Fact-checked by Grok 2 weeks ago

EZproxy

EZproxy is a web-based software designed to enable libraries to provide secure and seamless remote access to electronic resources and licensed content for their users, regardless of location or device. Developed initially by Useful Utilities and released in 1999, it authenticates patrons using institutional credentials and routes their requests through the library's authorized IP addresses, simulating on-campus access to subscription databases, journals, and e-books. By the time of its acquisition by in January 2008, EZproxy had been adopted by over 2,400 libraries worldwide, establishing it as an industry-standard tool for managing off-campus resource access. Key features of EZproxy include support for single sign-on protocols such as SAML and LDAP, integration with systems, and customizable group-based access controls to comply with licensing agreements and accommodate diverse user needs, such as varying curricula in academic settings. It also incorporates robust security measures, including rules to detect compromised credentials and options for SSL certificate configuration to protect resources, ensuring user privacy while preventing unauthorized access. Additionally, the optional EZproxy Analytics module provides visual dashboards and log analysis for tracking usage patterns, aiding libraries in data-driven decisions on and . Since its acquisition, has enhanced EZproxy with hosted deployment options, ongoing maintenance of database stanzas—configuration files tailored for specific vendors—and global support serving institutions in over 100 countries. Notable implementations include migrations by universities like the , which highlight its reliability in streamlining access and reducing administrative burdens for large-scale digital collections, and the . Today, EZproxy continues to evolve, focusing on compatibility with modern standards and to meet the demands of hybrid learning environments.

History

Origins and Early Development

EZproxy was founded in 1999 by Chris Zagar, a systems at the Maricopa Community Colleges in , who developed the software to address the growing need for remote access to licensed electronic resources in academic libraries. Zagar announced the product to the web4lib electronic mailing list that year, introducing it as a practical solution for enabling off-campus users to authenticate and access subscription-based databases without complex configurations. Initially offered through Zagar's company, Useful Utilities LLC, EZproxy functioned as a designed specifically for library environments. Its core early features centered on URL rewriting, which dynamically modified hyperlinks in web pages from database vendors to route traffic through the library's , and basic mechanisms that verified user credentials via methods such as internal or protocols like SIP2. This approach allowed libraries to extend on-campus access privileges to remote patrons using a process, simplifying the management of e-resource access during the rapid expansion of digital collections in the late . Despite its innovative design, EZproxy faced initial adoption challenges in the late 1990s and early 2000s, including the technical hurdles of registering URLs with numerous content providers and the risks associated with handling user credentials in an era of evolving internet standards. Nevertheless, it gained steady traction among academic libraries, with early adopters such as and recognizing its value in streamlining remote access to proprietary materials. By the mid-2000s, the software had become a staple for hundreds of institutions, driven by the increasing demand for seamless off-campus e-resource delivery amid the digital shift in .

Acquisition and Evolution under OCLC

In January , OCLC acquired EZproxy from Useful Utilities, the software's developer, to bolster its portfolio of authentication and access management tools for libraries seeking to provide remote access to licensed digital resources. The acquisition, announced on January 11, , was motivated by EZproxy's established market leadership, with over 2,400 libraries using it to enable seamless off-campus access to online content without requiring complex configurations. As part of the deal, OCLC hired EZproxy's creator, Chris Zagar, as a full-time for one year to facilitate integration into its broader services, including plans to link local EZproxy instances with .org for enhanced resource discovery. Following the acquisition, OCLC released EZproxy version 5.0 in March 2008, introducing initial enhancements aligned with the organization's ecosystem while maintaining the software's core functionality. Subsequent development accelerated in the , with version 6.x launching around 2016, bringing critical security upgrades such as support for TLS 1.2 to enable secure connections, addressing growing demands for encrypted remote access amid rising web security standards. Earlier versions prior to 6.x lacked full TLS 1.2 compatibility, prompting libraries to upgrade for compliance with vendor requirements like those from EBSCO. During the 2010s, expanded EZproxy's deployment options by introducing hosted services, including a dedicated data center in launched in June 2012 to serve libraries in , the , and with managed and automatic updates. This evolution culminated in 2020 with the introduction of EZproxy Analytics, a subscription-based feature for hosted users that aggregates and visualizes usage data from proxy logs to inform e-resource decisions, while prioritizing data privacy controls. Throughout its tenure under , EZproxy has deepened integration with the organization's metadata and discovery services, such as Discovery and the knowledge base, allowing proxied links to e-resources to appear directly in search results and ILL requests, thereby streamlining patron access across the global library network. Development has continued into the with the release of the version 7.x series starting in 2022, incorporating further security enhancements and compatibility updates, with the latest maintenance release, version 7.3.11, issued in May 2025.

