Reference Guide
Multi-Factor Authentication
Using MFA for RDP Connections
to activate mfa for an rdp connection to a target device pre requisite admin and users have the qr code, installed the kron pam mobile app, scanned the qr code with the mobile app, and otp is enabled for the user group that will be using mfa for rdp connections (see sections docid 2v1tfoapuznwzujrstwyb , docid\ wy8kwwqciiu13ej1aqnop , docid\ hwpgvomlukycbbxxmaigm log in to the kron pam web gui navigate to administration > system configuration manager set these required parameters sc rdp connection otp enabled=true (one time password enabled for rdp connections) sc rdp otp cache enabled=true (if the cache parameter is activated, after entering an mfa the user will not be asked for otp during the cache duration) sc rdp otp cache seconds=240 (cache time in seconds) after these settings, a user belonging to an enabled user group will be asked for a token when logging in to an rdp server