Reference Guide
Multi-Factor Authentication
Using MFA for RDP Connections
to activate mfa for an rdp connection to a target device admin and users have the qr code, installed the kron pam mobile client , scanned the qr code with the mobile client , and otp is enabled for the user group that will be using mfa for rdp connections (see sections docid 0au1bmrs8rwzogz5kogy4 , docid\ ppbcxkfudfccrxtkbs1jd , docid\ fgqar5tv6lsoe8zgmbtfn ) log in to the kron pam web gui navigate to administration > system configuration manager set these required parameters sc rdp connection otp enabled=true (one time password enabled for rdp connections) sc rdp otp cache enabled=true (if the cache parameter is activated, after entering an mfa the user will not be asked for otp during the cache duration) sc rdp otp cache seconds=240 (cache time in seconds) after these settings, a user belonging to an enabled user group will be asked for a token when logging in to an rdp server