Functionality

Core Proxy Mechanism

EZproxy operates as a URL-rewriting , enabling remote users to access IP-restricted electronic resources by intercepting and modifying web requests to route them through the library's authorized . This mechanism requires no special configuration, as EZproxy dynamically alters hyperlinks on resource web pages to embed the server's address, ensuring that subsequent clicks continue to pass through the . In the core process, when a user attempts to access a protected database, EZproxy intercepts the browser's request by rewriting the target to include proxy-specific elements, such as a suffix or number, directing the traffic to the instead of the original destination. Acting as an intermediary, the then forwards the request to the e-resource database using its own , which is recognized as authorized by the content provider, retrieves the content, and returns it to the user while rewriting any embedded links in the response to maintain the route. This intermediary role preserves session continuity, allowing users to navigate within the resource seamlessly without repeated interruptions, as all internal hyperlinks are automatically adjusted to include the pathway. The basic workflow begins with the user accessing a , where EZproxy handles initial user integration before adding the proxy prefix to the original and redirecting the request accordingly. For instance, an original like http://www.exampledb.com/resource might be rewritten as http://www.exampledb.com.ezproxy.library.edu/resource in hostname-based mode or http://ezproxy.library.edu:2048/resource in port-based mode, both of which route the request through the proxy for transparent access. A common entry point structure is https://ezproxy.library.edu/login?url=http://www.exampledb.com/resource, which initiates the proxied session upon successful verification. This approach ensures that remote patrons experience the resource as if accessing it on-site, with the proxy handling all routing invisibly.

Authentication and Resource Access

EZproxy verifies user eligibility through a variety of methods integrated into its , ensuring that only authorized patrons can access licensed electronic resources. These methods include IP-based recognition for on-campus users, traditional username and password validation, and advanced integrations with institutional identity systems. By authenticating users prior to proxying requests, EZproxy rewrites URLs to route traffic through its secure gateway while maintaining session continuity. For institutions with on-campus networks, EZproxy supports IP-based authentication, which automatically grants access to users originating from predefined authorized IP ranges without requiring additional login prompts. This method relies on the library's network infrastructure to confirm eligibility, allowing seamless access for users already within the institution's perimeter. Username and password authentication provides an alternative for remote users, where patrons enter credentials configured in the EZproxy user.txt file; this basic form can be customized to redirect to institutional login pages for validation. To enable single sign-on (SSO) with library systems, EZproxy integrates with protocols like LDAP and SAML, including Shibboleth implementations. LDAP authentication connects EZproxy to an institutional directory server, verifying user credentials by binding to the LDAP URL and testing attributes such as group membership (e.g., via eduPersonPrimaryAffiliation for roles like faculty or student) to confirm eligibility. SAML support positions EZproxy as a service provider (SP) that federates with identity providers (IdPs), such as Shibboleth versions 1, 2, or 3, allowing users to authenticate once through their institution's SSO portal; attributes from the IdP (e.g., affiliation status) are then used in a shibuser.txt file to authorize access and deny unauthorized groups like alumni. These integrations reduce login friction while ensuring verification against the library's user database. Session management in EZproxy maintains authenticated access through configurable timeouts and supports (MFA) via upstream integrations. The default session duration is 120 minutes from the last proxied access, after which users must re-authenticate to prevent unauthorized lingering sessions; administrators can adjust this via config.txt directives to balance security and usability. While EZproxy does not natively prompt for MFA on its login page, it accommodates MFA enforced by the in SSO setups (e.g., SAML/), where the handles the additional factor before releasing attributes to EZproxy. By restricting access to verified patrons through these mechanisms, EZproxy ensures compliance with licensing agreements that mandate protection of subscribed content from non-authorized users. Features like group-based authorization and usage limits (e.g., via UsageLimit directives) further enforce contractual terms, such as preventing mass downloads or access by ineligible parties, thereby safeguarding the library's investments in digital resources.

