> For the complete documentation index, see [llms.txt](https://ztrust.gitbook.io/ztrust-documentation/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://ztrust.gitbook.io/ztrust-documentation/user-manual-ztrust-v4.1/4.-admin-manual/4.13-set-up-multi-factor-authentication/4.13.1-recaptcha-registration-flow.md).

# 4.13.1 ReCAPTCHA registration flow

*reCAPTCHAs are used to distinguish humans from automated bots, protecting websites from malicious activities like spam, fake registrations, data scraping, and brute-force attacks by presenting challenges that are difficult for computers but easy for humans to solve. They enhance online security, prevent abuse of services, ensure fair use of resources, and safeguard sensitive processes like online purchases and voting.*

To setup reCAPTCHA during registration, follow these steps:

1. Click on **Authentication** in the sidebar.<br>

   <figure><img src="/files/epkSnCR3HbwRTrwbvxoh" alt=""><figcaption><p>Fig. 4.12.1.a: Navingating to Authentication section</p></figcaption></figure>

2. Click on the **kebab menu (three dots)** on the right side of the registration flow. Click on **Duplicate**. A popup will appear.\
   &#x20;

   <figure><img src="/files/pjZgL0XiA3QCN8AaPGNa" alt=""><figcaption><p>Fig 4.12.1.b: Duplicating the existing registration flow</p></figcaption></figure>

3. In the popup, enter a **Name** for the flow, "ReCAPTCHA".<br>

   <div align="center"><figure><img src="/files/LmT6krAUndh39E7Zl6mY" alt=""><figcaption><p>Fig 4.12.1.c: Giving a name to the new registration flow</p></figcaption></figure></div>

4. Click on **Duplicate**. You will be redirected to the flow configuation.<br>

   <figure><img src="/files/CkWrk7BNC8a78mA2Rhs8" alt=""><figcaption><p>Fig 4.12.1.d: Duplicated registration flow configuration page</p></figcaption></figure>

5. Click on the **settings menu (gear icon)** on the right side of the **reCAPTCHA**. A popup will appear to configure the **reCAPTCHA**.<br>

   <figure><img src="/files/3cGDoulITAqMBvcUDRm0" alt=""><figcaption><p>Fig 4.12.1.e: Proceeding to configure reCAPTCHA for registration</p></figcaption></figure>

6. Give it an **alias**. Enter your **reCAPTCHA Site Key** and **reCAPTCHA Secret**. You can turn on the **Use recaptcha.net** switch to utilize recaptcha.net for the CAPTCHA. If you want to use **reCAPTCHA v3**, you can turn on **reCAPTCHA v3** switch.<br>

   <figure><img src="/files/Tiz8Wu7IgizzJad7sHEY" alt=""><figcaption><p>Fig 4.12.1.f: Configuring reCAPTCHA for registration</p></figcaption></figure>

   <table><thead><tr><th width="196">Field Name</th><th width="147">Field Type</th><th>Description</th></tr></thead><tbody><tr><td>Alias</td><td>Text</td><td>Enter the Alias for the flow as required</td></tr><tr><td>Recaptcha Site Key</td><td>Text</td><td>Enter the value for the Recaptcha Site Key as generated from the Google reCAPTCHA portal.</td></tr><tr><td>Recaptcha Secret</td><td>Text</td><td>Enter the value for the Recaptcha Secret Key as generated from the Google reCAPTCHA portal.</td></tr><tr><td>Use recaptcha.net</td><td>Toggle</td><td>When activated, it utilizes recaptcha.net; when deactivated, it defaults to google.com.</td></tr></tbody></table>

7. Click **Save**.

8. Change the **Requirement** for reCAPTCHA from **Disabled** to **Required**.<br>

   <figure><img src="/files/sv57UVUnZdL1pyhMEnBV" alt=""><figcaption><p>Fig 4.12.1.g: Changing the 'Requirement' of reCAPTCHA for registration</p></figcaption></figure>

9. Click on the **Actions**, on the top right of the page, and then **Bind flow**. A popup will appear.<br>

   <figure><img src="/files/Ek7K3EsAYlzqUEu4c51X" alt=""><figcaption><p>Fig 4.12.1.h: Proceeding to bind the registration reCAPTCHA flow</p></figcaption></figure>

10. Select the **Registration flow**.<br>

    <figure><img src="/files/7otsWqmpMW7RScsQ5Cu8" alt=""><figcaption><p>Fig 4.12.1.i: Selecting a flow to bind reCAPTCHA registration to</p></figcaption></figure>

11. Click **Save**.

12. Click on **Realm Settings**.<br>

    <figure><img src="/files/O6bGv8ArnB1JdROsPWOc" alt=""><figcaption><p>Fig 4.12.1.j: Navigating to Realm Settings</p></figcaption></figure>

13. Click on the **Security Defenses** tab and change the **X-Frame-Options** and **Content-Security-Policy** as required.<br>

    <figure><img src="/files/CQzwayA3OnXM3wNHIkha" alt=""><figcaption><p>Fig 4.12.1.k: Configuring Security Defenses for reCAPTCHA registration</p></figcaption></figure>

14. Click **Save.**
