============================================================================= Run Date: JUN 01, 2026 Designation: MAG*3*385 Package : MAG - IMAGING Priority: Mandatory Version : 3 SEQ #276 Status: Released Compliance Date: JUL 02, 2026 ============================================================================= Associated patches: (v)MAG*3*379 <<= must be installed BEFORE `MAG*3*385' Subject: VISTA IMAGING Clinical Display Encryption and other fixes. Category: - Other - Routine Description: ============ VistA Imaging Clinical Display Patch, MAG*3.0*385 supports encryption of data during file transits and fixes other Defects and Adaptive maintenance items. Defects: -------- 1. VISTAIS-6364/INC37425331 - Vista Imaging Clinical Display Image printed records showing Veteran's SSN. Location Reporting Incident: Bob Stump VA Medical Center (AZ) 2. VISTAIS-6153/INC37524981 - VistA Imaging Clinical Display has smaller text than in previous patches. Location Reporting Incident: VA Illiana Health Care System (IL) 3. VISTAIS-6435/INC39668043 - Update VistA Imaging Clinical Display Help- User Manual location to VDL from SharePoint. Location Reporting Incident: Atlanta VA Medical Center (GA) 4. VISTAIS-6646/INC39435143 - VistA Imaging Clinical Display Manual Updates and copy to VDL site. Adaptive Maintenance: ===================== 1. VISTAIS-6417 - VistA Imaging Clinical Display - Redact the SSN from showing up in the log files. 2. VISTAIS-6666 - VistA Imaging Clinical Display - Add Current Delphi Version. Optional Task: ===================== 1. VISTAIS-6408 - VistA Imaging Clinical Display - Add Logic to Get SSL VIXS (VistA Imaging Exchange Server) protocol and port 443/HTTPS (Hypertext Transfer Protocol Secure). EHRM Impact Statement: ---------------------- This patch should have no EHRM impact, and can be installed at all sites, including EHRM converted sites. Patch Components: ---------------- Files & Fields Associated: File Name (Number) Field Name (Number) New/Modified/Deleted ------------------ ------------------- -------------------- N/A Forms Associated: Form Name File Number New/Modified/Deleted --------- ----------- -------------------- N/A Mail Groups Associated: Mail Group Name New/Modified/Deleted --------------- -------------------- N/A Options Associated: Option Name Type New/Modified/Deleted ----------- ---- -------------------- N/A Protocols Associated: Protocol Name New/Modified/Deleted ------------- -------------------- N/A Security Keys Associated: Security Key Name ----------------- N/A Templates Associated: Template Name Type File Name (Number) New/Modified/Deleted ------------- ---- ------------------ -------------------- N/A Remote Procedures Associated: Remote Procedure Name New/Modified/Deleted --------------------- -------------------- N/A Parameter Definitions Associated: Parameter Name New/Modified/Deleted -------------- -------------------- N/A Additional Information: ----------------------- N/A Blood Bank Team Coordination: N/A New Service Requests (NSRs): N/A Patient Safety Issues (PSIs): N/A Defect Tracking System Ticket(s) & Overview: -------------------------------------------- Defects: -------- 1. VISTAIS-6364/INC37425331 - Vista Imaging Clinical Display Image printed records showing Veteran's SSN. Location Reporting Incident: Bob Stump VA Medical Center (AZ) Problem: -------- Per VHA Directive 6507, Veteran's full SSN should not be automatically pulled and printed on records when printing them to respond to requestors. We need to fix this. Resolution: ----------- A coding change was made so that printed reports show "SSN:Redacted" in the header rather than the Veteran's social security number. 2. VISTAIS-6153/INC37524981 - VistA Imaging Clinical Display has smaller text than in previous patches. Location Reporting Incident: VA Illiana Health Care System (IL) Problem: -------- The main VistA Imaging clinical Display window properties changed: The window and its text is smaller for DOB/SSN. Resolution: ----------- A code change was made so that the main VistA Imaging clinical Imaging Display window's properties were set to the original form default font size. Both bold and regular text were corrected. 