Configuration and Implementation

Database Stanzas

Database stanzas in EZproxy's config.txt file define access rules for specific electronic resources, enabling the to intercept and authenticate requests to and websites. These stanzas are blocks of directives that specify how EZproxy should handle URLs associated with a particular resource, ensuring seamless integration with systems. The structure of a database stanza begins with a Title directive, which names the resource and makes it appear in the alphabetical list on EZproxy's default test page, followed by one or more URL, Host (or HJ for HTTPS), Domain (or DJ for JavaScript-enabled domains), and other optional directives. EZproxy reads the config.txt file sequentially from top to bottom, matching the user's requested URL against the first applicable stanza based on the scheme, hostname, and port, while ignoring paths, queries, and fragments. A minimal stanza requires only Title and URL to define a starting point, but comprehensive ones include multiple Host and Domain lines to cover subdomains and related hosts encountered during navigation. Stanzas map resources to proxy behaviors by rewriting URLs to route through the EZproxy server and applying modifications such as header adjustments to mimic legitimate browser requests. For instance, the stanza for JSTOR includes HTTPHeader -request -process X-Requested-With to suppress certain headers that could disrupt access, along with Option Cookie to enable standard handling and multiple HJ directives for hosts like www.jstor.org and labs.jstor.org, ensuring proxying across the platform's ecosystem. Similarly, the EBSCO Electronic Journals Service stanza uses URL http://ejournals.ebsco.com as the , with HJ ejscontent.ebsco.com, HJ content.ebsco.com, and DJ ebsco.com to proxy from related subdomains without duplicating host statements that might exceed virtual host limits. These mappings allow EZproxy to intercept outbound links and maintain authenticated sessions. OCLC maintains an extensive collection of pre-configured stanzas for common databases, organized alphabetically on their support site, with regular updates to address changes in resource URLs, security protocols, or behaviors. Users can the full listing, subscribe to an RSS feed for update notifications, and incorporate stanzas via IncludeFile directives for hosted EZproxy instances, such as IncludeFile databases/jstor.txt for . This centralized maintenance reduces the burden on libraries to manually adjust for vendor updates. For non-standard or emerging resources not covered in 's listings, libraries create stanzas tailored to unique patterns or requirements, such as adding HTTPMethod directives for non-GET requests or DomainJavascript for dynamic content. These configurations follow the same but are placed strategically in config.txt to avoid conflicts with broader domain matches, often tested via EZproxy's diagnostic tools to ensure proper proxying.

Server Setup and Customization

EZproxy offers two primary hosting options: self-hosted installations managed by the library's IT staff and -hosted setups where handles all infrastructure and maintenance. Self-hosted EZproxy requires a dedicated server or running on supported operating systems, including and various distributions such as , , and , with no additional software needed as EZproxy operates as a standalone application. In contrast, the -hosted option eliminates the need for local hardware or software management, integrating seamlessly with existing systems like LDAP, SAML, or , and provides automatic updates, security patching, and SSL management to reduce administrative overhead. The installation process for self-hosted EZproxy begins with downloading the latest version from the official OCLC support site, such as EZproxy 7.3.11, available as a binary for Linux or an executable for Windows, followed by verification using provided SHA-256 checksums to ensure file integrity. Create a dedicated directory for EZproxy, place the downloaded file there, rename it to "ezproxy" (and make it executable on Linux using chmod +x ezproxy), then run the program to generate default configuration files including config.txt, user.txt, and documentation. Edit config.txt to specify essential directives, such as setting the hostname with Hostname yourlib.org for proper URL resolution and enabling HTTPS by adding Option Https if SSL is configured; similarly, update user.txt to define administrative credentials in the format username:password:admin for secure access to the administration interface. Start the EZproxy server by running ./ezproxy on Linux or ezproxy.exe on Windows, ensuring firewall ports (typically 2048 for HTTP and 443 for HTTPS) are open, and verify functionality by accessing the admin page at https://yourlib.org:2048/admin. Securing the server with SSL certificates is a critical step during setup, as EZproxy supports both self-signed certificates for testing and certificates issued by a trusted (CA) for production use. To generate a self-signed certificate, access the EZproxy administration interface, navigate to the Miscellaneous section, select Manage SSL Certificates, and create a regular certificate matching the exact server (e.g., ezproxy.yourlib.org) or a wildcard for broader coverage if using Proxy by ; however, self-signed options trigger browser warnings and are unsuitable for end-users. For CA-issued certificates, generate a (CSR) via the same interface, submit it to a CA like or for validation and issuance, then import the resulting certificate and private RSA key back into EZproxy, ensuring the common name matches the server's to avoid mismatches; this setup enables seamless HTTPS redirection and protects remote access. Customization of the EZproxy server allows libraries to tailor the without altering core functionality. Branding the page involves editing the login.htm in the docs to replace the default logo, either by updating the src attribute in the <img> tag to point to an externally hosted image (e.g., <img src="https://yourlib.org/logo.png">) or by overwriting the local public/logo.png with a custom image, followed by restarting the server to apply changes. Integration with discovery tools, such as Discovery, can be achieved by incorporating relevant configuration directives in config.txt to links from the discovery interface, ensuring authenticated access to e-resources during search sessions. Many libraries have successfully migrated from self-hosted to -hosted EZproxy, reporting significant benefits including reduced maintenance efforts equivalent to approximately three weeks of annual IT labor, as assumes responsibility for upgrades, security patches, and certificate renewals. This transition often involves exporting configuration files via for import into the hosted environment, resulting in seamless operation and enhanced security without downtime, as experienced by institutions like the , which noted simplified configuration and reliable support post-migration.

