Skip to content

Login Page

Video Introduction (German): Login

On the login page you prove that you have access to OpenOlat. Your organisation determines what the page looks like. This is why you may not see all the options described here. Conversely, your organisation can set up its own buttons and labels that are not described here. Your organisation tells you which of them to choose. If you cannot log in successfully, you will find the right way below under I cannot get in.

This is what a login page that only offers login with an OpenOlat account looks like:

Field Username, buttons Login and Explore our offers, link Forgot password?, without identity providers

Your organisation can set up further options, for example login through an identity provider, guest access or self-registration. Such a login page looks like this, for example:

Field Username and button Login, below identity providers, Guest access, Explore our offers, Register here and Forgot password?

If your login page looks different from the login page at the top, your organisation has set it up. If the following explanations do not help you in that case, only your organisation can help you log in, not frentix. The section None of this helps explains how to reach it.

How to log in

Which way you take depends on where your account is stored. There are three possibilities, and your organisation decides which of them are offered on your login page.

  • With the account of your organisation. The buttons below "Please select your identity provider." lead to an external service, for example "Microsoft Azure AD". You log in there with the credentials that you also use for the other services of your organisation. OpenOlat does not store this password. If you have already logged in at your organisation, you may reach OpenOlat directly without any further entry (single sign on).
  • With a local OpenOlat account. Username and password are stored in OpenOlat here. Your organisation determines where you enter them: either the entry stands directly on the login page, introduced with "Please log in with your personal username and password.", or it is behind the button "Login with an OpenOlat account". You first enter your username and click "Login". OpenOlat then asks for your password or, if you have set up a passkey, for the passkey.
  • Without an account. "Guest access" and "Explore our offers" provide an insight without logging in, "Register here" creates your own account, provided that your organisation allows self-registration.

Depending on the security level, a second step follows after the password: a confirmation by Passkey or the entry of a one time code that OpenOlat sends you by e-mail.

I cannot get in

You are in front of the login and cannot get any further. Find the case below that matches your situation: every case names the next step and says whether you can take it yourself. Your organisation determines which of these ways your login page offers.

If the login page shows "You have been logged out", the cause is not a login problem: your session has expired. Log in again, see Session Timeout and Logout.

Six login problems, one way to try first for each, and if that does not help, your organisation as the responsible body

I have forgotten my password

You set a new password yourself, provided that your organisation allows this and an e-mail address is stored on your account. The link "Forgot password?" is below the login in the area "Do you need help?", together with the link "Frequently asked questions". If you do not see the area, click "Login with an OpenOlat account" first. The link starts the wizard "Set login credentials", which identifies you by a validation code and then lets you set a new password. The page Password describes the steps.

Lower part of the login box with Guest access, Catalog and Register here, below it the highlighted area Do you need help? with the links Forgot password? and Frequently asked questions

Your organisation has set up whether and where the link leads. It can open the OpenOlat wizard, open a page of your organisation in a new window, or be missing. If the link is missing, your password is not stored in OpenOlat. This is the case if you log in with one of the buttons below "Please select your identity provider.". Change the password where you also change it for your other services, or contact your organisation.

I do not receive an e-mail with the validation code

If the step "Login - Validation" appears directly during the login and not in the wizard "Set login credentials", it is about the second factor. The page One Time Code describes this case.

Without the validation code you cannot get any further in the wizard "Set login credentials". Four things help, in this order:

  1. In the step "Validation" you find "Did you not receive your validation code?" with the button "Resend validation code". OpenOlat then generates a new code. All earlier codes become invalid.
  2. Check the spam folder. The e-mail has the subject "Validation code for new OpenOlat credentials".
  3. OpenOlat sends the e-mail to the address stored on your account. If an old address or no address at all is stored there, the e-mail does not reach you. You cannot change this address without logging in, only the body that manages your account can do that.
  4. If OpenOlat reports "User could not be identified clearly.", the e-mail address or the username you entered belongs to no account or to several accounts. Try the other entry instead.

If you use a passkey for your account, the e-mail has the subject "Key for new OpenOlat password" and contains no code, but the note to use your recovery keys or to contact the support centre. Recovery keys are the replacement codes that OpenOlat showed you when you set up the passkey, see Passkey. If you no longer have a recovery key, only your organisation can help.

I have not received any credentials from my institution

OpenOlat does not create accounts on its own. Either your organisation creates the account for you and tells you the username, or it allows self-registration. If you receive nothing and the login page shows no link "Register here", OpenOlat has no way to help you: contact your organisation.