3. VISTAIS-6435/INC39668043- Update VistA Imaging Clinical Display Help- User Manual location to VDL from SharePoint. Location Reporting Incident: Atlanta VA Medical Center (GA) Problem: -------- Update VistA Imaging Clinical Display Help User Manual location to VDL from Share Point. Currently Clinical Display user manual points to Share Point, requesting to update this to VDL link -https://www.domain.ext/vdl/documents/Clinical/Vista_Imaging_Sys/MAG_Display_U ser_Manual.pdf Resolution: ----------- A code change was made so that the VistA Imaging Clinical Display User Manual location points directly to the VDL. 4. VISTAIS-6646/INC39435143 - VistA Imaging Clinical Display Manual Updates and copy to VDL site. Problem: -------- The user manual is missing graphics for several icons in 2 sections (Item Column section of the user manual and in Appendix D). Resolution: ----------- Restored the missing icons under the "working with Vista Images"->"Icons in the Item Column" section of the User Manual and replaced the 3 missing icons in Appendix D: Clinical Context Object Workgroup (CCOW). Adaptive Maintenance: ===================== ` 1. VISTAIS-6417 - VistA Imaging Clinical Display - Redact the SSN from showing up in the log files. Problem: -------- VistA Imaging Clinical Display is displaying the SSN number in the log files when opening or changing to a new patient record. This information should only be available to users with the "MAG SYSTEM" user key. Resolution: ----------- Added a check where SSN is only shown in the log files if the user has the "MAG SYSTEM" key. 2. VISTAIS-6666 - VistA Imaging Clinical Display - Add Current Delphi Version. Problem: -------- In VistA Imaging Clinical Display, the version of VistA Imaging Clinical Display compiled is not displayed to the end user. This should be fixed in the same way that our VistA Imaging products have been modified. Resolution: ----------- Added the latest version of the Embarcadero Delphi Compiler/IDE to the About box under the Help Menu. This allows users to tell which version of Delphi is being used and will assist users when upgrading/debugging. Optional Task: ===================== 1. VISTAIS-6408 - VistA Imaging Clinical Display - Add Logic to get SSL VIXS (VistA Imaging Exchange Server) protocol and port 443/HTTPS (Hypertext Transfer Protocol Secure). Problem: -------- VistA Imaging Clinical Display acts as the primary interface for clinicians to access, review, and interact with patient images and related clinical documents. While it integrates imaging data with the Electronic Health Record (EHR) and supports clinical workflows across the VA healthcare system, the current implementation transmits data between the client and server using the HTTP protocol, which does not provide encryption or secure communication. This presents the risk of sensitive patient information being exposed to interception during transmission. Resolution: ----------- A code change was made so that the VA Clinical Display network communication between the client and server is established on SSL port 443/HTTPS. Test Sites - SNOW Change Order #: --------------------------------- Bob Stump VA Medical Center (Prescott, AZ) - CHG0728216 Clarksburg VA Medical Center (Clarksburg, WV) - CHG0730195 Software and Documentation Retrieval Instructions: -------------------------------------------------- The software for this patch is being released using a host file. The host file is available at the following location: /srv/vista/patches/SOFTWARE/MAG3_0P385.KID Other Software Files: This release also includes other software files. These files can be obtained by accessing the URL: https://download.vista.domain.ext/index.html/SOFTWARE File Title File Name Format -------------------------------------------------------------------------- Kernel Installation and MAG3_0P385.KID ASCII Distribution System (KIDS) Build for MAG*3.0*385 VistA Imaging Clinical Display MAG3_0P385_CLINICAL_DISPLAY_INSTALL.MSI Binary Client installation file MAG3_0P385_CLINICAL_DISPLAY_SETUP.EXE VistA Imaging Clinical Display Binary Documentation describing the new functionality is included in this release. Documentation can be found on the VA Software Documentation Library at: VA Software Document Library Documentation Title File Name -------------------------------------------------------------------------- Patch Description for MAG*3.0*385 MAG3_0P385_PATCH_DESCRIPTION.PDF Deployment, Installation, Back-Out, MAG3_0P385_DIBRG.PDF and Rollback Guide VistA Imaging Clinical Display MAG_Display_User_Manual.PDF Workstation User Manual Patch Installation: ------------------- Pre/Post Installation Overview: Supported Client Versions: When MAG*3.0*385 is released, the list of supported versions of VistA Imaging Client Name will change: Client Versions Supported: 3.0.385 3.0.379 3.0.334 Client Versions No Longer Supported: 3.0.351 3.0.315 3.0.258 Pre-Installation Instructions: MAG*3.0*385 KIDS must be installed by the compliance date on all VistA Systems that use VistA Imaging Clinical Display client. This patch may be installed with users on the system although it is recommended that it be installed during non-peak hours to minimize potential disruption to users. This patch should take less than 5 minutes to install. Verify that the previous patch in the Supported Client Versions section has been installed. Note: All released VistA Imaging Display Client patches must be installed on the VistA system before installing