SlideShare a Scribd company logo
1 of 26
American Chemical Society
Secure Remote Access to
Scholarly Resources
Ralph Youngen
Senior Director, Digital Strategy
American Chemical Society
Changes in Higher Education & The Information Marketplace
NISO Virtual Conference
June 17, 2020 1
American Chemical Society 2
Background
• Community-driven efforts to improve remote access to scholarly resources
have been underway for the past five years.
– June 2015: Corporate librarians from the P-D-R (Pharma
Documentation Ring) hold a special meeting on Authentication
Technologies.
– 2016 – June 2019: NISO and STM sponsor the RA21 initiative.
– July 2019 – now: SeamlessAccess builds an operational service
based upon the findings from RA21.
– December 2019 – now: GetFTR service streamlines pathways to
authentic scholarly content.
American Chemical Society 3
Driver Prior to COVID-19: Increased
Demand for Remote Access
American Chemical Society 4
COVID-19: Exponential Growth in
Remote Access Demand
American Chemical Society 5
Challenge: 1990s Authentication
• Today, the predominant method for
validating access to scholarly content is by
IP address recognition.
“Search and discovery have reached a level of maturity and status quo, yet our shared
systems for authentication are out of step in today’s information economy and reinvented
access controls are in immediate need of our collective attention.”
“I counted more than a dozen talks on link resolvers, RA21, open access and other sales
models. …the buzz of the conference was pointing to a brave new future in access
controls.”
American Chemical Society 6
Community Responses
• Two industry efforts are working to modernize authentication pathways:
American Chemical Society 7
Federated Authentication
(a.k.a. SAML, Shibboleth, OpenAthens)
GetFTR and
SeamlessAccess
both utilize
federated
authentication.
Key Concept:
Identity providers (e.g.
universities) control
the information about
its users (called
attributes) that get sent
to service providers.
American Chemical Society 8
GetFTR
• A new service under development by leading scholarly publishers to simplify
pathways from research discovery tools to authentic scholarly content.
• Provides on-the-fly verification of a user’s entitlement rights based upon the
user’s institutional affiliation.
• Targeted at any service where a researcher might conduct a literature search:
– Research discovery tools
– Scientific collaboration networks
– Library resource management systems
– Etc.
American Chemical Society 9
GetFTR (cont.)
• Returns “smart links” customized for the user’s institution.
• These links work regardless of the user’s physical location.
– If connected to a campus network, publisher grants
access based upon IP address.
– If away from a campus network, institutional access
is provided via federated authentication.
American Chemical Society 10
GetFTR In Action
American Chemical Society 11
SeamlessAccess
• Operational successor to the RA21 initiative.
– RA21 initiative concluded with the
publication of a NISO Recommended
Practice, June 2019.
• SeamlessAccess is now building an
operational service based upon the RA21
recommended practices.
American Chemical Society 12
SeamlessAccess: An Improved User
Experience
Information about user’s
institution(s) saved in the local
browser
Trusted service providers are
able to access this institution
data
Reduces the number of times
a user must search for their
institution
In Progress
• CCC
• DARIAH
• Elsevier
• O’Reilly
• Silverchair platform
• Taylor & Francis
• Wiley
Integrated
• ACS
• Atypon platform
• Springer Nature
• SUNET
• TENET
SeamlessAccess Implementations
American Chemical Society 14
COVID-19: Expanding Federated Access
“As you may know, a new outbreak of coronavirus has recently occurred in China. … all students are required to
study online at home. However, now traditional remote access faces significant pressure by the limitation of VPN
capacity … CERNET is actively promoting service providers to join CARSI (CERNET Authentication and Resource
Sharing Infrastructure) to help users access … CARSI bases on the Shibboleth system, it’s among the world’s most
widely deployed federated identity solutions”
February 2020:
March 2020:
American Chemical Society 15
ACS Publications’ Experience
Significant increase in federated
access since COVID-19 due to:
• Shift in demand for remote
access due to campus
closures
• Deployment of the
SeamlessAccess user
experience on March 1, 2020
• Expansion of institutions
enabled for federated access
American Chemical Society 16
Attributes: Key to Privacy
Many universities send personally identifiable attributes even though ACS doesn’t request them.
– A bug on the ACS site displayed the user’s first name if supplied via attributes:
– Now corrected even if personally identifiable attributes are received:
– SeamlessAccess is sponsoring an Entity Categories and Attribute Bundles Working
Group to help universities select the appropriate attribute set for a given service.
• Authorization Only (no attributes), Anonymous, and Pseudonymous
• Pseudonymous identifiers will be critically important to assist campuses with
credential theft.
American Chemical Society 17
Remote Work Drives Sci-Hub Use
• 75% increase in Sci-Hub traffic during COVID-19 (Jan – May 2020).
Publishers Are Collaborating on Sci-Hub
Threat via SNSI
American Chemical Society 19
Sci-Hub’s Scale
“The scale of Elbakyan’s operation has led
experts to conclude that she is not
operating alone and must have the
approval of the Russian government.”
“It’s unclear whether Elbakyan is using
Sci-Hub’s operations in service of Russian
intelligence, but her critics say she has
demonstrated significant hacking skills by
collecting log-in credentials from journal
subscribers, particularly at universities,
and using them to pilfer vast amounts of
academic literature.”
~42%
of compromise is from U.S.
universities*
373
Universities have been
compromised*
>90%
of compromise* is through
Proxy services
Sci-Hub exploits the sentiment around open access to research articles
in order to:
• Get researchers/students to share university login credentials for access to
scholarly research platforms
• Steal & openly share login credentials in dark web forums
Serious Threat to the Research Ecosystem
*April 2019 – March 2020 data
University
#of
successful
breaches
University
#of
successful
breaches
University
#of
successful
breaches
University
#of
successful
breaches
University 1 27450 University 14 6912 University 27 3231 University 40 830
University 2 26240 University 15 6898 University 28 3060 University 41 790
University 3 18212 University 16 6398 University 29 2931 University 42 661
University 4 14807 University 17 5310 University 30 2889 University 43 539
University 5 13149 University 18 5310 University 31 2870 University 44 511
University 6 12936 University 19 4887 University 32 2540 University 45 478
University 7 12453 University 20 4577 University 33 2466 University 46 426
University 8 11988 University 21 4401 University 34 1972 University 47 412
University 9 9430 University 22 4323 University 35 1604 University 48 403
University 10 8497 University 23 4176 University 36 1436 University 49 378
University 11 8303 University 24 3571 University 37 1198 University 50 325
University 12 7715 University 25 3278 University 38 1023
University 13 7318 University 26 3268 University 39 932
• During COVID-19,
students and faculty
working remotely are at
increased risk because
they are beyond the
reach of some campus
security measures.
Increased Phishing Risk During COVID-19
American Chemical Society 22
Marketplaces for Compromised
Credentials
American Chemical Society 23
Publishers Can Detect Anomalous Usage
American Chemical Society 24
Better Data is Needed
• Campus IT often has difficulty identifying the actual user with
potentially compromised credentials based upon information
publishers can provide.
• Pseudonymous identifiers would help dramatically.
– Privacy preserving identifier corresponding to a real university
patron
– Included in federated authentication planning
• Must be enabled by universities
– Sorely needed for proxy users
• Discussions with OCLC underway for EZproxy
American Chemical Society 25
Final Thoughts
• Researchers, just like typical Web users, tend toward simple and
straightforward pathways.
• While working remotely, Sci-Hub is often the simplest and most
straightforward pathway to access scholarly content.
• GetFTR and SeamlessAccess are creating pathways that are easier
to use than Sci-Hub.
• Collaboration between the academic library community, campus IT,
and scholarly publishers is key.
Questions?
26

