Device Group Configuration in SSO
To utilize the SSO feature effectively, the Global Username or Assigned Credential settings must be configured. When a Kron PAM user with privileged access (e.g., System Admin, SYSTEM) connects to databases, they can do so without needing the privileged user’s password.

Direct Credentials in Target Device Group Edit Screen
Always verify that the database user specified in the Direct Credential configuration has the necessary permissions for the intended operations.