---
title: SSH Key Configuration for AWS Devices
slug: kronpam-reference-guide-3-5-0/ssh-key-configuration-for-aws-devices
description: Learn how to effectively use SSH keys for AWS instances in Kron PAM with this comprehensive guide. Follow the step-by-step process that includes obtaining the SSH key name for each AWS device, enabling SSH key connection for device groups, and uploading t
docTags: 
createdAt: 2022-08-01T19:14:10.000Z
---

By default, AWS instances are created with an SSH key in the AWS Console Management screen. If devices imported from AWS are configured to log in with an SSH key, Kron PAM can provide a seamless connection to those devices, otherwise, the global username and password need to be defined for each device group.

To use an SSH key for AWS devices:

1. Get the SSH key name stored in the device properties of each device:
2. Navigate to **Devices > Inventory.**
3. Select the **AWS Device** and click th&#x65;**&#x20;Options** button. (The SSH Key name of the device is stored in the **sshKeyName** property)
4. Write down the value of this property to be used for the **Secrets** module.

![](https://api.archbee.com/api/optimize/g9cApVza9NIhSh0pjZYtA/3Nbw9wJojzJudaZNeRlXj_image.png "SSH Key Name")

Enable SSH Key Connection to Device Groups:

1. Navigate to **Devices > Inventory.**
2. Select the **Device Group** the AWS devices are imported to and click the **Options** button.
3. Add the **addDeviceSshKeyToUserSelection** property and set the value as **true**.

Uploading an SSH key to Kron PAM will enable connections to the device:

1. Navigate to **Secrets** > **Vault.**
2. Fill in the required fields.
3. The **Account Name** field must be exactly equal to the value of the Device Property **sshKeyName**.
4. Select **Static SSH Key** in the Configuration field.
5. Copy the contents of your SSH key into the **SSH Key** field.

::Image[]{src="https://api.archbee.com/api/optimize/g9cApVza9NIhSh0pjZYtA/ziFkksHp6v-kAN_aQ646u_image.png" size="48" width="320" height="487" position="center" caption="SSH Key in the SAPM" showCaption="true"}

::Image[]{src="https://api.archbee.com/api/optimize/g9cApVza9NIhSh0pjZYtA/g4W29cYprjUNV7WKnci2M_image.png" size="50" width="504" height="488" position="center" showCaption="false"}

:::hint{type="info"}
SSH keys must be in an OpenSSH key format. This means that the value put into the Secret Data field should:
start with the “---- BEGIN SSH2 PUBLIC KEY ----” and
end with the “---- END SSH2 PUBLIC KEY ----” indicators.
:::

