Pathfinder 26.09
🆕 New features
IP allowlisting for platform access
Your organization can now define the trusted IP addresses and ranges that are allowed to reach BeyondTrust resources, such as those used by your corporate offices or VPN. Access is granted only from the addresses you approve, adding a layer of protection on top of credentials and MFA and reducing exposure to sign-in attempts from outside your designated locations.

For more information, see IP allowlist.
Active Directory and LDAP authentication with Password Safe
Pathfinder can now authenticate users managed in your on-premises Active Directory or LDAP directory through a Password Safe proxy, extending support that already covered Remote Support and Privileged Remote Access. Your directory stays the source of truth, so you can bring those users onto the platform without recreating their accounts or managing a second set of passwords.

For more information, see Directory authentication.
Language selection in Pathfinder
Pathfinder now displays in the language set in your browser, and you can override that choice at any time with the in-app language selector. The first release supports English, French, Canadian French, German, and Spanish, so teams outside English-speaking regions can work in their own language.

For more information, see Select your language.
Cross-region failover for platform authentication
Pathfinder authentication now runs with a warm standby in a second AWS region. If the primary region becomes unavailable, you can still sign in and reach your product tenants instead of losing access for the length of the outage.