Use of intranets / extranets for HIPAA compliance
Collaboration among healthcare professionals, particularly in circumstances that require the sharing of confidential patient information, requires an intranet or extranet that offers enhanced security features.The Health Insurance Portability and Accountability Act (HIPAA) has three major requirements: 
-> Defined authority levels-> Viewing permission controls-> Session time out after 30 minutes-> The ability to disable user-specific cookies,-> The ability of users to change their own password,-> The ability to create strong passwords.-> Complete, un-editable activity log for security auditsChoosing a web-based solutionTo speed the implementation of an intranet or extranet with these features, an increasingly popular approach is to use an Application Service Provider (ASP).