Usage and Adoption

Deployment in Libraries

EZproxy has seen widespread adoption since its initial release in 1999, with thousands of libraries across more than 100 countries implementing it to enable secure remote access to electronic resources. As of 2025, while EZproxy remains a foundational tool for extending services beyond physical boundaries, particularly for licensed content from publishers and databases, some institutions have transitioned to alternatives such as for federated access management. In academic libraries, EZproxy supports remote patron access for research and coursework, integrating with single sign-on systems like to authenticate users without additional software. Public libraries, such as Crowell Public Library in , use it to deliver e-content securely to community members at any time. Special libraries, including those serving healthcare and diverse curricula, leverage its group-based access features to tailor authentication for specialized users, as demonstrated by the University of Oviedo's deployment across multiple campuses and a site. Libraries commonly integrate EZproxy with their websites, link resolvers, and discovery layers such as Ex Libris Primo and Serials Solutions Summon, allowing automatic proxy prefixing of URLs to streamline off-campus navigation. This compatibility ensures seamless resource discovery and access, reducing barriers for patrons. Post-2020, amid the surge in remote learning due to the , EZproxy deployments proved resilient in managing peak usage. Such adaptations highlighted its scalability for sudden shifts to virtual environments. For instance, the migrated to a hosted version to provide secure access for 40,000 students and 5,000 staff from 167 countries.

Analytics and Usage Insights

EZproxy Analytics is a subscription-based service offered by OCLC that enables libraries to collect, process, and visualize usage data from EZproxy logs, providing insights into e-resource access patterns. It generates monthly reports detailing sessions by patron type, cohort, or department; resource usage such as journal access and formats; and user locations, including the websites from which patrons initiate access to e-resources. These reports help libraries track overall engagement and identify trends in how users interact with subscribed content. The foundation of these lies in EZproxy's file structure, which captures detailed data for . Primary logs include the main EZproxy (e.g., ezpyyyymm.), which records events, requests, codes, and bytes transferred using a configurable format like %h %l %u %t "%r" %s %b, where fields denote , username, timestamp, request , , and bytes. Starting Point URLs (SPUs), which represent links from tools to proxied resources, are logged separately in spu. when the LogSPU directive is enabled, including fields such as date/time, , user, access type (proxy/local/unknown), hostname, , referrer, groups, , and protocol in a format like %{%Y/%m/%d:%H:%M:%S}t %h %u %{ezproxy-spuaccess}i %v %U %{referer}i %{ezproxy-groups}i %s %{ezproxy-protocol}i. This structure allows for granular tracking of entry points and downstream usage without requiring custom server configurations. Within EZproxy Analytics, the Discover tool facilitates interactive exploration of these logs by enabling users to filter datasets (e.g., audit-, ezpaarse-, spu-* indices), select date ranges (relative like last 30 days or absolute like January 1 to March 31), search for specific resources or vendors, and visualize trends through sortable tables and charts. For instance, it highlights top-used databases, detects usage spikes or declines over time, and reveals underutilized subscriptions by comparing access frequencies. Data can be exported in format for further analysis or sharing, supporting quick identification of patterns such as busiest access periods or emerging resource popularity. These analytics tools directly inform by quantifying resource value, such as pinpointing underused subscriptions for potential cancellation or renewal evaluation based on session volumes and access demographics. Libraries can assess for e-resources by correlating usage data with patron cohorts, aiding decisions on acquisitions or budget reallocations without relying solely on vendor-provided metrics. Enhancements in EZproxy Analytics prioritize user privacy through de-identification options, allowing libraries to exclude personal identifiers like usernames or IP addresses from logs via configuration choices or support requests, ensuring compliance with policies such as GDPR. Additionally, it integrates with standards by collecting authentication-point data that supplements standard reports, providing more comprehensive insights into actual usage beyond what vendors report, such as internal library referrals and patron-specific patterns.