More Related Content

What's hot

Key Elements of Student Success in Utah Higher Education
Key Elements of Student Success in Utah Higher EducationKey Elements of Student Success in Utah Higher Education
Key Elements of Student Success in Utah Higher EducationHigherEdUtah
 
Board of Regents Strategic Goals 07-30-2015
Board of Regents Strategic Goals 07-30-2015Board of Regents Strategic Goals 07-30-2015
Board of Regents Strategic Goals 07-30-2015HigherEdUtah
 
Spotlight on the Digital: increase discovery of your digital resources
Spotlight on the Digital: increase discovery of your digital resourcesSpotlight on the Digital: increase discovery of your digital resources
Spotlight on the Digital: increase discovery of your digital resourcesPaolaMarchionni
 
Research, Policy & Evaluation: Complex Intersections: Navigating the Waters o...
Research, Policy & Evaluation: Complex Intersections: Navigating the Waters o...Research, Policy & Evaluation: Complex Intersections: Navigating the Waters o...
Research, Policy & Evaluation: Complex Intersections: Navigating the Waters o...guestd83a57
 
Imagining the Impossible: Recruitment Communications in a World Without Paper
Imagining the Impossible: Recruitment Communications in a World Without PaperImagining the Impossible: Recruitment Communications in a World Without Paper
Imagining the Impossible: Recruitment Communications in a World Without PaperBob Johnson, Ph.D.
 
Case Ii Presentation 020510
Case Ii Presentation 020510Case Ii Presentation 020510
Case Ii Presentation 020510ttorello
 
OER Policy National Overview
OER Policy National OverviewOER Policy National Overview
OER Policy National OverviewNicole Allen
 
School of Government Website Workshop Series: Content
School of Government Website Workshop Series: ContentSchool of Government Website Workshop Series: Content
School of Government Website Workshop Series: ContentStefanie Panke
 
Is college worth it
Is college worth itIs college worth it
Is college worth itMichaelB4
 
Research Policy & Evaluation: Checking Assumptions to Accomplish Collaborativ...
Research Policy & Evaluation: Checking Assumptions to Accomplish Collaborativ...Research Policy & Evaluation: Checking Assumptions to Accomplish Collaborativ...
Research Policy & Evaluation: Checking Assumptions to Accomplish Collaborativ...Marissa Lowman
 
California College Readiness Block Grants
California College Readiness Block GrantsCalifornia College Readiness Block Grants
California College Readiness Block GrantsHobsons
 
Showcase Session: College Access & Retention
Showcase Session: College Access & RetentionShowcase Session: College Access & Retention
Showcase Session: College Access & Retentionguestd83a57
 
Intr Alumni Case 2009 Presentation
Intr Alumni Case 2009 PresentationIntr Alumni Case 2009 Presentation
Intr Alumni Case 2009 Presentationstephan_herrlich
 
The State of Higher Education Digital Environments Webinar April 2019
The State of Higher Education Digital Environments Webinar April 2019The State of Higher Education Digital Environments Webinar April 2019
The State of Higher Education Digital Environments Webinar April 2019eQAfy
 
Tomorrow's transformations 5 trends
Tomorrow's transformations   5 trendsTomorrow's transformations   5 trends
Tomorrow's transformations 5 trendsjamzak
 

