Creating this issue for discussion/to get the ball rolling on defining the next steps for the PT-to-PHAC federation process. Unlike the PT-to-PT side of things, we do anticipate continued technical work on the PT-to-PHAC side. Specifically, the federator service should be expected to move towards production, and the requirements should be expected to change/be clarified as we work with PTs to figure out what their aggregation (or equivalent) APIs can/will look like.
A lot of these can be broken out in to their own issues/tasks after discussion/initial investigation. Feel free to check off discussed items/add links to related issues if they've been converted in to specific tasks. Maybe cross out discarded thoughts.
Things we'll need to make assumptions about for now and seek clarity on as we can
- data classification
- authentication
- rate limiting
- data validation
- PHAC facing endpoints
- our source code
- failure handling
Unambiguous items
Creating this issue for discussion/to get the ball rolling on defining the next steps for the PT-to-PHAC federation process. Unlike the PT-to-PT side of things, we do anticipate continued technical work on the PT-to-PHAC side. Specifically, the federator service should be expected to move towards production, and the requirements should be expected to change/be clarified as we work with PTs to figure out what their aggregation (or equivalent) APIs can/will look like.
A lot of these can be broken out in to their own issues/tasks after discussion/initial investigation. Feel free to check off discussed items/add links to related issues if they've been converted in to specific tasks. Maybe cross out discarded thoughts.
Things we'll need to make assumptions about for now and seek clarity on as we can
Unambiguous items