Agent Reference Guide
Windows Agent

Multi-Factor Authentication

2min

In the agent-installed endpoint, we can add a second layer of security during the authentication. Upon providing the correct credentials users will be asked to provide an OTP from the Kron PAM mobile app to complete login.

MFA User Group Management
MFA User Group Management


First, users need to enable MFA for the user group from Kron PAM.

  • Navigate to Administration.
  • Multi-Factor Authentication > User Group Management.

From this menu enable OTP for the desired user groups.

System Config Management MFA Parameter
System Config Management MFA Parameter


As a second step

  • Navigate to Administration > System Configuration Manager.
  • Add sc.linux.agent.connection.otp.enabled parameter as true.
Agent MFA Login
Agent MFA Login


Upon successfully configuring MFA, users will be asked to provide an OTP upon connecting to the endpoint. When a user enters the wrong OTP 3 times the agent terminates the connection.