Windows AD accounts require session recordings to be stored in an external S3 bucket. Configure this in the template before creating Windows AD accounts.
Creating an Account
1
Start adding an account
Go to Privileged Access Management → Accounts and click Add Account.
2
3
Enter connection details
4
Enter credentials
5
Save
Click Create.
Connecting
- Web Access
- CLI
Web Access provides a browser-based RDP client:
- Go to Privileged Access Management → My Access
- Find the account and click Launch
- If the account has multiple allowed hosts, select which host to connect to
- Click Connect in Browser
- A remote desktop session opens in a new tab
Allowed Hosts
Unlike single-server Windows accounts, Windows AD accounts can connect to multiple hosts. When you create the account, you define the list of allowed hosts. Users choose which host to connect to when launching a session. This is useful for domain admin accounts that need access to multiple servers — you can manage a single account with one set of credentials while controlling which servers it can access.Next Steps
Windows Accounts
Add single-server Windows accounts.
Sessions
View and manage sessions.