Skip to main content
Version: Axidian Privilege 3.5

What's new

This section provides a brief description of changes and improvements in the Axidian Privilege by version.

3.5

Authentication

Sessions and components

  • Enhanced the Web Terminal component — you can now open sessions in Remote Desktop Services (RDS) mode directly from the browser. Access is granted to a remote desktop or to a published RemoteApp application.
  • Added file transfer between a resource and a user's workstation in RDP sessions opened via Web Terminal.

Policies

Interface

  • Redesigned the permission wizard—all settings are now on a single page.
  • In the All sessions section, added the ability to show and hide table columns.
  • Added automatic refresh of dashboard widgets: data is updated every 10 seconds.

Other changes

  • Added case-insensitive search when Axidian Privilege data is stored in a PostgreSQL database.
    Exception: searching events by component or initiator is case-sensitive.
  • The configuration wizard now supports installing Axidian Privilege from a backup file.

3.4

Authentication

  • Added support for the Kerberos authentication protocol for sessions opened via RDP Proxy.
  • Added support for X.509 certificate authentication.
  • Added support for authentication via the OpenID Connect protocol.
  • Improved authentication in RDP and SSH sessions: if a permission is granted for a user account and the user has authenticated in Axidian Privilege, their login and password are automatically filled in the sign-in form on the resource.
  • Added the ability to specify the login format for accounts when connecting via SSH.
  • The ConsoleApp utility now supports sign-in on behalf of a specific Axidian Privilege user, enabling individual privileges and access control differentiation.

Integrations

Other changes

  • Added clipboard support for sessions opened via Web Proxy.
  • Added a health check mechanism for Axidian Privilege servers, components, and services. Results are displayed on the dashboard in the new PAM servers widget.
  • Improved the report generation mechanism — reports on sessions, events, and permissions are now generated in the background. Generated reports can be downloaded in the Reports history section.
  • Added access server information to session and event cards.

3.3

3.2

  • Authentication by SSH keys in SSH Proxy is added.
  • Creation of internal users is added.
  • Licensing is changed. To connect to ad hoc resources and PostgreSQL Proxy, special licenses are now required. Connecting to PostgreSQL Proxy works in early access mode until December 31, 2026, after which you need to purchase licenses.
  • Automatic detection of permissions that have not been used for a long time is added. The validity period of permissions is determined in the configuration.

3.1

  • Now administrators can add tags to resources.
  • Now you can change the text of the connection reason prompt. This option is set in the session policy.
  • Session search is improved. Now it is possible to search by session termination state and reason.

3.0

2.10

  • OpenLDAP support.
  • Blocking a user.
  • Changing encryption key and/or encryption algorithm of PAM database without stopping PAM.
  • Specifying multiple RADIUS servers to authenticate PAM users.
  • Setting policy for user groups.
  • Connecting to ad hoc resources.
  • Native SIEM support via CEF and LEEF log format.
  • Maximum account password length is increased up to 4096 symbols.
  • Blocking settings for incorrect OTP input.
  • S3 storage support.
  • Enabling Restart of Proxy Service Containers.