---
title: Policy Management
slug: kronpam-reference-guide-3-5-0/gSjy-policy-management
description: Learn about Kron PAM's innovative role-based management concept built on realms, facilitating effective administration of users, devices, and policies. Discover how policies apply to SSH/Telnet, SQL, and HTTP connections while having the advantage of not 
docTags: 
createdAt: 2022-07-26T15:24:00.000Z
---

Kron PAM’s role-based management (user/device/policy) concept is based on realms. In essence, individual creations are collected under a group, and groups are connected under a realm definition. Realms connect the groups, and by doing so, the users can connect to devices by using policies. The diagram below illustrates Kron PAM's realm structure, which allows admins to manage specific users to authenticate on specific devices and authorize specific policies.

![](https://api.archbee.com/api/optimize/g9cApVza9NIhSh0pjZYtA/-nGYHTuve1C9wBy1wM_10_image.png "Role-Based Management Concept")

Policies are applied to SSH/Telnet, SQL, and HTTP connections. RDP and SFTP connections do not need policies.
