---
title: Managerial Approval for Connections 
slug: kronpam-reference-guide-3-5-0/managerial-approval-for-connections
description: Learn how to use the Connection Approval feature to manage user authentications for device connections. Set up an approval process for users to require managerial approval before connecting devices. Configure approval settings for user groups and device g
docTags: 
createdAt: 2022-07-27T11:12:29.000Z
---

The Connection Approval feature is used for setting up and managing user authentications in device connections (in RDP Proxy, SSH Proxy, SFTP Proxy, and HTTP Proxy). Admins can configure an approval process so that users will require managerial approval to connect devices. Connection approvals may be given by managers or members of user groups.

To disable instant approval connections and use only connection reservation, the following parameters are set to true. Their default value is false.

disable.instant.approval.for.ssh
disable.instant.approval.for.rdp
disable.instant.approval.for.sftp
disable.instant.approval.for.http

Refer to the [APPENDIX 1: System Config Manager Parameters](docId\:YHRM9lMFKmz4li2VqoOer)



:::hint{type="info"}
If you want to set up an approval process to manage connections of a specific group to a specific device group, you should configure an **Approval Workflow.&#x20;**&#x52;efer to [Approval Workflow](docId\:POoozQCHHdn2UPmYvj81c) the chapter for details.
:::

:::hint{type="info"}
If the requester is also the manager of the group and&#x20;
**auto.approve.when.requester.is.approver** is set a&#x73;**&#x20;true**, approval will be given automatically&#x20;&#x20;and the connection will be established. Thus, the manager does not need to actively approve.
:::

:::hint{type="info"}
When you want to approve or reject connections via email, the manager receives an email&#x20;including the header as this: \<instanceName> - Connection Approval Notification -
\#\<approvalID>
:::

![](https://api.archbee.com/api/optimize/g9cApVza9NIhSh0pjZYtA/_l3PgPCx7knYC86lQlIq4_image.png "My Approvals Screen")

:::hint{type="info"}
My approvals page shows request details and the Approver Manager, which helps me know who will be approving the request.
:::

:::hint{type="info"}
If the manager does not approve or reject connection requests and approval.status.change.to.expire is defined as min, the request status changes from **Waiting&#x20;**&#x74;o **Expired&#x20;**&#x6F;n my Approvals Page.
:::