What's hot (20)

Key Elements of Student Success in Utah Higher Education
Key Elements of Student Success in Utah Higher EducationKey Elements of Student Success in Utah Higher Education
Key Elements of Student Success in Utah Higher Education
 
Board of Regents Strategic Goals 07-30-2015
Board of Regents Strategic Goals 07-30-2015Board of Regents Strategic Goals 07-30-2015
Board of Regents Strategic Goals 07-30-2015
 
Online Consumer Reports WCET
Online Consumer Reports WCETOnline Consumer Reports WCET
Online Consumer Reports WCET
 
Spotlight on the Digital: increase discovery of your digital resources
Spotlight on the Digital: increase discovery of your digital resourcesSpotlight on the Digital: increase discovery of your digital resources
Spotlight on the Digital: increase discovery of your digital resources
 
GAO
GAOGAO
GAO
 
Research, Policy & Evaluation: Complex Intersections: Navigating the Waters o...
Research, Policy & Evaluation: Complex Intersections: Navigating the Waters o...Research, Policy & Evaluation: Complex Intersections: Navigating the Waters o...
Research, Policy & Evaluation: Complex Intersections: Navigating the Waters o...
 
Imagining the Impossible: Recruitment Communications in a World Without Paper
Imagining the Impossible: Recruitment Communications in a World Without PaperImagining the Impossible: Recruitment Communications in a World Without Paper
Imagining the Impossible: Recruitment Communications in a World Without Paper
 
Case Ii Presentation 020510
Case Ii Presentation 020510Case Ii Presentation 020510
Case Ii Presentation 020510
 
OER Policy National Overview
OER Policy National OverviewOER Policy National Overview
OER Policy National Overview
 
Changing Course
Changing CourseChanging Course
Changing Course
 
School of Government Website Workshop Series: Content
School of Government Website Workshop Series: ContentSchool of Government Website Workshop Series: Content
School of Government Website Workshop Series: Content
 
Is college worth it
Is college worth itIs college worth it
Is college worth it
 
Research Policy & Evaluation: Checking Assumptions to Accomplish Collaborativ...
Research Policy & Evaluation: Checking Assumptions to Accomplish Collaborativ...Research Policy & Evaluation: Checking Assumptions to Accomplish Collaborativ...
Research Policy & Evaluation: Checking Assumptions to Accomplish Collaborativ...
 
California College Readiness Block Grants
California College Readiness Block GrantsCalifornia College Readiness Block Grants
California College Readiness Block Grants
 
Six Key Ways to Act
Six Key Ways to ActSix Key Ways to Act
Six Key Ways to Act
 
Showcase Session: College Access & Retention
Showcase Session: College Access & RetentionShowcase Session: College Access & Retention
Showcase Session: College Access & Retention
 
Intr Alumni Case 2009 Presentation
Intr Alumni Case 2009 PresentationIntr Alumni Case 2009 Presentation
Intr Alumni Case 2009 Presentation
 
The State of Higher Education Digital Environments Webinar April 2019
The State of Higher Education Digital Environments Webinar April 2019The State of Higher Education Digital Environments Webinar April 2019
The State of Higher Education Digital Environments Webinar April 2019
 
Tomorrow's transformations 5 trends
Tomorrow's transformations   5 trendsTomorrow's transformations   5 trends
Tomorrow's transformations 5 trends
 
FCC
FCCFCC
FCC
 

Similar to Youngen "Secure Remote Access to Scholarly Resources"

#ALAAC15 Linked Data Love
#ALAAC15 Linked Data Love #ALAAC15 Linked Data Love
#ALAAC15 Linked Data Love Kristi Holmes
 
NISO-STM RA21 Project Update
NISO-STM RA21 Project UpdateNISO-STM RA21 Project Update
NISO-STM RA21 Project UpdateTACNISO
 
CDC National Conference on Health Communication, Marketing and Media 2010
CDC National Conference on Health Communication, Marketing and Media 2010CDC National Conference on Health Communication, Marketing and Media 2010
CDC National Conference on Health Communication, Marketing and Media 2010Michelle C. Farabough
 
Facilitating Scientific Collaborations by Delegating Identity Management
Facilitating Scientific Collaborations by Delegating Identity ManagementFacilitating Scientific Collaborations by Delegating Identity Management
Facilitating Scientific Collaborations by Delegating Identity Management Von Welch
 
20140521 orcid outreach_meeting_jlyle
20140521 orcid outreach_meeting_jlyle20140521 orcid outreach_meeting_jlyle
20140521 orcid outreach_meeting_jlyleORCID, Inc
 
What is Data Commons and How Can Your Organization Build One?
What is Data Commons and How Can Your Organization Build One?What is Data Commons and How Can Your Organization Build One?
What is Data Commons and How Can Your Organization Build One?Robert Grossman
 
CIS 2015- Social Identity Management in Academia Real World BYOI- Tom Eggleston
CIS 2015- Social Identity Management in AcademiaReal World BYOI- Tom EgglestonCIS 2015- Social Identity Management in AcademiaReal World BYOI- Tom Eggleston
CIS 2015- Social Identity Management in Academia Real World BYOI- Tom EgglestonCloudIDSummit
 
Education Roaming and Identity Federation Development
Education Roaming and Identity Federation DevelopmentEducation Roaming and Identity Federation Development
Education Roaming and Identity Federation Developmentirfanullahkhan64
 
