Development previewFeatures and availability may change while we test.

ARIVARAN REACH

Reach your laptop from any browser.

When a direct path is available, Arivaran Reach connects a supported browser directly to an enrolled laptop without putting a remote-desktop relay in the session data path. The control plane still performs discovery, authorization, policy, and connection setup; protocol support and endpoint prerequisites remain explicit.

Your laptop. Any supported browser. No session-data relay—when direct.

Setup neededManaged remote access

Reach Managed

Setup needed

The diagram shows the mechanism, its current result, and the limit that remains in force.

  1. Step 1 of 3Policy before connection

    Identity and device scope are evaluated before the selected protocol is carried over the outbound-only transport path.

  2. Step 2 of 3Browser-tab managed access

    The tested path gives controlled access to enrolled endpoints without opening an inbound port on the endpoint.

  3. Step 3 of 3Limits

    Outbound transport is a Beam capability. This does not mean every protocol, platform, or powered-off state is supported yet.

Mechanism

Identity and device scope are evaluated before the selected protocol is carried over the outbound-only transport path.

Platform state

Protocol and endpoint-state coverage vary by operating system and deployment; pre-OS and out-of-band paths remain separate.

Limits

Outbound transport is a Beam capability. This does not mean every protocol, platform, or powered-off state is supported yet.

Before you start

Enrollment, tenant policy, authorized identity, endpoint reachability for the selected state, and configured Beam transport.

Evidence reviewed 2026-08-26

Release-ready. Saved on this browser.