---
title: Generate SSH Key with SSH-Keygen Tool
slug: kronpam-reference-guide-3-5-0/generate-ssh-key-with-ssh-keygen-tool
docTags: 
createdAt: 2023-12-15T11:36:29.506Z
---

The private key can be encrypted with a passphrase or left blank if asked. In case the private key is encrypted, it must be defined under the Device Group level by the **Direct Credential Private Key.**

::Image[]{src="https://api.archbee.com/api/optimize/g9cApVza9NIhSh0pjZYtA/rNUhja6tye-DwUaEzfXlO_image.png" size="72" width="720" height="292" position="center" caption="PEM encoded format." showCaption="true"}

The private key needs to be PEM encoded format.

::Image[]{src="https://api.archbee.com/api/optimize/g9cApVza9NIhSh0pjZYtA/WO7tzqdYVoLnxJf3zMDPC_image.png" size="54" width="682" height="720" position="center" caption=" Output of Private Key without Passphrase Usage  " showCaption="true"}

The private key can be encrypted with a passphrase or left blank if asked. In case the private key is encrypted, it must be defined under the Device Group level by the Direct Credential Private Key.

&#x20;
