice | Policy identifier for allowing of creating new devices | |
| CreateIdentity | Policy identifier for allowing of creating new identities | |
| CreateLocalIdentity | Policy identifier for allowing of creating new identities | |
| CreatePrivateBackup | Create Public backups | |
| CreatePubSubSubscription | Allow principals to create new subscriptions | |
| CreateRoles | Whether the user can create roles | |
| DeleteClinicalData | Delete clinical data | |
| DeleteClinicalProtocolConfigurationDefinition | Delete clinical protocol configurations | |
| DeleteMaterials | delete alll materials | |
| DeletePlacesAndOrgs | delete alll facilities | |
| DeletePubSubSubscription | Allow principals to delete pubsub subs | |
| DeleteServiceLogs | Delete service logs | |
| DeleteWarehouseData | Allow a user to write data to the warehouse | |
| ElevateClinicalData | Indicates the user can elevate themselves (Break the glass) | |
| EnablePubSubSubscription | Allow principals to enable pubsub | |
| ExportClinicalData | Allows the exporting of clinical data | |
| ExportData | Export data from the CDR | |
| IssueCertificates | Permission to sign and issue certificates | |
| Login | Policy identifier for allowance of login | |
| LoginAnywhere | Login to any facility | |
| LoginAsService | Login to an interactive session (with user interaction) | |
| LoginImpersonateApplication | Allow users to impersonate or use their device credentials | |
| LoginPasswordOnly | Login for the purposes of password change only | |
| ManageBackups | Unrestricted backups | |
| ManageDispatcherQueues | Manage all dispatcher / persistent queues | |
| ManageForeignData | Manage foreign data | |
| ManageMail | Manage mail | |
| OverridePolicyPermission | Override policy permission | |
| QueryClinicalData | Query clinical data | |
| QueryMaterials | Query materials | |
| QueryPlacesAndOrgs | Query facilities | |
| QueryWarehouseData | Allow a user to write data to the warehouse | |
| ReadAdministrativeActs | Read non PHI acts | |
| ReadClinicalData | Read clinical data | |
| ReadMaterials | Read materials | |
| ReadMetadata | Indicates the user can read metadata | |
| ReadPlacesAndOrgs | Read facilities | |
| ReadPubSubSubscription | Allow principals to read pubsub subs | |
| ReadServiceLogs | Read service logs | |
| ReadSystemJobs | View system jobs | |
| ReadWarehouseData | Allow a user to write data to the warehouse | |
| RegisterSystemJob | Register a system job | |
| RevokeCertificates | Permission to revoke certificates | |
| SecurityElevations | Security elevations serve as a special block whereby a user must re-enter their password to perform something | |
| StartSystemJob | Start a system job | |
| UnrestrictedAdministration | Access administrative function | |
| UnrestrictedAdministrativeActs | Unrestricted editing of administrative (non PHI) actions | |
| UnrestrictedAll | Access administrative function | |
| UnrestrictedCertificate | Unrestricted certificate management | |
| UnrestrictedClinicalData | Access clinical data permission | |
| UnrestrictedClinicalProtocolConfiguration | Unrestricted access to modify clinical protocol definitions | |
| UnrestrictedJobManagement | Unrestricted access to system jobs | |
| UnrestrictedMatchConfiguration | Un-restricted match configurations | |
| UnrestrictedMetadata | Indicates the user can update metadata | |
| UnrestrictedPubSub | Unresitrected pub/sub | |
| UnrestrictedServiceLogs | Unrestricted access to download and view service logs | |
| UnrestrictedWarehouse | Allow a user all access to the warehouse | |
| WriteAdministrativeActs | Write non PHI acts | |
| WriteClinicalData | Write clinical data | |
| WriteMaterials | Write all materials | |
| WritePlacesAndOrgs | Write all facilities | |
| WriteWarehouseData | Allow a user to write data to the warehouse |