Possible security risks regarding attachments
Our techies have raised concerns about how the URL for attachments is published in the new "download" window. I.e. they don't like making some of the content server URLs publicly available. BTW, virtually all courses are served from the same content server (for our commercial LMS), therefore courses can be accessed by thousands of people.
Maybe this is just the way each browser handles it by default, and can't be changed? I don't know. But their fear is that someone could start sniffing for files ... or use something like Fiddler.
TBH, I'm not sure how much validity there is to all all this, but I said I'd raise it anyway. Any ideas? Can the URL be hidden? Is anyone else having to get around this?
PS Some of our courses have links within them that launch downloadable documents too. However, these documents can be hosted totally separately - and away from any other content.