---
title: Using SMS for MFA
slug: kronpam-reference-guide-3-5-0/using-sms-for-mfa
description: Learn how to send SMS using two methods - HTTP via SMS Proxy or SMPP via SMSC. Find out how to generate OTPs and send them via SMS with Kron PAM, without the need for the mobile app. Adjust MFA SMS settings easily by navigating to Administration > System 
docTags: 
createdAt: 2022-07-31T18:12:30.000Z
---

There are two methods to send SMS: over HTTP (via SMS Proxy), or over SMPP (via SMSC).

&#x20;Instead of using the Kron PAM mobile app, OTPs can be generated by Kron PAM and sent via SMS.

To adjust the MFA SMS Settings:

1. Navigate t&#x6F;**&#x20;Administration** > **System Configuration Manager.**
2. Enter **2fa&#x20;**&#x69;n the **Parameter Name** field and click the **Search** button.
3. Set the value of the **iga.2fa.sms.http.body**, **iga.2fa.sms.http.headers**, **iga.2fa.sms.http.secret.body**, **iga.2fa.sms.http.url**, **iga.2fa.sms.smpp.body**, **iga.2fa.sms.smpp.secret.body**, **iga.2fa.sms.http.timeout&#x20;**&#x61;nd **iga.2fa.token.timestep** parameters.

![](https://api.archbee.com/api/optimize/g9cApVza9NIhSh0pjZYtA/WRRk3PisQQyb4fFZhcFlF_image.png "SMS Settings for MFA")

Non-administrator users can use the MFA they will use when they gain access, from both SMS and Mobile Applications. In addition, SMS activations can be done by users themselves. In this way, only SMS or mobile applications can be used.

To activate SMS for users with admin rights:

1. Navigate to **Administration&#x20;**> **MFA** > **User Group Management**.
2. Activate SMS by clicking **Enable SMS** in the **Options** button of each user group.

![](https://api.archbee.com/api/optimize/g9cApVza9NIhSh0pjZYtA/eOX0vy_rCiCVvnS9n4L9E_image.png "SMS Activation by Admin Users")

To activate SMS for users with user rights:

1. Log in to the Kron PAM Web GUI.
2. Go to the **User Area** in the right corner.
3. Click on **MFA Token&#x20;**&#x61;nd select **Enable SMS**.
4. SMS Configuration pop-up opens. Selec&#x74;**&#x20;true** from th&#x65;**&#x20;Enable SMS&#x20;**&#x64;ropdown. (Th&#x65;**&#x20;Inherit from group** is inherited from the User Group property.)

![](https://api.archbee.com/api/optimize/g9cApVza9NIhSh0pjZYtA/0DCkCKhGEgQcF6VeAwb-d_image.png "SMS Activation by End Users")

**Note on MFA SMS Logic:**

The preference of each user is dominant. When **otpSmsEnabled** is updated in the **User Group Properties**, the properties of the group members are not updated.

MFA SMS sending logic is as follows:

If **otpSmsEnabled&#x20;**&#x69;s defined in the user property, its value is used (no lookup for user group properties).

If **otpSmsEnabled** is NOT defined in the user property, SMS is sent when at least one of the user's groups has the **otpSmsEnabled** property as **true**.

The combo box values are a) Inherited from the group, b) false, and c) true. If no otpSmsEnabled property exists in the user properties, the Inherit from group appears selected when the SMS Configuration popup opens.


