Navigation: The path to a running installation ‹ Menu: Set up Menu: Roles ›
Access
Who may enter
Here you decide who reaches your installation and how people log in. Authentication defines the login methods, self-registration opens the instance for new accounts, and guests only see what is explicitly released for guests. The one time code adds a second factor to the password.
Terms of this station
Area
Login
The Administration section for sign-in and access: password and authentication, self-registration, guests and external people, security, cloud login, LDAP, Shibboleth and passkey.
Login in detail
The Administration section for sign-in and access: password and authentication, self-registration, guests and external people, security, cloud login, LDAP, Shibboleth and passkey.
German: Login
Concept
Authentication
The proof that a person is who they claim to be.
Authentication in detail
The proof that a person is who they claim to be. OpenOlat supports several methods side by side, and one account can carry several of them.
German: Authentifizierung
Module
Self-registration
The module a person uses to create an account themselves on the login page, without user management creating it.
Self-registration in detail
The module a person uses to create an account themselves on the login page, without user management creating it. The administration sets the home organisation, the permitted e-mail domains, the mandatory fields and whether the account is active at once or pending.
German: Selbstregistrierung
What users call it: registration, sign up, create account
Concept
Guest access
Access to OpenOlat without an account through the Guest access link on the login page.
Guest access in detail
Access to OpenOlat without an account through the Guest access link on the login page. Guests only see resources explicitly released for guests, and only in conventional courses.
German: Gastzugang
What users call it: as guest, anonymous access, without login
Not to be confused with Guest: Guest is the access role of the person; guest access is the feature the administration switches on or off.
Includes:
Guest in detail
Access without signing in, with read access to the resources explicitly released for guests. Guests have no account, do not become members and leave no assessment behind.
German: Gast
Not to be confused with Guest access: Guest is the access role of the person; guest access is the feature the administration switches on or off.
Concept
One time code
An eight-digit confirmation code OpenOlat sends by e-mail after the username and password have been entered.
One time code in detail
An eight-digit confirmation code OpenOlat sends by e-mail after the username and password have been entered. It is the second factor for accounts without a passkey and is switched off by default.
German: One Time Code
What users call it: one-time password, OTP, e-mail code
Not to be confused with Passkey: The one time code arrives by e-mail and needs no device; the passkey is bound to a device or a security key.
Not to be confused: Guest access and Guest
Guest is the access role of the person; guest access is the feature the administration switches on or off.
Read up
Deepen once the installation is running
The installation is running. Now the things that did not matter while setting up pay off: the terms of this station have parts and settings that control the installation more precisely.
- Login: Security.
- Authentication: Local OpenOlat authentication, Login for administrators, Cloud login, Passkey and more.
- Self-registration: Registration. More on the page Self-registration.
Further information
Mentioned on this page
Login: Overview >
Login Concept >
Self-registration >
Roles and Rights: Guest access >
Passkey >
One Time Code >
Security >
Login and Registration >
Further reading
Password and Authentication >
Anonymous guests and external users >
Glossary >