Using CAPTCHA Options With Out-of-Band Workflow Plugins

new for 5.9R3
If you select the "Onboard Via Cloud" option for either the Outbound Email or Outbound SMS system service, you must use either CAPTCHA or RECAPTCHA with either of the two existing out-of-band workflow plugins: "Perform out-of-band verification" or "Request access from a sponsor offline" workflow plugins. If you select any option other than "Onboard Via Cloud" for both the Outbound Email and Outbound SMS system services, you then have the additional option of not prompting the user for CAPTCHA or RECAPTCHA during an enrollment.

Follow the steps below to explore your options:

  1. In the Cloudpath UI, navigate to Administration > System Services.
  2. Scroll down to the Outbound Email service and click the edit icon.
  3. Click on the Email Provider drop-down to invoke the email provider options:

    Email Provider Options

  4. Make the selection of your choice:
    1. Onboard Via Cloud: Emails are routed through cloud servers. If you select this option, the "Perform out-of-band verification" or "Request access from a sponsor offline" workflow plugins will use CAPTCHA or RECAPTCHA (based on how you configure those plugins) during user enrollment to help protect the system against malicious automated flooding for requests for access.
      Note: If you select either of the other Email Provider options, and you also use your own SMS provider, you then have the option to disable CAPTCHA and RECAPTCHA for the two out-of-band workflow plugins (described later in this procedure).
    2. SMTP Server: Emails are routed to your own email server, based on the information you configure in the SMTP Information portion of the screen.
    3. Email Disabled: Outgoing emails are disabled.
  5. Complete the Outbound Email configuration and click Save.
  6. Scroll down to the Outbound SMS service and click the edit icon.
  7. Click on the SMS Provider drop-down to invoke the SMS Provider options:

    SMS Provider Options

  8. Make the selection of your choice:
    1. Onboard Via Cloud: SMS messages are routed through cloud servers. If you select this option, the "Perform out-of-band verification" or "Request access from a sponsor offline" workflow plugins will use CAPTCHA or RECAPTCHA (based on how you configure those plugins) during user enrollment to help protect the system against malicious automated flooding for requests for access.
      Note: If you select either of the other SMS Provider options, and you also use your own Email provider, you then have the option to disable CAPTCHA and RECAPTCHA for the two out-of-band workflow plugins (described later in this procedure).
    2. Your CDYNE Account: SMS messages are routed through a customer-owned CDYNE account.
    3. Other SMS Gateway: SMS messages are routed through a customer-owned account. The URL of the SMS gateway is required.
    4. Your Twillio Account: SMS messages are routed through a customer-owned Twillio account.
    5. SMS Disabled: No SMS messages are sent.
  9. Select the desired CAPTCHA option in the "Perform out-of-band verification" or "Request access from a sponsor offline" workflow plugins as you add (or edit) them as a step in a workflow. Scroll to the Captcha Type drop down (the example screen is from the "Request access from a sponsor offline" plugin), and make your selection:

    Captcha Type Drop-Down

    Note: The "Disabled" option appears only if you did not use the "Onboard Via Cloud" option in either Email Provider Options or SMS Provider Options.