Technical Aspects

Supported Protocols and Compatibility

EZproxy primarily operates as a web proxy, supporting HTTP and HTTPS protocols to facilitate secure remote access to electronic resources. For HTTPS connections, the server requires configuration with a valid SSL certificate to handle encrypted traffic effectively. This dual-protocol support allows EZproxy to transparently proxy both standard and secure web requests, ensuring compatibility with the majority of online databases and journals. In terms of authentication protocols, EZproxy integrates SAML (Security Assertion Markup Language) versions 1.3 and 2.x/3.x for management, enabling seamless with identity providers such as , ADFS, (), and . This support positions EZproxy as a service provider (SP) in SAML workflows, requiring coordination with the institution's identity provider () and often an additional SSL certificate for secure metadata exchange. Additionally, EZproxy accommodates IP-based authentication through directives like AutoLoginIP, which automatically grants access to specified IP addresses or ranges without requiring user login, commonly used for on-campus or trusted networks. EZproxy achieves broad compatibility with major e-resource vendors through customizable database stanzas, which are configuration blocks that rewrite URLs and handle vendor-specific access rules. For instance, ProQuest resources necessitate EZproxy version 6.2.2 or higher with SSL support to access HTTPS-enabled platforms like Ebook Central. Similarly, Elsevier products, including ScienceDirect, are supported via official stanzas provided by OCLC, ensuring proxy access to subscribed content without disrupting vendor authentication flows. These stanzas, maintained alphabetically by OCLC, cover thousands of vendors and are regularly updated to maintain interoperability. To address modern web technologies, EZproxy handles JavaScript-heavy sites by proxying HTTP/HTTPS traffic and rewriting dynamic URLs where possible, though complex client-side scripts may require additional configuration to avoid access interruptions. It also ensures compatibility with mobile access, supporting bookmarklets and standard mobile browsers on modern devices (+ and +) to enable off-campus resource retrieval without dedicated apps, as of 2025. EZproxy versions 7.1.11 and later support TLS 1.3, enhancing security for proxying across devices and browsers, with TLS 1.2 and 1.3 compliance aligning with current IETF standards.

Security and Maintenance Features

EZproxy requires the installation of a valid SSL/TLS to facilitate secure connections and enable HTTPS proxying for encrypted resources. This ensures support for modern protocols like TLS 1.2 and 1.3, while directives such as Option DisableSSLv2 and Option DisableSSL40bit allow administrators to disable weaker options like SSL 2 and 40-bit , reducing exposure to known vulnerabilities. Key security features include IP whitelisting via the AllowIP config.txt directive, which restricts access to specified ranges for enhanced control over authorized connections. Session encryption is implemented through SSL/TLS configurations, including LoginPortSSL and Option ForceHTTPSLogin, which mandate for user sessions and protect transmitted from interception. Protection against common vulnerabilities is provided by a customizable set of rules introduced in EZproxy v7.1, which monitor and block patterns such as excessive login failures (e.g., more than 10 per hour), high volumes (e.g., over 2 GB per hour), and rapid changes to prevent brute-force attacks, denial-of-service attempts, and credential abuse. Administrators can further mitigate risks like (XSS) by adding HTTP headers, such as X-XSS-Protection and Strict-Transport-Security, to proxied responses. Maintenance practices emphasize regular updates from , with incremental releases, such as version 7.3.11 (May 2025), incorporating security improvements and vulnerability patches to maintain system integrity. Log rotation is handled via directives such as MessagesFile -strftime and LogFile -strftime, which generate daily files (e.g., messages-%Y-%m-%d.) to manage and facilitate archival, with AuditPurge set to retain logs for up to 180 days as recommended. common issues, including SSL certificate mismatches (e.g., ERR_CERT_COMMON_NAME_INVALID s) and network connectivity problems (e.g., UUconnect messages), involves reviewing operational logs like messages.txt and files for error codes and event details. For data privacy, EZproxy aligns with GDPR standards by hosting log files on the library's dedicated , enabling institutions to control the inclusion of user data such as IP addresses or usernames through configuration options that exclude personal information when processing for or .

