RE: OpenAthens doppelgänger ?

Koren, Meshna (ELS-AMS) M.Koren at elsevier.com
Mon Dec 6 14:48:17 UTC 2021


Hi David,

OpenAthens is quite concientious about these things and I suggest you contact them directly. Either your library/someone subscribed to OpenAthens withut your knowing or there's some kind of mistake, which then must be corrected.

As for multiple entries with the same name in WAYF (assuming they're real IdPs and not errors), there's a working group (yay!) trying to address that, in case anyone wants to join and/or contribute, here's the charter:
https://docs.google.com/document/d/1lpMtV7G0Gti85XczN815k_SquvShJsTejeo86LRQMLw/
and please let me know (or Heather directly).

Kind regards,
Meshna




Meshna Koren

Product Manager II
Product Management - Identity and Access - Research Products

Elsevier BV
Radarweg 29, Amsterdam 1043 NX, The Netherlands
m.koren at elsevier.com

Federated Access - SAML, Shibboleth, Corporate SSO, OpenAthens, Institutional Login

Elsevier Access Support Center: https://service.elsevier.com/app/answers/list/c/10543/supporthub/elsevieraccess/
for your questions about which access methods does Elsevier support, how to set them up, how do they work for users...






-----Original Message-----
From: users <users-bounces at shibboleth.net> On Behalf Of Peter Schober
Sent: Sunday, December 5, 2021 18:11
To: users at shibboleth.net
Subject: Re: OpenAthens doppelgänger ?

*** External email: use caution ***



* Wessel, Keith <kwessel at illinois.edu> [2021-12-04 00:18]:
> Yes, Sir, as the metadata states, OpenAthens has permission to assert
> @alaska.edu to SPs.

Which begs the question Who gave OpenAthens permission to assert alaska.edu for anything they publish? This web site I found
https://nam11.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdocs.openathens.net%2Fdisplay%2Fpublic%2FOAAccess%2FFederation%2Bmetadata&data=04%7C01%7CM.Koren%40elsevier.com%7C5af49b25f27447b8d0af08d9b8123aef%7C9274ee3f94254109a27f9fb15c10675d%7C0%7C0%7C637743211436248208%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=aHzIPZVlBUp1h9VSELqmCOsFwz%2BaKWutZ2DbX7tmesQ%3D&reserved=0
mentions the metadata URL https://nam11.safelinks.protection.outlook.com/?url=http%3A%2F%2Ffed.openathens.net%2Foafed%2Fmetadata&data=04%7C01%7CM.Koren%40elsevier.com%7C5af49b25f27447b8d0af08d9b8123aef%7C9274ee3f94254109a27f9fb15c10675d%7C0%7C0%7C637743211436248208%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=GLFKFPY9UpFGk29kSaLGv%2Fg1K8YxCE8AnGTFlKzE4ds%3D&reserved=0 and that metadata does not contain any MDRPI extension information. So there's no reference to the applicable registration policies and practices, where I'd expect to find statements detailing the legal/contractual basis that ultimately allows for the creation of such metadata.

So yeah, I'd fully expect people to freak out if something like that ever happend here.

-peter
--
For Consortium Member technical support, see https://nam11.safelinks.protection.outlook.com/?url=https%3A%2F%2Fshibboleth.atlassian.net%2Fwiki%2Fx%2FZYEpPw&data=04%7C01%7CM.Koren%40elsevier.com%7C5af49b25f27447b8d0af08d9b8123aef%7C9274ee3f94254109a27f9fb15c10675d%7C0%7C0%7C637743211436248208%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=U4FQQ3I0o5IcfreyKjJvKtXyGUD5pt7ghdcdetWY%2B3I%3D&reserved=0
To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net

________________________________

Elsevier B.V. Registered Office: Radarweg 29, 1043 NX Amsterdam, The Netherlands, Registration No. 33158992, Registered in The Netherlands.


More information about the users mailing list