BeyondTrust Privileged Remote Access Cloud | Insights

Learn how to create a Privileged Remote Access Cloud connector in BeyondTrust Identity Security Insights.

Prerequisites

BeyondTrust Privileged Remote Access access

  • Administrator access to the PRA /login interface.
  • You can create API accounts with the required permissions.

Identity Security Insights access

  • Administrator access to Identity Security Insights.
  • Your Insights site is provisioned and active.

Network requirements

  • The Insights IP addresses for your region are allowlisted in your PRA configuration.

Step 1: Create a Privileged Remote Access API account

  1. In your Privileged Remote Access administration dashboard, navigate to Management and click API Configuration.

  2. Under API CONFIGURATION, ensure Enable XML API is checked.

  3. Click Add beside API Accounts and configure the following:

    • Provide a human-readable name, and any descriptive comments for referencing your account.

    • Under Permissions, ensure the following options are selected:

      Permission categoryPermissions
      Command APIRead only
      Configuration APIAllow Access, Manage Vault Accounts
      Reporting APIAllow Access to Access Session Reports and Recordings, Allow Access to Syslog Reports

      Privileged Remote Access API Configuration settings
    • Under Network Restrictions, enter the following IP addresses:

      • US sites:
        • 50.16.236.14
        • 54.163.153.193
        • 54.225.135.48
      • EU sites:
        • 3.72.126.244
        • 3.78.41.126
        • 3.125.93.216
      • UK sites:
        • 18.130.205.142
        • 18.133.85.99
        • 18.135.255.23
      • CA sites:
        • 35.182.121.100
        • 3.97.211.0
        • 3.96.180.135
      • IN sites:
        • 65.2.101.179
        • 52.66.21.171
        • 3.108.43.201
      • AU sites:
        • 52.64.252.137

        • 54.252.35.200

        • 54.153.250.211

    ℹ️

    For FedRAMP connectors, refer to the IP address shown on the Create Connector page.

  4. Privileged Remote Access generates a new client ID and client secret.

    🚧

    Important

    Copy your client ID and client secret before saving your information and exiting this page.

  5. Click Save.

Final step: Create a Privileged Remote Access connector

  1. Select Pathfinder navigation menu > Connectors.
  2. Click the Total configured link.
  3. Select Create Connector > Privileged Remote Access.
Privileged Remote Access create connector settings
  1. Provide the following information to connect to PRA:
    • Name: A human-readable name for your PRA connector.
    • Subdomain: Your PRA subdomain, e.g., subdomain.beyondtrustcloud.com.
    • Client ID: Paste the Client ID provided in Step 3 of your PRA configuration above.
    • Client Secret: Paste the Client Secret provided in Step 3 of your PRA configuration above.
  2. Click Create Connector.

Navigate to the Configured Connectors panel (Pathfinder navigation menu > Connectors > Total Configured) to confirm the connector was successfully created and review any connector settings.


©2003-2026 BeyondTrust Corporation. All Rights Reserved. Other trademarks identified on this page are owned by their respective owners. BeyondTrust is not a chartered bank or trust company, or depository institution. It is not authorized to accept deposits or trust accounts and is not licensed or regulated by any state or federal banking authority.