Skip to main content
Question

Accessing Network Shares via Jump Client with Active Directory Account in BeyondTrust PRA

  • February 1, 2026
  • 1 reply
  • 40 views

I am encountering a limitation when using BeyondTrust Privileged Remote Access (PRA) for remote access to network shares.

I tested an alternative using:

  • Jump Client

  • Session Policies → File Transfer tab

➡️ File transfer works correctly from the remote machine.
❌ However, the main issue is that:

  • The session runs under a local administrator account

  • The user accessing the session does have access to the shared folders, but not when using their Active Directory account

Requirement / Question

I would like to know if there is a way:

  • To access the remote machine via Jump Client (File Transfer tab) using the user’s Active Directory account during the session

Specifically through:

  • A network tunnel

  • Running the session in the Active Directory user context

  • Active Directory credential injection

  • Or any other native BeyondTrust PRA functionality

Objective

Allow the remote user to access shared folders and files using their Active Directory account, without using a local administrator account on the remote machine.

1 reply

  • BeyondTrust Employee
  • March 10, 2026

Hello ​@BouaichiB 

When using the Access Tabs, Shell, File Transfer, Registry Access those tabs should be running under system. For the File Transfer tab you can use that to transfer files between your system and the target jump client. 

If you want to transfer a file from a share to the jump client you can inject your AD credentials and login to screensharing. 

Have a look at our credential injection doc.

https://docs.beyondtrust.com/pra/docs/desktop-credential-injection

If your AD credentials are available through the Vault or the ECM you should be able to use those for injection. 

 

If you have any questions please let me know.

 

Regards,

John