MAG*3.0*385. Routine MAGIP385 is an installation routine that is automatically deleted after the KIDS installation. Installation Instructions: 1. Use the Load a Distribution option contained on the Kernel Installation and Distribution System Menu to load the Host file. When prompted to "Enter a Host File:" enter /srv/vista/patches/SOFTWARE/MAG3_0P385.KID 2. From the Kernel Installation and Distribution System Menu, select the Installation Menu. From this menu, A. Select the Verify Checksums in Transport Global option to confirm the integrity of the routines that are in the transport global. When prompted for the INSTALL NAME enter the patch or build name (MAG*3.0*385). NOTE: Using will not bring up a Multi-Package build even if it was loaded immediately before this step. It will only Bring up the last patch in the build. B. Select the Backup a Transport Global option to create a backup message. You must use this option and specify what to backup; the entire Build or just Routines. The backup message can be used to restore the routines and components of the build to the pre-patch condition. i. At the Installation option menu, select Backup Transport Global ii. At the Select INSTALL NAME prompt, enter your build (MAG*3.0*385). iii. When prompted for the following, enter "R" for Routines or "B" for Build. Select one of the following: B Build R Routines Enter response: Build iv. When prompted "Do you wish to secure this message? NO//", press and take the default response of "NO". v. When prompted with, "Send mail to: Last name, First Name", press to take default recipient. Add any additional recipients. vi. When prompted with "Select basket to send to: IN//", press and take the default IN mailbox or select a different mailbox. C. You may also elect to use the following options: i. Print Transport Global - This option will allow you to view the components of the KIDS build. ii. Compare Transport Global to Current System - This option will allow you to view all changes that will be made when this patch is installed. It compares all of the components of this patch, such as routines, DDs, templates, etc. D. Select the Install Package(s) option and choose the patch to install. i. If prompted 'Want KIDS to Rebuild Menu Trees Upon Completion of Install? NO//', answer NO. ii. When prompted 'Want KIDS to INHIBIT LOGONs during the install? NO//', answer NO. iii. When prompted 'Want to DISABLE Scheduled Options, Menu Options, and Protocols? NO//', answer NO. iv. When prompted 'Delay Install (Minutes): (0 - 60): 0//', answer 0. v. Enter the Device you want to print the Install messages. You can queue the install by enter a 'Q' at the device prompt. Enter a '^' to abort the install. DEVICE: HOME// Linux Telnet /SSh MAG*3.0*385 ------------------------------------------------------------------------- Install Started for MAG*3.0*385 : Apr 10, 2026@13:06:23 Build Distribution Date: Apr 10, 2026 Installing Routines: Apr 10, 2026@13:06:23 Running Post-Install Routine: POS^MAGIP385 Post Install Mail Message: Apr 10, 2026@13:06:23 Updating Routine file... Updating KIDS files... MAG*3.0*385 Installed. Apr 10, 2026@13:06:23 ------------------------------------------------------------------------- +------------------------------------------------------------+ 100% | 25 50 75 | Complete +------------------------------------------------------------+ Install Completed Client Installation Instructions For installing or updating VistA Imaging Client Name, refer to the VistA Imaging Client Name Installation Guide (VA Software Document Library) Post-Installation Instructions: N/A Back-Out/Roll Back Plan: ------------------------ For information about back-out steps, see document: MAG3_0P385_DIBRG.PDF. Uninstalling the Application: ----------------------------- If it is necessary to uninstall the MAG*3.0*385 client, use the Uninstall option from Programs and Features within Windows Control Panel to Uninstall: VistA Imaging Client Name. Then install the previous version of Client Name. Refer to the VistA Imaging Client Name Installation Guide (VA Software Document Library) KIDS Uninstall: ---------------- If it is necessary to uninstall the MAG*3.0*385 VistA KIDS, the patch backup must be installed. The Kernel Installation & Distribution System menu option, Backup a Transport Global should have been used to create a patch backup of the build prior to installing the patch. (see Installation Steps section, step 2b). Administrators will need to check MailMan for the backup message sent by the Backup a Transport Global function executed prior to the patch install. The patch backup must first be loaded from the MailMan backup message, by performing the message action Xtract KIDS, followed by the PackMan function INSTALL/CHECK MESSAGE. The patch may then be installed using the Install Package(s) option in