{
  "package" : "hl7.terminology@6.3.0",
  "definition" : "Indicator of the medium digital quality or reliability of a defined sequence of messages between a Claimant and a Verifier that demonstrates that the Claimant has possession and control of a valid token to establish his/her identity, and optionally, demonstrates to the Claimant that he or she is communicating with the intended Verifier. \\\\[Based on NIST SP 800-63-2\\\\]\\r\\n\\r\\nMedium authentication process level of assurance indicates that the token can be unlocked with password, biometric, or uses a secure multi-token authentication protocol to establish two-factor authentication. Long-term shared authentication secrets are never revealed to any party except the Claimant and Credential Service Provider (CSP).\\r\\n\\r\\nAuthentication requires that the Claimant prove, through a secure authentication protocol, that he or she controls the token. The Claimant unlocks the token with a password or biometric, or uses a secure multi-token authentication protocol to establish two-factor authentication (through proof of possession of a physical or software token in combination with some memorized secret knowledge). Long-term shared authentication secrets, if used, are never revealed to any party except the Claimant and Verifiers operated directly by the CSP; however, session (temporary) shared secrets may be provided to independent Verifiers by the CSP. In addition to Level 2 requirements, assertions are protected against repudiation by the Verifier.",
  "system" : "http://terminology.hl7.org/CodeSystem/v3-ObservationValue",
  "property" : [ {
    "code" : "status",
    "valueCode" : "active"
  }, {
    "code" : "internalId",
    "valueCode" : "23685"
  }, {
    "_uri" : "http://hl7.org/fhir/concept-properties#parent",
    "code" : "parent",
    "_implicit" : true,
    "valueCode" : "LOAAP"
  } ],
  "codesystem" : "5c27b08a-aae6-5d2d-b9ad-151dd25ce21c",
  "concept_id" : "09f9f4e2-dbc1-53e9-8778-14fae30dca44",
  "ancestors" : {
    "LOAAP" : 1,
    "LOAAP3" : 0,
    "SECTRSTOBV" : 3,
    "TRSTLOAOBV" : 2,
    "_SecurityObservationValue" : 4
  },
  "id" : "4c8f9f32-6dc7-43bc-88ba-be0f7017b784",
  "code" : "LOAAP3",
  "display" : "medium authentication process level of assurance",
  "version" : "4.0.0"
}