---
title: Using MFA for RDP Connections
slug: kronpam-reference-guide-3-5-0/using-mfa-for-rdp-connections
description: Learn how to set up Multi-Factor Authentication (MFA) for an RDP connection using the Kron PAM mobile app. This step-by-step document covers prerequisites, logging in to the Kron PAM Web GUI, and configuring MFA parameters. Enhance your RDP server's secur
docTags: 
createdAt: 2022-07-31T17:28:00.000Z
---

To activate MFA for an RDP connection to a target device:

1. Pre-requisite: Admin and users have the QR code, installed the Kron PAM mobile app, scanned the QR code with the mobile app, and OTP is enabled for the user group that will be using MFA for RDP connections (See sections [Sending the MFA QR Code to Users](docId:2v1tFoapuzNwZujrstWYb), [Creating a Connection Between Kron PAM and the Kron PAM Mobile Application](docId\:wY8kwWqCiiU13Ej1aqNOp), [Enabling Multi-Factor Authentication (MFA)](docId\:HwPgvOmLUkYcBBXxmaigm)&#x20;
2. Log in to the **Kron PAM Web GUI**.
3. Navigate to **Administration&#x20;**> **System Configuration Manager**.
4. Set these required parameters:
   **sc.rdp.connection.otp.enabled=true** (one-time-password enabled for RDP connections)
   **sc.rdp.otp.cache.enabled=true** (If the cache parameter is activated, after entering an MFA the user will not be asked for OTP during the cache duration)
   **sc.rdp.otp.cache.seconds=240&#x20;**(cache time in seconds)
5. After these settings, a user belonging to an enabled user group will be asked for a token when logging in to an RDP server.

![](https://api.archbee.com/api/optimize/g9cApVza9NIhSh0pjZYtA/BrhpGUEcYPAFR3_yk98Kh_image.png "Using MFA to Establish an RDP Connection")

