Recipient authentication via Dynamic Knowledge-Based Authentication (KBA)

Recipient authentication via Dynamic Knowledge-Based Authentication (KBA)

Available only in US datacenter on all paid plans and requires Zoho Sign credits

Knowledge-based authentication (KBA) is a type of authentication where signers are identified by asking them to answer specific security questions to ensure that the signer hasn't been impersonated. As the name suggests, KBA selects questions to which only the signer would know the answers, the system then verifies if the signer is the legitimate owner.



Some popular use cases where this authentication method can be used include: banking and finance, real estate, government agencies, and other departments that handle the transactional financial or sensible information and belong to regulated industries.

Key benefits of Knowledge-Based Authentication

  1. Prevents unauthorized access by adding an extra layer of security for sensitive documents.
  2. Real-time identity verification

Why Dynamic Knowledge-Based Authentication (KBA)?

Dynamic KBA is preferred in scenarios when there are high chances for a user's information to change over a period of time. The questions asked in Dynamic KBA aren't predefined and are generated in real-time. An advantage of this method is that dynamic KBA is more fraud-resistant than static KBA.

Dynamic Knowledge-based authentication involves verifying the signer's identity by requesting signer's information such as first name, last name, year of birth, last four digits of their social security number and their address. The KBA method requires the recipient to answer questions about themselves, and it is matched with information available in credit bureau and public demographic data.

KBA is only valid for verifying the identity of signers who hold the US social security number.

How Dynamic Knowledge-Based Authentication (KBA) work in Zoho Sign

Our technology partner, IDology requires the signer's information such as their first name, last name, year of birth, last four digits of their social security number, and their address, which will be verified against public database, and a list of five out-of-wallet questions about the signer will be generated. If the answers are wrong but the signer has scored the minimum required for challenge, and also if the sender has enabled the challenge option, then the signer will be informed they are eligible to challenge previous outcome and additional questions will be shown if they agree to challenge. The signer is granted access if the answers are correct. If the answers are incorrect, the signer's access is denied.

Flow of the authentication



Example questions

  1. What are the first two digits of your social security number?
  2. In which country have you lived?
  3. Between 1989 and 1994, in which state did you live?
  4. At which of the following addresses have you lived?

Enabling Dynamic Knowledge-Based Authentication

This action can only be performed by administrators. If you're an administrator, follow these steps:
  1. From the left navigation pane, click Settings > Integration, and toggle the Dynamic Knowledge-Based Authentication (KBA) via IDology to ON.
  2. Once toggled, click Configure.
  3. You can set the number of attempts permitted, number of correct responses to clear, also allow signers to challenge for a reattempt and set the number of correct responses to proceed with the challenge.
  4. The signer will be shown a set of out-of-wallet questions to which they must pick the correct responses. You can specify a minimum score for the signers to clear the authentication procedure.



  5. When the signer scores below the minimum, you may show them a few more questions as a challenge for them to attempt to clear the authentication procedure again. The minimum score required for signers to take the challenge can also be specified.
  6. These thresholds for clearing the Knowledge Based Authentication procedure, with or without the challenge, can be set entirely at your discretion.
  7. Click Apply.

How to select identity verification via Dynamic Knowledge-Based Authentication

  1. Upload the document, create a new template, or select an existing template and enter the recipient details under the Add recipients section.
  2. To set recipient identity verification via KBA, click Customize and select Dynamic Knowledge-Based Authentication (KBA) from the Authentication type dropdown.
  3. Click Save.




Note: 
  1. The signer's first name and last name must match those present in their social security number.
  2. If there is insufficient information about the signer, IDology won't be able to generate questions. In such instances, the sender could proceed by choosing alternate signer authentication method (email, SMS, or offline).
  3. The number of questions shown to signers shown to the signer (5) and the number of additional questions shown to signers during the challenge (2) cannot be edited

Checking documents signed with Dynamic Knowledge-Based Authentication enabled

  1. From the navigation pane, click Documents > Completed and select the document.
  2. Download the completion certificate, in which you can find the signer's info, authentication mode, authentication result, and service provider.

Credits consumed

Every time the signer attempts answering the main set of questions, 15 Zoho Sign credits will be consumed. If the signer challenges the attempt, an additional 5 Zoho Sign credits will be consumed.

FAQ's

If the recipient closes the agreement for any reason before completing their authentication process, will they have to reauthenticate?

Yes. The recipient has to verify themselves to access the document.

How can I secure against brute force attempts to authenticate?

The sender can set the number of attempts permitted. (Maximum 5 attempts can be set)

My signer failed to clear the questions that were asked. Will they get the same questions again?