SGCI ADMI April 2019
SGCI ADMI April 2019SGCI ADMI April 2019
SGCI ADMI April 2019Marlon Pierce
 
Building Successful API Programs in Higher Education
Building Successful API Programs in Higher EducationBuilding Successful API Programs in Higher Education
Building Successful API Programs in Higher Education3scale
 

Similar to Youngen "Secure Remote Access to Scholarly Resources" (20)

NISO April 30th RA21 Webinar
NISO April 30th RA21 WebinarNISO April 30th RA21 Webinar
NISO April 30th RA21 Webinar
 
#ALAAC15 Linked Data Love
#ALAAC15 Linked Data Love #ALAAC15 Linked Data Love
#ALAAC15 Linked Data Love
 
Ucsd research-it-09-11-18
Ucsd research-it-09-11-18Ucsd research-it-09-11-18
Ucsd research-it-09-11-18
 
Ratan "Are we there yet? Keeping the promise of open science"
Ratan "Are we there yet?  Keeping the promise of open science"Ratan "Are we there yet?  Keeping the promise of open science"
Ratan "Are we there yet? Keeping the promise of open science"
 
NISO-STM RA21 Project Update
NISO-STM RA21 Project UpdateNISO-STM RA21 Project Update
NISO-STM RA21 Project Update
 
CDC National Conference on Health Communication, Marketing and Media 2010
CDC National Conference on Health Communication, Marketing and Media 2010CDC National Conference on Health Communication, Marketing and Media 2010
CDC National Conference on Health Communication, Marketing and Media 2010
 
Alamw15 VIVO
Alamw15 VIVOAlamw15 VIVO
Alamw15 VIVO
 
Carpenter, "RA21 Update"
Carpenter, "RA21 Update"Carpenter, "RA21 Update"
Carpenter, "RA21 Update"
 
Facilitating Scientific Collaborations by Delegating Identity Management
Facilitating Scientific Collaborations by Delegating Identity ManagementFacilitating Scientific Collaborations by Delegating Identity Management
Facilitating Scientific Collaborations by Delegating Identity Management
 
Chris Shillum: Overview of the RA21 proejct presentation
Chris Shillum: Overview of the RA21 proejct presentationChris Shillum: Overview of the RA21 proejct presentation
Chris Shillum: Overview of the RA21 proejct presentation
 
20140521 orcid outreach_meeting_jlyle
20140521 orcid outreach_meeting_jlyle20140521 orcid outreach_meeting_jlyle
20140521 orcid outreach_meeting_jlyle
 
What is Data Commons and How Can Your Organization Build One?
What is Data Commons and How Can Your Organization Build One?What is Data Commons and How Can Your Organization Build One?
What is Data Commons and How Can Your Organization Build One?
 
Sgci nasa-esds-10-29-18
Sgci nasa-esds-10-29-18Sgci nasa-esds-10-29-18
Sgci nasa-esds-10-29-18
 
CIS 2015- Social Identity Management in Academia Real World BYOI- Tom Eggleston
CIS 2015- Social Identity Management in AcademiaReal World BYOI- Tom EgglestonCIS 2015- Social Identity Management in AcademiaReal World BYOI- Tom Eggleston
CIS 2015- Social Identity Management in Academia Real World BYOI- Tom Eggleston
 
OCR cybersecurity
OCR cybersecurityOCR cybersecurity
OCR cybersecurity
 
Education Roaming and Identity Federation Development
Education Roaming and Identity Federation DevelopmentEducation Roaming and Identity Federation Development
Education Roaming and Identity Federation Development
 
SGCI ADMI April 2019
SGCI ADMI April 2019SGCI ADMI April 2019
SGCI ADMI April 2019
 
Building Successful API Programs in Higher Education
Building Successful API Programs in Higher EducationBuilding Successful API Programs in Higher Education
Building Successful API Programs in Higher Education
 
Flanagan - RA21 Improving Access to Scholarly Resources
Flanagan - RA21 Improving Access to Scholarly ResourcesFlanagan - RA21 Improving Access to Scholarly Resources
Flanagan - RA21 Improving Access to Scholarly Resources
 
Identification and Analysis of Malicious Content on Facebook: A Survey
Identification and Analysis of Malicious Content on Facebook: A SurveyIdentification and Analysis of Malicious Content on Facebook: A Survey
Identification and Analysis of Malicious Content on Facebook: A Survey
 

More from National Information Standards Organization (NISO)

More from National Information Standards Organization (NISO) (20)

Mattingly "AI & Prompt Design: Structured Data, Assistants, & RAG"
Mattingly "AI & Prompt Design: Structured Data, Assistants, & RAG"Mattingly "AI & Prompt Design: Structured Data, Assistants, & RAG"
Mattingly "AI & Prompt Design: Structured Data, Assistants, & RAG"
 
Mattingly "AI & Prompt Design: The Basics of Prompt Design"
Mattingly "AI & Prompt Design: The Basics of Prompt Design"Mattingly "AI & Prompt Design: The Basics of Prompt Design"
Mattingly "AI & Prompt Design: The Basics of Prompt Design"
 
Bazargan "NISO Webinar, Sustainability in Publishing"
Bazargan "NISO Webinar, Sustainability in Publishing"Bazargan "NISO Webinar, Sustainability in Publishing"
Bazargan "NISO Webinar, Sustainability in Publishing"
 
Rapple "Scholarly Communications and the Sustainable Development Goals"
Rapple "Scholarly Communications and the Sustainable Development Goals"Rapple "Scholarly Communications and the Sustainable Development Goals"
Rapple "Scholarly Communications and the Sustainable Development Goals"
 
