Reference Guide
Multi-Factor Authentication
Using MFA for RDP Connections
to activate mfa for an rdp connection to a target device pre requisite admin and users have the qr code, installed the kron pam mobile app, scanned the qr code with the mobile app, and otp is enabled for the user group that will be using mfa for rdp connections (see sections docid\ ljpie1 hzi7azj6fnoq5m , docid\ qym6j4mq89mr 4mfbj0v4 , docid 578k4urievqtymqay6m2q log in to the kron pam web gui navigate to administration > system config man set these required parameters sc rdp connection otp enabled=true (one time password enabled for rdp connections) sc rdp otp cache enabled=true (if the cache parameter is activated, after entering an mfa the user will not be asked for otp during the cache duration) sc rdp otp cache seconds=240 (cache time in seconds) after these settings, a user belonging to an enabled user group will be asked for a token when logging in to an rdp server