No. The questions change based on the signer's information present in the public dataset.

My signer has exceeded the number of attempts. How can they access the document?

If the signer has exceeded the maximum number of allowed attempt threshold, the signer has to contact the sender for assistance. The sender will have the option to unblock the access and once done, appropriate Zoho Sign credits will be consumed when the signer reattempts. 

    Zoho CRM Training Programs

    Learn how to use the best tools for sales force automation and better customer engagement from Zoho's implementation specialists.

    Zoho CRM Training
      Redefine the way you work
      with Zoho Workplace

        Zoho DataPrep Personalized Demo

        If you'd like a personalized walk-through of our data preparation tool, please request a demo and we'll be happy to show you how to get the best out of Zoho DataPrep.

        Zoho CRM Training

          Create, share, and deliver

          beautiful slides from anywhere.

          Get Started Now


            Zoho Sign now offers specialized one-on-one training for both administrators and developers.

            BOOK A SESSION








                                You are currently viewing the help pages of Qntrl’s earlier version. Click here to view our latest version—Qntrl 3.0's help articles.




                                    Manage your brands on social media

                                      Zoho Desk Resources

                                      • Desk Community Learning Series


                                      • Digest


                                      • Functions


                                      • Meetups


                                      • Kbase


                                      • Resources


                                      • Glossary


                                      • Desk Marketplace


                                      • MVP Corner


                                      • Word of the Day


                                        Zoho Marketing Automation

                                          Zoho Sheet Resources

                                           

                                              Zoho Forms Resources


                                                Secure your business
                                                communication with Zoho Mail


                                                Mail on the move with
                                                Zoho Mail mobile application

                                                  Stay on top of your schedule
                                                  at all times


                                                  Carry your calendar with you
                                                  Anytime, anywhere




                                                        Zoho Sign Resources

                                                          Sign, Paperless!

                                                          Sign and send business documents on the go!

                                                          Get Started Now




                                                                  Zoho TeamInbox Resources



                                                                          Zoho DataPrep Resources



                                                                            Zoho DataPrep Demo

                                                                            Get a personalized demo or POC

                                                                            REGISTER NOW


                                                                              Design. Discuss. Deliver.

                                                                              Create visually engaging stories with Zoho Show.

                                                                              Get Started Now







                                                                                            You are currently viewing the help articles of Sprints 1.0. If you are a user of 2.0, please refer here.

                                                                                            You are currently viewing the help articles of Sprints 2.0. If you are a user of 1.0, please refer here.



                                                                                                  • Related Articles

                                                                                                  • Recipient identity verification in Zoho Sign

                                                                                                    The identity of the recipient can be verified within Zoho Sign via several modes. This provides an added layer of security to further fortify the signing process. SMS Knowledge-Based Authentication (KBA) European eID (EU eID) Email Offline SMS The ...
                                                                                                  • Recipient authentication

                                                                                                    Set the authentication code delivery mode for the recipient to authenticate the signing process. Hover over Settings and click Account settings. Click Sending options and navigate to the Recipient authentication section. Enable the Enforce ...
                                                                                                  • Recipient identity verification via European Union eID (EU eID)

                                                                                                    Available only in Enterprise Edition Setting recipient identity verification via European Union eID (EU eID) Most of us have validated our identity with a driver's license, national ID cards, or other IDs while creating our bank account or when ...
                                                                                                  • Digital certificate-based signatures (PFX format)

                                                                                                    Available in all paid plans There are many legal ways to digitally sign documents across the globe, and businesses can select their signing methods based on specific cases and compliance needs. These methods include: Using an app like Zoho Sign, ...
                                                                                                  • Qualified Electronic Signatures via European Union eID for EU

                                                                                                    Available only in Enterprise Edition This integration allows residents and entities in the European Union (EU) to digitally sign documents using Qualified Electronic Signature (QES) that have been issued to signers via eID authentication. This ...
                                                                                                    Wherever you are is as good as
                                                                                                    your workplace

                                                                                                      Resources

                                                                                                      Videos

                                                                                                      Watch comprehensive videos on features and other important topics that will help you master Zoho CRM.



                                                                                                      eBooks

                                                                                                      Download free eBooks and access a range of topics to get deeper insight on successfully using Zoho CRM.



                                                                                                      Webinars

                                                                                                      Sign up for our webinars and learn the Zoho CRM basics, from customization to sales force automation and more.



                                                                                                      CRM Tips

                                                                                                      Make the most of Zoho CRM with these useful tips.



                                                                                                        Zoho Show Resources