Compton "NISO Webinar, Sustainability in Publishing"
Compton "NISO Webinar, Sustainability in Publishing"Compton "NISO Webinar, Sustainability in Publishing"
Compton "NISO Webinar, Sustainability in Publishing"
 
Mattingly "AI & Prompt Design: Large Language Models"
Mattingly "AI & Prompt Design: Large Language Models"Mattingly "AI & Prompt Design: Large Language Models"
Mattingly "AI & Prompt Design: Large Language Models"
 
Hazen, Morse, and Varnum "Spring 2024 ODI Conformance Statement Workshop for ...
Hazen, Morse, and Varnum "Spring 2024 ODI Conformance Statement Workshop for ...Hazen, Morse, and Varnum "Spring 2024 ODI Conformance Statement Workshop for ...
Hazen, Morse, and Varnum "Spring 2024 ODI Conformance Statement Workshop for ...
 
Mattingly "AI & Prompt Design" - Introduction to Machine Learning"
Mattingly "AI & Prompt Design" - Introduction to Machine Learning"Mattingly "AI & Prompt Design" - Introduction to Machine Learning"
Mattingly "AI & Prompt Design" - Introduction to Machine Learning"
 
Mattingly "Text and Data Mining: Building Data Driven Applications"
Mattingly "Text and Data Mining: Building Data Driven Applications"Mattingly "Text and Data Mining: Building Data Driven Applications"
Mattingly "Text and Data Mining: Building Data Driven Applications"
 
Mattingly "Text and Data Mining: Searching Vectors"
Mattingly "Text and Data Mining: Searching Vectors"Mattingly "Text and Data Mining: Searching Vectors"
Mattingly "Text and Data Mining: Searching Vectors"
 
Mattingly "Text Mining Techniques"
Mattingly "Text Mining Techniques"Mattingly "Text Mining Techniques"
Mattingly "Text Mining Techniques"
 
Mattingly "Text Processing for Library Data: Representing Text as Data"
Mattingly "Text Processing for Library Data: Representing Text as Data"Mattingly "Text Processing for Library Data: Representing Text as Data"
Mattingly "Text Processing for Library Data: Representing Text as Data"
 
Carpenter "Designing NISO's New Strategic Plan: 2023-2026"
Carpenter "Designing NISO's New Strategic Plan: 2023-2026"Carpenter "Designing NISO's New Strategic Plan: 2023-2026"
Carpenter "Designing NISO's New Strategic Plan: 2023-2026"
 
Ross and Clark "Strategic Planning"
Ross and Clark "Strategic Planning"Ross and Clark "Strategic Planning"
Ross and Clark "Strategic Planning"
 
Mattingly "Data Mining Techniques: Classification and Clustering"
Mattingly "Data Mining Techniques: Classification and Clustering"Mattingly "Data Mining Techniques: Classification and Clustering"
Mattingly "Data Mining Techniques: Classification and Clustering"
 
Straza "Global collaboration towards equitable and open science: UNESCO Recom...
Straza "Global collaboration towards equitable and open science: UNESCO Recom...Straza "Global collaboration towards equitable and open science: UNESCO Recom...
Straza "Global collaboration towards equitable and open science: UNESCO Recom...
 
Lippincott "Beyond access: Accelerating discovery and increasing trust throug...
Lippincott "Beyond access: Accelerating discovery and increasing trust throug...Lippincott "Beyond access: Accelerating discovery and increasing trust throug...
Lippincott "Beyond access: Accelerating discovery and increasing trust throug...
 
Kriegsman "Integrating Open and Equitable Research into Open Science"
Kriegsman "Integrating Open and Equitable Research into Open Science"Kriegsman "Integrating Open and Equitable Research into Open Science"
Kriegsman "Integrating Open and Equitable Research into Open Science"
 
Mattingly "Ethics and Cleaning Data"
Mattingly "Ethics and Cleaning Data"Mattingly "Ethics and Cleaning Data"
Mattingly "Ethics and Cleaning Data"
 
Mercado-Lara "Open & Equitable Program"
Mercado-Lara "Open & Equitable Program"Mercado-Lara "Open & Equitable Program"
Mercado-Lara "Open & Equitable Program"
 

Recently uploaded

Solving Puzzles Benefits Everyone (English).pptx
Solving Puzzles Benefits Everyone (English).pptxSolving Puzzles Benefits Everyone (English).pptx
Solving Puzzles Benefits Everyone (English).pptxOH TEIK BIN
 
How to Configure Email Server in Odoo 17
How to Configure Email Server in Odoo 17How to Configure Email Server in Odoo 17
How to Configure Email Server in Odoo 17Celine George
 
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptxPOINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptxSayali Powar
 
Alper Gobel In Media Res Media Component
Alper Gobel In Media Res Media ComponentAlper Gobel In Media Res Media Component
Alper Gobel In Media Res Media ComponentInMediaRes1
 
Software Engineering Methodologies (overview)
Software Engineering Methodologies (overview)Software Engineering Methodologies (overview)
Software Engineering Methodologies (overview)eniolaolutunde
 
How to Make a Pirate ship Primary Education.pptx
How to Make a Pirate ship Primary Education.pptxHow to Make a Pirate ship Primary Education.pptx
How to Make a Pirate ship Primary Education.pptxmanuelaromero2013
 
