<div dir="ltr"><div class="gmail_quote"><blockquote class="gmail_quote" style="margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex"><br><br>
<br>
Either the metadata is registered via a federation, in which case you order them to fix it, or the metadata isn't trustable in which case you should maintain it locally and just edit it as required.<br></blockquote><div>Apologies.  The metadata is a local copy provided by the vendor.  Their SP is sending our users ACS's that belong to other customers' of the vendor.  Am I correct in thinking that if I adjust the local metadata to other customers' ACS's, our users would get authn into a non-UNCG instance with nowhere to go?</div><div> </div></div>-- <br><div dir="ltr" class="gmail_signature"><div dir="ltr"><div><div dir="ltr"><div dir="ltr"><div dir="ltr"><div dir="ltr"><div dir="ltr"><div><div dir="ltr">Jeffrey Williams </div><div dir="ltr">Identity Engineer<br>Identity & Access Services<br><a href="https://its.uncg.edu" target="_blank">https://its.uncg.edu</a></div></div><div dir="ltr"><br></div><div dir="ltr"><img src="https://uncgcdn.blob.core.windows.net/email/UNCGLogo.png"><br></div></div></div></div></div></div></div></div></div></div>