-
Improvement
-
Resolution: Unresolved
-
Minor
-
None
-
3.3, 3.11.11, 4.0.5, 4.2.1
-
MOODLE_311_STABLE, MOODLE_33_STABLE, MOODLE_400_STABLE, MOODLE_402_STABLE
After LTI has been activated, teachers are allowed to connect to any external service by submitting moodle-ID, name oder e-mail adress. The submitting of data can not be overlooked.
Corresponding to data security it is necessary to restrict the functions of LTI, possible as follows:
The moodle-administrators build a range of LTI-activities, allow teachers to access, but prohibit any editing.
In this way data security for all activities is under control of the administrators and spare the teachers creating their own services. During the selection of the given LTI-activities teachers are not allowed to edit the link to a certain service to prevent the activation of unauthorized external 'back door' services.
- has been marked as being related by
-
MDL-55346 Capabilities (create, view...) for a specific external tool type (LTI)
-
- Open
-