Crayon Activity Handout For the Crayon A
Crayon Activity Handout For the Crayon ACrayon Activity Handout For the Crayon A
Crayon Activity Handout For the Crayon AUnboundStockton
 
BASLIQ CURRENT LOOKBOOK LOOKBOOK(1) (1).pdf
BASLIQ CURRENT LOOKBOOK  LOOKBOOK(1) (1).pdfBASLIQ CURRENT LOOKBOOK  LOOKBOOK(1) (1).pdf
BASLIQ CURRENT LOOKBOOK LOOKBOOK(1) (1).pdfSoniaTolstoy
 
Introduction to AI in Higher Education_draft.pptx
Introduction to AI in Higher Education_draft.pptxIntroduction to AI in Higher Education_draft.pptx
Introduction to AI in Higher Education_draft.pptxpboyjonauth
 
MENTAL STATUS EXAMINATION format.docx
MENTAL     STATUS EXAMINATION format.docxMENTAL     STATUS EXAMINATION format.docx
MENTAL STATUS EXAMINATION format.docxPoojaSen20
 
Sanyam Choudhary Chemistry practical.pdf
Sanyam Choudhary Chemistry practical.pdfSanyam Choudhary Chemistry practical.pdf
Sanyam Choudhary Chemistry practical.pdfsanyamsingh5019
 
18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf
18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf
18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdfssuser54595a
 
“Oh GOSH! Reflecting on Hackteria's Collaborative Practices in a Global Do-It...
“Oh GOSH! Reflecting on Hackteria's Collaborative Practices in a Global Do-It...“Oh GOSH! Reflecting on Hackteria's Collaborative Practices in a Global Do-It...
“Oh GOSH! Reflecting on Hackteria's Collaborative Practices in a Global Do-It...Marc Dusseiller Dusjagr
 
URLs and Routing in the Odoo 17 Website App
URLs and Routing in the Odoo 17 Website AppURLs and Routing in the Odoo 17 Website App
URLs and Routing in the Odoo 17 Website AppCeline George
 
Paris 2024 Olympic Geographies - an activity
Paris 2024 Olympic Geographies - an activityParis 2024 Olympic Geographies - an activity
Paris 2024 Olympic Geographies - an activityGeoBlogs
 
CARE OF CHILD IN INCUBATOR..........pptx
CARE OF CHILD IN INCUBATOR..........pptxCARE OF CHILD IN INCUBATOR..........pptx
CARE OF CHILD IN INCUBATOR..........pptxGaneshChakor2
 
_Math 4-Q4 Week 5.pptx Steps in Collecting Data
_Math 4-Q4 Week 5.pptx Steps in Collecting Data_Math 4-Q4 Week 5.pptx Steps in Collecting Data
_Math 4-Q4 Week 5.pptx Steps in Collecting DataJhengPantaleon
 
Class 11 Legal Studies Ch-1 Concept of State .pdf
Class 11 Legal Studies Ch-1 Concept of State .pdfClass 11 Legal Studies Ch-1 Concept of State .pdf
Class 11 Legal Studies Ch-1 Concept of State .pdfakmcokerachita
 
Introduction to ArtificiaI Intelligence in Higher Education
Introduction to ArtificiaI Intelligence in Higher EducationIntroduction to ArtificiaI Intelligence in Higher Education
Introduction to ArtificiaI Intelligence in Higher Educationpboyjonauth
 

Recently uploaded (20)

Solving Puzzles Benefits Everyone (English).pptx
Solving Puzzles Benefits Everyone (English).pptxSolving Puzzles Benefits Everyone (English).pptx
Solving Puzzles Benefits Everyone (English).pptx
 
How to Configure Email Server in Odoo 17
How to Configure Email Server in Odoo 17How to Configure Email Server in Odoo 17
How to Configure Email Server in Odoo 17
 
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptxPOINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
 
Alper Gobel In Media Res Media Component
Alper Gobel In Media Res Media ComponentAlper Gobel In Media Res Media Component
Alper Gobel In Media Res Media Component
 
Software Engineering Methodologies (overview)
Software Engineering Methodologies (overview)Software Engineering Methodologies (overview)
Software Engineering Methodologies (overview)
 
How to Make a Pirate ship Primary Education.pptx
How to Make a Pirate ship Primary Education.pptxHow to Make a Pirate ship Primary Education.pptx
How to Make a Pirate ship Primary Education.pptx
 
Staff of Color (SOC) Retention Efforts DDSD
Staff of Color (SOC) Retention Efforts DDSDStaff of Color (SOC) Retention Efforts DDSD
Staff of Color (SOC) Retention Efforts DDSD
 
Crayon Activity Handout For the Crayon A
Crayon Activity Handout For the Crayon ACrayon Activity Handout For the Crayon A
Crayon Activity Handout For the Crayon A
 
BASLIQ CURRENT LOOKBOOK LOOKBOOK(1) (1).pdf
BASLIQ CURRENT LOOKBOOK  LOOKBOOK(1) (1).pdfBASLIQ CURRENT LOOKBOOK  LOOKBOOK(1) (1).pdf
BASLIQ CURRENT LOOKBOOK LOOKBOOK(1) (1).pdf
 
Introduction to AI in Higher Education_draft.pptx
Introduction to AI in Higher Education_draft.pptxIntroduction to AI in Higher Education_draft.pptx
Introduction to AI in Higher Education_draft.pptx
 
MENTAL STATUS EXAMINATION format.docx
MENTAL     STATUS EXAMINATION format.docxMENTAL     STATUS EXAMINATION format.docx
MENTAL STATUS EXAMINATION format.docx
 
Sanyam Choudhary Chemistry practical.pdf
Sanyam Choudhary Chemistry practical.pdfSanyam Choudhary Chemistry practical.pdf
Sanyam Choudhary Chemistry practical.pdf
 
18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf
18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf
18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf
 
“Oh GOSH! Reflecting on Hackteria's Collaborative Practices in a Global Do-It...
“Oh GOSH! Reflecting on Hackteria's Collaborative Practices in a Global Do-It...“Oh GOSH! Reflecting on Hackteria's Collaborative Practices in a Global Do-It...
“Oh GOSH! Reflecting on Hackteria's Collaborative Practices in a Global Do-It...
 
