How-To Guides
Configuration Guides

Configure Hardware Tokens

4min

The MFA Manager can integrate with hardware tokens provided by Kron PAM, along with serial and seed numbers for hardware tokens.

Document image


Registration

The Kron PAM admin coordinates the hardware registration process and decides which user will use the token. The user has to be added to the system, either manually or by using Active Directory integration before any token registration.

Admin should complete the token registration process.

  1. Navigate to 2FA Provisioning – Hardware Token Management
  2. Fill out the token serial number, seed, and algorithm information
Document image


After the token registration is complete, the user can start using his/her own hardware token to connect to the Kron PAM GUI and target devices.

Bulk Import Registration

You can register hardware tokens in bulk. The Kron PAM admin can download the Excel template file from the 2FA provisioning > Hardware Token Bulk Import page.

Download Template from Hardware Token Bulk Import Page
Download Template from Hardware Token Bulk Import Page

Example Bulk Sheet
Example Bulk Sheet


After downloading the Excel template, the Kron PAM admin should add the required hardware token information to it. The algorithm field content should be filled in by using the drop-down menu. Kron PAM supports SHA1, SHA256, and SHA512 algorithms. After filling out the Excel sheet, the Kron PAM admin can upload it on the 2FA provisioning > Hardware Token Bulk Import page.

After the bulk import, the Kron PAM admin should navigate to the 2FA ProvisioningHardware Token Management page and match each user to their associated hardware token by using the options button.

Assigning Hardware Token to User (First Step
Assigning Hardware Token to User (First Step

  Assigning Hardware Token to User (Second Step)
Assigning Hardware Token to User (Second Step)