the KIDS Installation menu. 1. Navigate to the Mailman inbox containing the patch backup message. a. Select the MAG*3.0*385 backup message as shown below: * Backup of MAG*3.0*385 install on b. At the "Enter message action:" prompt, select the Xtract PackMan option. c. At the "Select PackMan function:" prompt, select the Install/Check Message option. d. Enter Yes at the prompt "OK to continue with Load?" 2. Navigate to the Kernel Installation and Distribution System Menu and select the Installation Menu. From this menu: a. Select the Install Package(s) option and choose the patch to install. i. If prompted 'Want KIDS to Rebuild Menu Trees Upon Completion of Install? NO//', answer NO. ii. When prompted 'Want KIDS to INHIBIT LOGONs during the install? NO//', answer NO. iii. When prompted 'Want to DISABLE Scheduled Options, Menu Options, and Protocols? NO//', answer NO. iv. When prompted 'Delay Install (Minutes): (0 - 60): 0//', answer 0. Example, Loading Patch Backup (Build) -------------------------------------------- IN Basket Search *=New/!=Priority.........Subject...............Lines.From.....Read/Rcvd 13093. [313643] 09/06/23 Backup of MAG*3.0*385 3099 Search finished. Enter message number or command: 13093 Subj: Backup of MAG*3.0*385 on Sep 06, 2023 [#313643] 09/06/23@12:43 3099 lines From: MANAGER,SYSTEMS In 'IN' basket. Page 1 -------------------------------------------------------------------------- $TXT Created by PROGRAMMER,MAG at DOSO.DOMAIN.EXT (KIDS) on Tuesday, 09/06/23 at 12:42 Warning: Installing this backup patch message will install older versions of routines and Build Components (options, protocols, templates, etc.). Please verify with the Development Team that it is safe to install. Enter message action (in IN basket): Ignore// Xtract KIDS Select PackMan function: 6 INSTALL/CHECK MESSAGE Line 8 Message #313643 Unloading KIDS Distribution MAG*3.0*385b OK to continue with Load? NO// YES Distribution OK! Want to Continue with Load? YES// Loading Distribution... MAG*3.0*385b Example, Installing Patch Backup (Build) ----------------------------------------------- Select OPTION NAME: XPD MAIN Kernel Installation & Distribution System Select Kernel Installation & Distribution System Option: Installation Select Installation Option: 6 Install Package(s) Select INSTALL NAME: MAG*3.0*385 4/15/26@10:52:35 => MAG*3.0*385 ;Created on Apr 08, 2026@16:59:10 This Distribution was loaded on Apr 15, 2026@10:52:35 with header of MAG*3.0*385 ;Created on Apr 08, 2026@16:59:10 It consisted of the following Install(s): MAG*3.0*385 Checking Install for Package MAG*3.0*385 Install Questions for MAG*3.0*385 Want KIDS to INHIBIT LOGONs during the install? NO// Want to DISABLE Scheduled Options, Menu Options, and Protocols? NO// Enter the Device you want to print the Install messages. You can queue the install by enter a 'Q' at the device prompt. Enter a '^' to abort the install. DEVICE: HOME// MAG*3.0*385 -------------------------------------------------------------------------- Installing Routines: Apr 15, 2026@10:54:16 Running Post-Install Routine: POS^MAGIP385 Post Install Mail Message: Apr 15, 2026@10:54:16 Updating Routine file... Updating KIDS files... MAG*3.0*385 Installed. Apr 15, 2026@10:54:16 ------------------------------------------------------------------------- +------------------------------------------------------------+ 100% | 25 50 75 | Complete +------------------------------------------------------------+ Install Completed Routine Information: ==================== The second line of each of these routines now looks like: ;;3.0;IMAGING;**[Patch List]**;Mar 19, 2002;Build 3 The checksums below are new checksums, and can be checked with CHECK1^XTSUMBLD. Routine Name: MAGGTU4D Before: B4935745 After: B3841234 **93,94,106,117,122,131,149, 138,156,161,167,181,191,188, 216,234,225,256,258,316,290, 315,351,334,379,385** Routine Name: MAGIP385 Before: n/a After: B15113291 **385** Routine list of preceding patches: 379 Routine Information: ==================== The second line of each of these routines now looks like: ;;3.0;IMAGING;**[Patch List]**;Mar 19, 2002;Build 9 The checksums below are new checksums, and can be checked with CHECK1^XTSUMBLD. Routine Name: MAGGTU4D Before: B4935745 After: B3841234 **93,94,106,117,122,131,149, 138,156,161,167,181,191,188, 216,234,225,256,258,316,290, 315,351,334,379,385** Routine Name: MAGIP385 Before: n/a After: B15113291 **385** Routine list of preceding patches: 379 ============================================================================= User Information: Entered By : Date Entered : SEP 09, 2025 Completed By: Date Completed: MAY 28, 2026 Released By : Date Released : JUN 01, 2026 ============================================================================= Packman Mail Message: ===================== No routines included