URLs and Routing in the Odoo 17 Website App
URLs and Routing in the Odoo 17 Website AppURLs and Routing in the Odoo 17 Website App
URLs and Routing in the Odoo 17 Website App
 
Paris 2024 Olympic Geographies - an activity
Paris 2024 Olympic Geographies - an activityParis 2024 Olympic Geographies - an activity
Paris 2024 Olympic Geographies - an activity
 
CARE OF CHILD IN INCUBATOR..........pptx
CARE OF CHILD IN INCUBATOR..........pptxCARE OF CHILD IN INCUBATOR..........pptx
CARE OF CHILD IN INCUBATOR..........pptx
 
_Math 4-Q4 Week 5.pptx Steps in Collecting Data
_Math 4-Q4 Week 5.pptx Steps in Collecting Data_Math 4-Q4 Week 5.pptx Steps in Collecting Data
_Math 4-Q4 Week 5.pptx Steps in Collecting Data
 
Class 11 Legal Studies Ch-1 Concept of State .pdf
Class 11 Legal Studies Ch-1 Concept of State .pdfClass 11 Legal Studies Ch-1 Concept of State .pdf
Class 11 Legal Studies Ch-1 Concept of State .pdf
 
Introduction to ArtificiaI Intelligence in Higher Education
Introduction to ArtificiaI Intelligence in Higher EducationIntroduction to ArtificiaI Intelligence in Higher Education
Introduction to ArtificiaI Intelligence in Higher Education
 

Youngen "Secure Remote Access to Scholarly Resources"