References

  1. [1]
    EZproxy ® Analytics - Access and authentication software - OCLC
    EZproxy allows libraries to deliver e-resources to users simply and securely no matter where or when they're searching.Missing: official | Show results with:official
  2. [2]
    OCLC acquires EZproxy authentication and access software
    EZproxy, the leading software solution for serving library patrons remotely, has been acquired by OCLC from Useful Utilities of Peoria, Arizona. Useful ...
  3. [3]
    View of Vol. 28 No. 3 (2008): OCLC Acquires EZproxy
    OCLC Acquires EZproxy ... The software was initially released in 1999 and by the time that it was acquired by OCLC had been purchased by over 2,400 libraries ...
  4. [4]
    EZproxy information for content providers - OCLC Support
    Mar 21, 2025 · EZproxy is software that sits between off-premises library users and their institutions' subscription-based resources to provide access to this content.
  5. [5]
    Advanced analytics for EZproxy - OCLC
    EZproxy Analytics puts you in control of how e-resource data is collected and offers customizable privacy features to support your needs. EZproxy demo screens.Missing: 2010s | Show results with:2010s
  6. [6]
    Mergers and acquisitions - OCLC
    EZproxy: Effective in January 2008, OCLC acquired EZproxy® authentication and access software from Useful Utilities. EZproxy software allows libraries to ...
  7. [7]
    Gain support in providing secure access to digital resources through ...
    Apr 11, 2025 · We've now migrated to the hosted solution of EZproxy which has greatly simplified the maintenance and configuration. The migration was seamless, ...
  8. [8]
    OCLC Acquires EZproxy | Library Journal
    May 21, 2010 · EZproxy has provided authentication support to libraries since 1999, when Zagar announced the software to the web4lib electronic list. The ...
  9. [9]
    Beyond IP Authentication: The Need to Modernize Access to Library ...
    Mar 24, 2018 · It was originally developed in about 1999 by Chris Zagar and sold through his company called Useful Utilities. OCLC acquired EZproxy from ...
  10. [10]
    OCLC Acquires EZproxy - Library Technology Guides
    Mar 25, 2008 · OCLC has acquired EZproxy from Useful Utilities, a one-person company based in Peoria, Arizona, a suburb of Phoenix.
  11. [11]
  12. [12]
    [DOC] News From OCLC: 2017 - Cataloging and Metadata Committee
    A new release of EZproxy took place on November7, 2016. EZproxy v6.2.2 is now available on the Download EZproxy page at http://www.oclc.org/support ...
  13. [13]
    Important EBSCO Security Upgrade: Discontinuation of TLS 1.0 and ...
    Mar 8, 2023 · EZproxy customers using 5.7.44 or earlier will get connection errors, as versions prior to 6.X do not support TLS v1.2. Customers using version ...Missing: HTTPS | Show results with:HTTPS
  14. [14]
    OCLC's EZproxy available as a hosted service in Europe
    Jun 1, 2012 · ... EZproxy authentication service hosted in OCLC's new data center in London. The service will go live for libraries in Europe, Middle East and ...
  15. [15]
    OCLC's new EZproxy Analytics service offers libraries greater ...
    Jan 14, 2020 · OCLC is introducing EZproxy Analytics, a turnkey analytics service that enables libraries using EZproxy hosted access and authentication ...Missing: options 2010s
  16. [16]
    Integrate EZproxy with other OCLC services - OCLC Support
    Apr 25, 2025 · Configure EZproxy to work with your other OCLC services. For more details on these services, please go to these pages.
  17. [17]
    About URL rewriting - EZproxy - OCLC Support
    Aug 23, 2024 · URL rewriting proxy servers such as EZproxy require no browser configuration. These proxy servers change the URLs in web pages so that requests ...Background · From browser to proxy · URL rewriting strategiesMissing: mechanism | Show results with:mechanism
  18. [18]
    EZproxy technical details - OCLC Support
    Oct 28, 2024 · EZproxy is a URL rewriting proxy server. Within the config.txt file, you identify various hosts that require access from one of your local IP addresses.Technical answers · How does EZproxy work?Missing: mechanism | Show results with:mechanism
  19. [19]
    Offering remote access to restricted resources
    EZproxy is a URL-rewriting proxy server that offers an approach that's well-suited to the problem of providing remote access to library resources. It operates ...
  20. [20]
    EZproxy authentication methods - OCLC Support
    May 28, 2025 · EZproxy can be authenticated in a number of ways. The articles in this section provide instructions for configuring your EZproxy authentication.
