---
title: Enabling Multi-Factor Authentication (MFA)
slug: kronpam-reference-guide-3-5-0/enabling-multi-factor-authentication-mfa
description: Learn how to enhance security in the Kron PAM system with Multi-Factor Authentication (MFA) through this document. Discover the various use cases for MFA, such as logging into different platforms like web GUI, desktop client, SSH/RDP connections, proxies,
docTags: 
createdAt: 2022-07-31T17:28:04.000Z
---

There are different MFA use cases:

1. Using MFA to log in to the Kron PAM Web GUI
2. Using MFA to log in to the Kron PAM Desktop Client
3. Using MFA for SSH/RDP Connections
4. Using MFA for SSH Proxy
5. Using MFA for HTTP/HTTPS Proxy
6. Using MFA for SFTP Proxy
7. Using MFA for TACACS+ and Radius
8. Using MFA for Mobile Application

For every use case, MFA needs to be enabled at a user group level. To use MFA with the Kron PAM Web GUI, at least one of the user groups needs to be enabled.

The second application of MFA is to the activate MFA feature on a user group, to establish SSH or RDP connections to a device by using the MFA feature.
To enable MFA for a user group:

1. Navigate to **Administration&#x20;**> **MFA.**
2. Open the **User Group Management** tab.
3. Click th&#x65;**&#x20;Options&#x20;**&#x62;utton and select the **Enable OTP** button for the desired user group (the whole row will turn green when MFA is enabled)

![](https://api.archbee.com/api/optimize/g9cApVza9NIhSh0pjZYtA/RipcReiqb34ga6ke8PUfT_image.png "Enabling MFA for a User Group")

![](https://api.archbee.com/api/optimize/g9cApVza9NIhSh0pjZYtA/DKJuJo5jKy1HW8urzyvkO_image.png "Enabling MFA for a User Group")