  • 1. American Chemical Society Secure Remote Access to Scholarly Resources Ralph Youngen Senior Director, Digital Strategy American Chemical Society Changes in Higher Education & The Information Marketplace NISO Virtual Conference June 17, 2020 1
  • 2. American Chemical Society 2 Background • Community-driven efforts to improve remote access to scholarly resources have been underway for the past five years. – June 2015: Corporate librarians from the P-D-R (Pharma Documentation Ring) hold a special meeting on Authentication Technologies. – 2016 – June 2019: NISO and STM sponsor the RA21 initiative. – July 2019 – now: SeamlessAccess builds an operational service based upon the findings from RA21. – December 2019 – now: GetFTR service streamlines pathways to authentic scholarly content.
  • 3. American Chemical Society 3 Driver Prior to COVID-19: Increased Demand for Remote Access
  • 4. American Chemical Society 4 COVID-19: Exponential Growth in Remote Access Demand
  • 5. American Chemical Society 5 Challenge: 1990s Authentication • Today, the predominant method for validating access to scholarly content is by IP address recognition. “Search and discovery have reached a level of maturity and status quo, yet our shared systems for authentication are out of step in today’s information economy and reinvented access controls are in immediate need of our collective attention.” “I counted more than a dozen talks on link resolvers, RA21, open access and other sales models. …the buzz of the conference was pointing to a brave new future in access controls.”
  • 6. American Chemical Society 6 Community Responses • Two industry efforts are working to modernize authentication pathways:
  • 7. American Chemical Society 7 Federated Authentication (a.k.a. SAML, Shibboleth, OpenAthens) GetFTR and SeamlessAccess both utilize federated authentication. Key Concept: Identity providers (e.g. universities) control the information about its users (called attributes) that get sent to service providers.
  • 8. American Chemical Society 8 GetFTR • A new service under development by leading scholarly publishers to simplify pathways from research discovery tools to authentic scholarly content. • Provides on-the-fly verification of a user’s entitlement rights based upon the user’s institutional affiliation. • Targeted at any service where a researcher might conduct a literature search: – Research discovery tools – Scientific collaboration networks – Library resource management systems – Etc.
  • 9. American Chemical Society 9 GetFTR (cont.) • Returns “smart links” customized for the user’s institution. • These links work regardless of the user’s physical location. – If connected to a campus network, publisher grants access based upon IP address. – If away from a campus network, institutional access is provided via federated authentication.
  • 10. American Chemical Society 10 GetFTR In Action
  • 11. American Chemical Society 11 SeamlessAccess • Operational successor to the RA21 initiative. – RA21 initiative concluded with the publication of a NISO Recommended Practice, June 2019. • SeamlessAccess is now building an operational service based upon the RA21 recommended practices.
  • 12. American Chemical Society 12 SeamlessAccess: An Improved User Experience Information about user’s institution(s) saved in the local browser Trusted service providers are able to access this institution data Reduces the number of times a user must search for their institution
  • 13. In Progress • CCC • DARIAH • Elsevier • O’Reilly • Silverchair platform • Taylor & Francis • Wiley Integrated • ACS • Atypon platform • Springer Nature • SUNET • TENET SeamlessAccess Implementations
  • 14. American Chemical Society 14 COVID-19: Expanding Federated Access “As you may know, a new outbreak of coronavirus has recently occurred in China. … all students are required to study online at home. However, now traditional remote access faces significant pressure by the limitation of VPN capacity … CERNET is actively promoting service providers to join CARSI (CERNET Authentication and Resource Sharing Infrastructure) to help users access … CARSI bases on the Shibboleth system, it’s among the world’s most widely deployed federated identity solutions” February 2020: March 2020:
  • 15. American Chemical Society 15 ACS Publications’ Experience Significant increase in federated access since COVID-19 due to: • Shift in demand for remote access due to campus closures • Deployment of the SeamlessAccess user experience on March 1, 2020 • Expansion of institutions enabled for federated access
  • 16. American Chemical Society 16 Attributes: Key to Privacy Many universities send personally identifiable attributes even though ACS doesn’t request them. – A bug on the ACS site displayed the user’s first name if supplied via attributes: – Now corrected even if personally identifiable attributes are received: – SeamlessAccess is sponsoring an Entity Categories and Attribute Bundles Working Group to help universities select the appropriate attribute set for a given service. • Authorization Only (no attributes), Anonymous, and Pseudonymous • Pseudonymous identifiers will be critically important to assist campuses with credential theft.
  • 17. American Chemical Society 17 Remote Work Drives Sci-Hub Use • 75% increase in Sci-Hub traffic during COVID-19 (Jan – May 2020).
  • 18. Publishers Are Collaborating on Sci-Hub Threat via SNSI
  • 19. American Chemical Society 19 Sci-Hub’s Scale “The scale of Elbakyan’s operation has led experts to conclude that she is not operating alone and must have the approval of the Russian government.” “It’s unclear whether Elbakyan is using Sci-Hub’s operations in service of Russian intelligence, but her critics say she has demonstrated significant hacking skills by collecting log-in credentials from journal subscribers, particularly at universities, and using them to pilfer vast amounts of academic literature.”
  • 20. ~42% of compromise is from U.S. universities* 373 Universities have been compromised* >90% of compromise* is through Proxy services Sci-Hub exploits the sentiment around open access to research articles in order to: • Get researchers/students to share university login credentials for access to scholarly research platforms • Steal & openly share login credentials in dark web forums Serious Threat to the Research Ecosystem *April 2019 – March 2020 data University #of successful breaches University #of successful breaches University #of successful breaches University #of successful breaches University 1 27450 University 14 6912 University 27 3231 University 40 830 University 2 26240 University 15 6898 University 28 3060 University 41 790 University 3 18212 University 16 6398 University 29 2931 University 42 661 University 4 14807 University 17 5310 University 30 2889 University 43 539 University 5 13149 University 18 5310 University 31 2870 University 44 511 University 6 12936 University 19 4887 University 32 2540 University 45 478 University 7 12453 University 20 4577 University 33 2466 University 46 426 University 8 11988 University 21 4401 University 34 1972 University 47 412 University 9 9430 University 22 4323 University 35 1604 University 48 403 University 10 8497 University 23 4176 University 36 1436 University 49 378 University 11 8303 University 24 3571 University 37 1198 University 50 325 University 12 7715 University 25 3278 University 38 1023 University 13 7318 University 26 3268 University 39 932
  • 21. • During COVID-19, students and faculty working remotely are at increased risk because they are beyond the reach of some campus security measures. Increased Phishing Risk During COVID-19
  • 22. American Chemical Society 22 Marketplaces for Compromised Credentials
  • 23. American Chemical Society 23 Publishers Can Detect Anomalous Usage
  • 24. American Chemical Society 24 Better Data is Needed • Campus IT often has difficulty identifying the actual user with potentially compromised credentials based upon information publishers can provide. • Pseudonymous identifiers would help dramatically. – Privacy preserving identifier corresponding to a real university patron – Included in federated authentication planning • Must be enabled by universities – Sorely needed for proxy users • Discussions with OCLC underway for EZproxy
  • 25. American Chemical Society 25 Final Thoughts • Researchers, just like typical Web users, tend toward simple and straightforward pathways. • While working remotely, Sci-Hub is often the simplest and most straightforward pathway to access scholarly content. • GetFTR and SeamlessAccess are creating pathways that are easier to use than Sci-Hub. • Collaboration between the academic library community, campus IT, and scholarly publishers is key.

Editor's Notes

  1. This journey to improve remote access to scholarly resources began five years ago.
  2. Ralph
  3. Ralph
  4. Ralph
  5. Ralph
  6. Ralph
  7. Ralph
  8. Ralph
  9.  SNSI – Is an example of a collaboration that is already existing. Officially as SNSI, this group has existed since 2017 and is made up of 16 different publishers. Not all shown here…... A combination of forces are needed to protect institutions from cyber-attacks and the threat Sci-Hub poses – that’s why The Scholarly Networks Security Initiative (SNSI) was formed. The SNSI is made-up of academic publishers, representatives of the librarian community, societies, and trade organizations. Members of the group are taking legal action, technical steps, and are taking part in various initiatives with universities around the world to address the threat Sci-Hub poses. Ultimately, we want to work together better to address challenges of balancing security and simple authentication methods from multiple locations and devices to better protect institutions. We hope that others will join us in the collective outreach. We want to work collectively to address questions like: What support do librarians need from publishers. How can we bridge the gap of communications between the library at IT/ITS. How can we effectively balance the need for access and the need for security and data protection? How can we help IT security within institutions in designing systems that meet both researcher and organisational goals?