  21. [21]
    LDAP authentication - EZproxy - OCLC Support
    Apr 25, 2025 · Configuring EZproxy for LDAP authentication is as simple as copying and pasting the stanza generated with your LDAP values and this tool into ...Missing: SSO Shibboleth
  22. [22]
    SAML Authentication (including Shibboleth V1/2/3, ADFS, Microsoft ...
    Feb 26, 2025 · Configuring EZproxy for SAML requires careful coordination with your IdP administrator. You may need to install a separate SSL certificate that EZproxy will ...
  23. [23]
    Set limits for your institution - EZproxy - OCLC Support
    Feb 20, 2025 · The default of 120 determines that a session remains valid until 2 hours after the last time the user accesses a database through EZproxy.Missing: factor | Show results with:factor
  24. [24]
    How does EZproxy work with Multi-Factor Authentication (MFA)
    Mar 26, 2025 · EZproxy does not have a way to natively handle Multi-Factor authentication for methods that present the EZproxy login page.Missing: session | Show results with:session
  25. [25]
    EZproxy cookie blocked - OCLC Support
    May 2, 2025 · Licensing agreements for these databases require that access be extended only to authorized users. Once you have been validated by this ...
  26. [26]
    UsageLimit - OCLC Support
    Oct 18, 2024 · UsageLimits allow you to set limits on EZproxy usage to comply with content provider requests, minimize the potential for the illicit download of large amounts ...Missing: restriction | Show results with:restriction
  27. [27]
    Introduction to database stanza directives - EZproxy - OCLC Support
    Aug 7, 2024 · This document provides an overview of basic EZproxy database stanza construction and how EZproxy reads those database stanzas.Missing: development - | Show results with:development -
  28. [28]
    Starting point URLs and config.txt - EZproxy - OCLC Support
    Aug 14, 2024 · A starting point URL consists of two parts, the proxy prefix and the target URL. The proxy prefix identifies your server, and it will always be the same.Missing: structure syntax
  29. [29]
    JSTOR - OCLC Support
    Apr 21, 2025 · Note: EZproxy stand-alone users, please add the CookieLaw stanza above the JSTOR stanza to resolve the Cookie Banner pop-up issue. A Hosted ...
  30. [30]
    EBSCO Electronic Journals Service - OCLC Support
    Mar 2, 2023 · EZproxy will proxy access to a resource based on the first URL, Host, or HJ statement it matches in the config.txt file to the starting point ...
  31. [31]
    Understanding URLs and database stanzas
    ### Summary: How Stanzas Map Resources to Proxy Behaviors
  32. [32]
    EZproxy database stanzas - All - OCLC Support
    Jul 28, 2025 · This page provides an alphabetical listing of the database stanzas maintained by OCLC to provide access to specific e-resources in EZproxy.
  33. [33]
    Install and update self-hosted EZproxy - OCLC Support
    May 28, 2025 · The instructions on this page describe how to install and update EZproxy for Linux. EZproxy for Windows install: The instructions on this page ...
  34. [34]
    Initial set-up process - OCLC Support
    Jun 26, 2025 · 1. Install the software · Create a directory for EZproxy and make it your current directory. · Download the ezproxy program file into this ...Installation steps · Install the software
  35. [35]
    EZproxy - Service options - OCLC
    EZproxy Analytics · Manages and enriches data · Includes out-of-the-box insights · Offers powerful visualization tools · Makes sharing insights easy · All features.Missing: 2010s | Show results with:2010s
  36. [36]
    SSL certificate options - OCLC Support
    Oct 10, 2025 · EZproxy allows you to create a self-signed certificate for no cost or to create a certificate signing request which you process through a certificate authority.
  37. [37]
    How to change the logo on your Login Page for EZproxy
    Jul 21, 2023 · Resolution. There are two ways to resolve this. The first is to link to an externally hosted image file: Open login.htm in a text editor.Missing: tools | Show results with:tools
  38. [38]
    93% of library staff agree: We'd recommend hosted EZproxy®
    The benefits are real. Libraries using standalone EZproxy reported saving an average of about three weeks' worth of maintenance work annually when they switched ...Missing: self- | Show results with:self-
  39. [39]
  40. [40]
    Maintaining access to library resources in a COVID-19 world - Elsevier
    Sep 15, 2020 · During lockdown, the library promoted a university website page explaining the remote access routes to students. ... EZproxy access: On ...
