Jump to content

Recommended Posts

Posted

I must admit, we still use a generic login for KS1 and KS2.

 

In an ideal world I'd move to individual logins, but for us we're moving more and more towards Google Classroom and Chromebooks, and each child has their own Google account for that. KS2 children at least seem to be OK remembering their Google logins, if not, teachers have access to the list of usernames and passwords.

 

That being the case I'm less bothered about pushing for individual Windows logins, as the children are using Windows devices less and less, so it doesn't seem worth the argument.

Posted
I must admit, we still use a generic login for KS1 and KS2.

 

In an ideal world I'd move to individual logins, but for us we're moving more and more towards Google Classroom and Chromebooks, and each child has their own Google account for that. KS2 children at least seem to be OK remembering their Google logins, if not, teachers have access to the list of usernames and passwords.

 

That being the case I'm less bothered about pushing for individual Windows logins, as the children are using Windows devices less and less, so it doesn't seem worth the argument.

You don't have a single login for both, synchronised between your domain and Google? That seems like more work than its worth.

Posted
You don't have a single login for both, synchronised between your domain and Google? That seems like more work than its worth.

It's an option, although I think ultimately we're going to O365 next summer, so most likely I'll sync our domain with O365 accounts rather than Google. Nothing's finalised yet though.

  • 1 month later...
Posted
This is an issue of great concern to me now that most schools are enabling external access of one kind or another. My current school has all the students in one year with the same simple short password, meaning that any student and by extension any parent can log in as any child from outside school. This seems to be both a GDPR failing and safe guarding. I am currently losing the battle (and the will to live) on this issue. I have been asked to provide examples of best practice from other schools and prove that there is a risk, I've tried to explain that's not how the law works to no avail.
Posted
This is an issue of great concern to me now that most schools are enabling external access of one kind or another. My current school has all the students in one year with the same simple short password, meaning that any student and by extension any parent can log in as any child from outside school. This seems to be both a GDPR failing and safe guarding. I am currently losing the battle (and the will to live) on this issue. I have been asked to provide examples of best practice from other schools and prove that there is a risk, I've tried to explain that's not how the law works to no avail.

 

You also shouldn't have to show best practice. It's plainly obvious that if Timmy Timpson has "[email protected]" as their username and "generic1234" as their unchanging password, then Alan Alanson's account is fair game.

 

I've had fights with Children's boards that ask to use school DFE numbers as passwords on Word Documents (to be fair .docx) with the school's name as the file name - and Police departments who file domestic report incidents using .doc files with generic passwords for the entire force area.

 

Schools aren't half of it.

 

The DfE need to decree a requirement for 2 Factor Authentication for staff, sharpish.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...