---
title: User Group Key Management
slug: kronpam-reference-guide-3-5-0/user-group-key-management
description: Learn how to manage SSH Key and SSH Password authorizations within user groups. Enable or disable SSH Key Authentication and Password Authentication, force the use of both simultaneously, and set a maximum SSH Key usage time. Get detailed information on a
docTags: 
createdAt: 2022-08-03T10:28:24.000Z
---

In this tab, users can manage SSH Key and SSH Password authorizations based on user groups. Users can disable/enable **SSH Key Authentication**, **and SSH Password Authentication**, force **SSH Key +Password Auth** to be used together, and set **SSH Key TTL**.&#x20;

**SSH Key Time-to-live (TTL) Day**: Defines the maximum time allowed to use the SSH key. If this value is set to "**-1**" and “**0**”, the SSH Key will never expire. TTL value can be set between -1 and 10000.

::Image[]{src="https://api.archbee.com/api/optimize/g9cApVza9NIhSh0pjZYtA/9_7V0K0HLlZogXU0kGC8V_image.png" size="66" width="944" height="598" position="center" caption="User Group Key Management" showCaption="true"}

:::hint{type="info"}
If the **SSH Key + Pass Auth**. method is set as **Force**, users can only connect to the SSH proxy using both SSH key and Password. If the method is set as the default value **Don’t Force**, users can connect to the SSH Proxy according to the value of the  **SSH Key Auth**.  and **Password Auth**. options. If any of these two methods is set as **enabled**, users can connect to the SSH proxy with whichever method is enabled. If both of these methods are set as **enabled**, users can connect to the SSH proxy with the enabled method of their choice.
:::

