4.13.2 ReCAPTCHA login flow

"reCAPTCHAs are used to distinguish humans from automated bots, protecting websites from malicious activities like spam, fake registrations, data scraping, and brute-force attacks by presenting challenges that are difficult for computers but easy for humans to solve. They enhance online security, prevent abuse of services, ensure fair use of resources, and safeguard sensitive processes like online purchases and voting."

To set up reCAPTCHA login flow, follow the below steps -

  1. Click on Authentication in the sidebar.

    Fig. 4.12.2.a: Navingating to Authentication section

  2. Click on the kebab menu (three dots) on the right side of the browser flow. Select Duplicate. A popup will appear.

    Fig 4.12.2.b: Duplicating the existing browser flow

  3. Enter a Name, "ReCAPTCHA login" and give a description to it.

    Fig 4.12.2.c: Giving a name to the new browser flow for reCAPTCHA login

  4. Click Duplicate. You will be redirected to the flow configuration.

    Fig 4.12.2.d: Duplicated browser flow configuration page for reCAPTCHA login

  5. Delete everything under ReCAPTCHA login forms.

    Fig 4.12.2.e: reCAPTCHA browser flow configuration page after deleting executions

  6. Click on the plus icon on the right side of the ReCaptcha login forms. Select Add Execution. A popup will appear to select an execution.

    Fig 4.12.2.f: Proceeding to add a new execution to reCAPTCHA login flow

  7. Search for Login Recaptcha Form, select it and click Add.

    Fig 4.12.2.g: Select 'Login ReCaptcha Form' execution to add

  8. Click on the settings menu (gear icon) on the right side of the Login Recaptcha form. A popup will appear to configure the reCAPTCHA.

    Fig 4.12.2.h: Proceeding to configure reCAPTCHA for login

  9. Give it an alias. Enter your reCAPTCHA Site Key and reCAPTCHA Secret.

    Fig 4.12.2.i: Configuring reCAPTCHA for login

    Field Name
    Mandatory (Yes/No)
    Field Type
    Description

    Recaptcha Site Key

    Yes

    Text

    Enter the reCAPTCHA site key as generated from Google Cloud Console

    Recaptcha Secret

    Yes

    Text

    Enter the reCAPTCHA secret key as generated from Google Cloud Console

  10. Click Save.

  11. Set the Requirement for Login Recaptcha form as Required.

    Fig 4.12.2.j: Changing the 'Requirement' of reCAPTCHA for login

  12. Click on the Actions, on the top right of the page, and then Bind flow. A popup will appear.

    Fig 4.12.2.k: Proceeding to bind the login reCAPTCHA flow

  13. Select the binding type as browser flow and click Save.

    Fig 4.12.2.l: Selecting a flow to bind reCAPTCHA login to

The ReCAPTCHA will now be enabled in the login page.

Last updated