If the login page shows the link "Register here", you can create an account yourself. If OpenOlat reports "Your e-mail address doesn't match our list. Please use your institutional e-mail address." while you do so, only certain e-mail domains are released for self-registration. Your organisation knows which ones.

The login through my institution fails

If the identity provider of your organisation throws you back, the message on the page "Authentication not successful" tells you whether you can do something yourself. This applies to identity providers such as Microsoft Azure AD or Keycloak. With Shibboleth the messages read differently, for example "You are not authorized to log in OpenOlat."; the way is the same: your organisation.

Page "Authentication not successful" with the message access_denied, below it the marked box with the support address, then the button "Go to login page"

Message What it means What you do
"You are not authorized to use the OpenOlat service (access_denied). Please contact the system administrator." The access was not granted: either your organisation has not released it, or you cancelled the login at the identity provider. Log in again and agree to the access, otherwise contact your organisation.
"You are not allowed to access the OpenOlat service (invalid_grant). Please contact the system administrator." The identity provider rejected the request from OpenOlat. Contact your organisation.
"Your account is not yet created on the OpenOlat service. This is required for beeing able to log in. Please contact the system administrator." The login was successful, but an OpenOlat account is missing. Contact your organisation.
"We were not able to identify you. Please contact the system administrator." The identity provider did not supply OpenOlat with any information that allows your account to be matched. Contact your organisation.
"A technical problem occurred (token_rejected). Please try it again later." The exchange between OpenOlat and the identity provider failed. Try again later, otherwise contact your organisation.
"An unexpected error occurred. Please try it again later." An error without further detail. Try again later, otherwise contact your organisation.

The messages ask you to contact "the system administrator". This means the body that gave you the access, not frentix. Who this is, is described under None of this helps.

An e-mail address can appear below the message, introduced with "If the problems can not be resolved, please contact support using the following address:". Your organisation has stored this address, it is not necessarily the body that manages your account. The button "Go to login page" brings you back to the login.

My account is blocked or not yet active

These two messages concern the state of your account, not your entry. After you have entered your credentials, OpenOlat shows either "Your account is deactivated." or "Your account has not yet been activated.", each with a link to support. Only your organisation can change either of them.

Username or password wrong

Check the username first, because it is not necessarily your e-mail address. Your organisation determines which entry applies. The message reads "Username or password wrong. Please try again or use the function «Forgot password?»".

After too many failed attempts, OpenOlat temporarily blocks the login for this username and reports "Login blocked for this username.". Wait for the time named in the message and log in again afterwards. If you do not know your username, only your organisation can help.

None of this helps

If none of the ways above gets you any further, you need a person who is allowed to manage your account. This body is always the same, no matter why the login failed.

This is your support

The right support is always the body that gave you the access to OpenOlat: your school, university, company, public administration or training provider, or their IT and student administration. As long as you cannot get in, only this body can set up an account for you, unblock it or change your e-mail address. frentix develops OpenOlat and does not answer questions about individual accounts. Only your organisation itself knows how to reach it. Check the area "Do you need help?" and the page footer of the login page: your organisation can store its contact details there. Otherwise ask the person from whom you received the course or the access.

Guest Access

Alternatively, you can also visit OpenOlat as a guest. The guest access provides an insight into OpenOlat with limited functionality: you only have access to learning content that is explicitly released for guests. In order to have access to other learning materials and activities, you have to register with OpenOlat. Further information on the guest access can be found here.

Browser

OpenOlat works optimally with the following browsers in a current version (mobile or desktop):

Cookies & Javascript

In any case, your browser must accept session cookies, and Javascript must be enabled.

After login

After your login you will navigate either to

  • your personal landing page in OpenOlat,
  • an info page, a page which usually contains general information on various topics,
  • the OpenOlat portal or
  • a landing page defined by yourself.

After calling up the catalog

When you call up the catalog on the login page, the web catalog is displayed, a mirrored version of catalog 2.0 that can be browsed without registration. Only when a specific course is to be booked are persons without an account guided through the registration.

Further information

Mentioned on this page
Passkey >
One Time Code >
Password >
Roles and Rights: Guest access >
Apple Safari >
Firefox >
Microsoft Edge >
Google Chrome >
Portal configuration >
Externally available catalog >

Further reading
Session Timeout and Logout >
Security Levels >
Login Concept >

youtube
Login

To the top of the page ^