Status

Last Updated

13th March, 2025

Version

4

This only applies to customers who are connecting to our Hl7 API over the Public Internet and not using HSCN.

Available endpoints on Port 443:

Deprecations

Overview

The two available endpoints will only accepts ciphers that are deemed as and by the industry, if you are unable to support the below listed ciphers, please contact our support desk (email: help@patientsknowbest.com).

Option 1 - Preferred - mTLS Endpoint

We offer mtls.hl7.uk.patientsknowbest.com to those customers who have moved to the cloud and can’t use static IPs when accessing our services. It is also our prefered setup for new customers.

note

Identity is still derived from client credentials and not the client certificate. mTLS in this scenario is only used to replace IP allow listing.

Identity is still derived from client credentials and not the client certificate. mTLS in this scenario is only used to replace IP allow listing.

To start the process of mTLS client certificate creation please contact ca@patientsknowbest.com stating you wish to set up certificates for the UK production environment.

Option 2 - no-mTLS Endpoint

Customers, who have

can move to no-mtls.hl7.uk.patientsknowbest.com.

Standard ports

Using standard ports (443) allows us to consolidate our server certificate management and fully automate the renewall process for all our endpoints.

WSDL

If you require a WSDL file please use one of the following paths depending on which option you are using:

Supported ciphers

Name (OpenSSL)

mtls

no-mtls

TLS_AES_128_GCM_SHA256

(tick)

(tick)

TLS_AES_256_GCM_SHA384

(tick)

(tick)

TLS_CHACHA20_POLY1305_SHA256

(tick)

(tick)

ECDHE-ECDSA-AES128-GCM-SHA256

(tick)

(tick)

ECDHE-ECDSA-AES256-GCM-SHA384

(tick)

(tick)

ECDHE-ECDSA-CHACHA20-POLY1305

(tick)

(tick)

ECDHE-RSA-AES128-GCM-SHA256

(tick)

(tick)

ECDHE-RSA-AES256-GCM-SHA384

(tick)

(tick)

ECDHE-RSA-CHACHA20-POLY1305

(tick)

(tick)