Privileged Remote Access 23.2 Available Features

For more information on platform support, please see the Features Compatibility guide.

Features for Access Console Users

Platform Endpoint Access Console
Windows Windows 7 SP1
Windows 10
Windows 11
Windows Server 2016-2022 Windows 10
Windows 11
macOS macOS 10.14-10.15
macOS 11(Big Sur)x86 and xApple
macOS 12(Monterey)
macOS 13(Ventura) macOS 10.14-10.15
macOS 11(Big Sur)x86 and xApple
macOS 12(Monterey)
macOS 13(Ventura)
Linux Fedora 35-36
RedHat Enterprise 8.5,8.6,9.0
Ubuntu 20.04 LTS,22.04 LTS RedHat Enterprise 8.5,8.6,9.0
Ubuntu 20.04 LTS,22.04 LTS
Mobile Devices N/A Apple iOS 12.0+
N/A Android 8.0+
Virtual Machines N/A Citrix XenDesktop 7
VMWare Horizon 8
Citrix XenApp 6.5
PRA Virtual Appliance vSphere 6.7-7.0
Azure
AWS-AMI Sharing
Hyper-V
Nutanix
Unattended Systems Laptops, Desktops, Servers, ATMs, Kiosks, POS Systems, Raspberry Pi, etc.
Cloud Access Controls Securely connect to and manage your cloud infrastructure, including Windows, Red Hat, CentOS,and Ubuntu Linux VMs powered by AWS, Azure, VMware, and other IaaS providers. Headless Linux configurations are also supported.

BeyondTrust

Platform Endpoint Access Console
Cloud Access AWS KMS Support AWS Key Management Service (KMS) makes it easy to create and manage cryptographic keys and control their use in AWS services and applications. AWS KMS is a secure and resilient service that uses hardware security modules.
Network Devices Routers, Switches and Devices via SSH/Telnet
Multi-Language Support View BeyondTrust applications and interfaces in English, Dutch, French, German, Italian, Japanese, Russian, Simplified Chinese, Polish, and Traditional Chinese. BeyondTrust supports international character sets.

Access Console Toolset

Use advanced access tools to interact with remote systems.

Feature Name Description
3D Touch Support for iOS The BeyondTrust mobile access console uses iOS 3D Touch Support capabilities offered by the iPhone 6S and 6S Plus devices to start sessions faster and more efficiently. By tapping and holding the BeyondTrust Access Console icon on your iOS device, you can quickly access the three most viewed Jump Items, and you can seamlessly transition between active sessions.
Access Console Access remote endpoints by connecting to them through the B Series Appliance.
Advanced Web Access Advanced Web Access enables administrators to appropriately manage privileged access controls over assets that utilize modern web technology in a secure, scalable, and controlled manner. The auditing capability gives your organization the visibility it needs to adhere to both internal security policies and any applicable industry compliance requirements.
Annotations While screen sharing, use annotation tools to draw on the remote screen. Drawing tools, including a free-form pen and scalable shapes, can aid in collaborating with other users.
BeyondTrust Access Extender BeyondTrust Protocol Tunneling extends the remote connectivity and auditing capabilities of proprietary and/or 3rd party applications, such as integration control systems or custom database tools. BeyondTrust simplifies this complex task into a consumable process that removes the need for an intricate VPN solution.
BeyondTrust SUDO Manager Shell Jump credential injection can be used in conjunction with SUDO.
Vault BeyondTrust Vault is an on-appliance credential store that enables your users to access privileged credentials and inject them directly into an endpoint. Eliminate the need for users to memorize or manually track passwords, increasing productivity and security. Add privileged credentials to Vault manually, or try the built-in Discovery tool to automatically find and protect AD and local credentials.
Cancel Access Request Users can cancel pending Jump Access authorization requests from the Web Console, providing more flexibility and control over the authorization process, extending the existing functionality of the desktop Access Console.
Canned Scripts Use pre-written scripts from either the Command Shell interface or the Screen Sharing interface, increasing session efficiency by automating common processes.

Features for Managers

Feature Name Description
Access Console Device Verification Enforce the networks on which your access consoles may be used, or require two-factor authentication to log into the access console.
Access Invite Create profiles so that users can invite anyone – internal or external – into a shared session with one-time, limited access.
Administrative Dashboard Oversee team activity, monitor users' access consoles, and join or take over sessions owned by someone else.
Amazon Web Services (AWS) Deployment Option Matching customers' needs with different deployment options, the B Series Appliance is now available in Amazon Web Services. Whether you are a new Privileged Remote Access customer or an existing customer that has an initiative to move your on-premises B Series Appliance to AWS, AWS deployment provides more options for your preferred deployment.
Application Sharing Restrictions Limit access to specified applications on the remote Windows or Linux system by either allowing or denying a list of executables. You may also choose to allow or deny desktop access.
NEW BYOT Database Proxy Privileged Remote Access can now proxy the Microsoft SQL Server protocol, enabling credential injection and improved auditing capabilities for Privileged Remote Access customers. There is a new setting under Protocol Tunnel Jump items for Database Tunneling.
NEW CLI Tool for APIs Privileged Remote Access customers now have a simpler method to leverage and interact with the Configuration APIs using a new CLI tool provided by BeyondTrust. When bundled with our expanded documentation, this new tool makes it easier to integrate your Privileged Remote Access instance with cloud environments or other infrastructures.
ENHANCED Configuration APIs This set of APIs enables Privileged Remote Access administrators to automate and orchestrate administrative tasks within /login and the Access Console.

Updates

Feature Name Description
ENHANCED Auto-Update Process for Hardened Linux During the update process, clients now download the update to their own install location and begin the update from there.