  41. [41]
    Log files overview - EZproxy - OCLC Support
    Mar 7, 2025 · EZproxy offers institutions multiple customizable log formats to record user activity. These logs can be helpful in identifying levels of proxy usage, security ...
  42. [42]
    Use the Discover tool to view and sort your data - OCLC Support
    Aug 19, 2025 · Use the Discover tool. The Discover tool gives you a quick, visual way to explore your EZproxy usage data—helping you spot trends, see what's ...Missing: integration | Show results with:integration
  43. [43]
    Privacy considerations - OCLC Support
    Oct 24, 2025 · Find information about data privacy in EZproxy Analytics. Personal data logging Libraries using EZproxy Analytics maintain control of the data logged in their ...Missing: de- identification COUNTER integration
  44. [44]
    Does our Hosted EZproxy prefix start with HTTP or HTTPS?
    Feb 8, 2024 · Both HTTP and HTTPS are valid URLs for EZproxy. EZproxy intelligently switches between HTTP and HTTPS depending on the options selected in your config.txt.
  45. [45]
  46. [46]
    AutoLoginIP - OCLC Support
    Feb 20, 2025 · AutoLoginIP is used to identify computers that should be automatically logged into EZproxy. It accepts a single parameter that is either an IP address or an IP ...
  47. [47]
    ProQuest - OCLC Support
    Feb 18, 2025 · In order to provide access to resources that use https, your EZproxy server must be configured with an SSL certificate. ProQuest requires EZproxy 6.2.2 or ...
  48. [48]
    How do I set up a proxy server to access subscribed products?
    Feb 14, 2025 · If you are using OCLC's EZProxy product, you must configure your proxy with the up-to-date version of the stanza which is published at ...
  49. [49]
    EZproxy database stanzas - OCLC Support
    May 28, 2025 · Find all of the database stanzas maintained by OCLC, organized alphabetically, to provide access to specific e-resources in EZproxy.
  50. [50]
    How do I use EZproxy in combination with the HTTPS-only web ...
    Apr 29, 2025 · 1) Adjust the HTTPS-only setting in your browser. Most modern web browsers have settings or features that will enforce the use of HTTPS for secure browsing.
  51. [51]
    Can I use the Library Proxy Bookmarklet on my mobile device ...
    Jan 23, 2020 · Can I use the Library Proxy Bookmarklet on my mobile device, phone or tablet? Does EZproxy for Remote Access work from mobile devices?<|control11|><|separator|>
  52. [52]
    Self-hosted EZproxy access to Emerald Insight
    Jul 28, 2025 · Please note, this applies only to stand-alone EZproxy customers. All customers hosted by OCLC are running versions that are TLS 1.2 compliant.
  53. [53]
    Options for securing your EZproxy server - OCLC Support
    Jan 27, 2025 · EZproxy can support two SSL security options--SSL 2 and SSL 3; however, you can disable these weaker protocols so that only TLS is used. For ...Missing: setup | Show results with:setup
  54. [54]
    Configure OpenSSL directives - EZproxy - OCLC Support
    Apr 11, 2025 · EZproxy v7.1 was built with OpenSSL 1.1.1i, so it supports TLS 1.0, 1.1, and 1.2. By default, the following encryption/security options are ...
  55. [55]
    AllowIP - OCLC Support
    Mar 21, 2025 · Learn how to use the AllowIP config.txt directive to allow any number of address ranges to be allowed in EZproxy.Missing: restrictions | Show results with:restrictions
  56. [56]
    Security rules configuration - OCLC Support
    Aug 20, 2025 · EZproxy v7.1 contains a default set of security rules. These rules are active from the time you upgrade, but can be modified to meet your institution's needs.Security server directory and files · Security rules syntax · Default security rules
  57. [57]
    PocketMags - OCLC Support
    Jun 16, 2021 · In order to provide access to resources that use https, your EZproxy server must be configured with an SSL certificate. ... Xss-Protection ...
  58. [58]
    EZproxy 7.3 release notes, February 2024 - OCLC Support
    Jan 22, 2025 · Release Date: 6 February 2024. Introduction. EZproxy version 7.3 is an incremental release designed to improve the security of EZproxy and ...
  59. [59]
    Why am I getting a browser warning of ERR CERT COMMON NAME ...
    Dec 16, 2021 · Update the SSL certificate to include both the exact EZproxy name and also the wild card of the EZproxy name. Using the example about *.cptest.
  60. [60]
    UUconnect messages in EZproxy messages file - OCLC Support
    May 27, 2025 · UUconnect errors point toward network connectivity or configuration issues. Common causes are: The DNS server that the EZproxy server is ...