Release notes
What changed in each release, newest first. Step-by-step guides for every feature are in the DartRelay documentation.
Sign in with Microsoft — and never type a Windows password
DartRelay 2.1 adds Microsoft Entra ID and OpenID Connect sign-in, and Relay Pass, which logs people on to Windows with a certificate so they never type a Windows password. Hosts get finer control over what happens when one person uses several devices, and the complete online documentation arrives at dartrelay.com/docs.
Read this first if you are upgrading
- Upgrading from 1.9? Read the 2.0 notes below as well — the Directories list and the replaced host options arrive in 2.0.
- Review each host's new Sessions for the same person card. It starts on Automatic, which keeps the behaviour you have today.
- Every server in a pool must run the same version. Upgrade them together.
Signing in
- Sign in with Microsoft. Microsoft Entra ID confirms who the person is, with its own conditional access and multi-factor checks, and DartRelay signs them in as the Active Directory account they are synchronised from.
- OpenID Connect sign-in. Add a button for another identity provider; DartRelay matches the person to exactly one Active Directory account.
- Sign-in buttons per address. Each address chooses which sign-in buttons it shows, or sends people straight to one provider. It is enforced, not just hidden.
Relay Pass — no Windows password at all
A Pass-Through resource used to need the password typed at sign-in, and asked for it again when there was none — after a Microsoft or OpenID Connect sign-in, a sign-in made on a load balancer, or a launch handled by another server in a pool. Relay Pass removes that prompt. DartRelay requests a short-lived logon certificate for the person from your own Active Directory Certificate Services and presents it to the host like a smart card. Nothing is installed on the hosts or per user; a Certificate sign-in card on each host page checks and prepares the host for it.
Sessions and hosts
- Sessions for the same person. Choose per host whether a person's applications follow them to their newest device, stay live on every device, or get a separate session per device. A tab left behind says Opened on another device with Reconnect and Close.
- End disconnected sessions after a time you choose, set from the host page, and a button to sign out disconnected sessions on demand.
- Programs already running get their own tabs. Come back to a session with programs still open and each published one appears as its own tab, without being started again.
- A clear message when an application does not appear. If a session connects but the application's window never shows, a panel says so and offers Keep waiting or Close, instead of an empty tab.
Documentation
A complete online help centre is now at dartrelay.com/docs: installation, hosts and publishing, sign-in and security, branding and tenancy, licensing, pools and load balancer integration, troubleshooting, and plain-language pages you can send straight to your users.
Known issues
- Occasionally, when a second or third application joins an open session, the session stops responding and the new application shows the has not appeared panel. Close every tab for that host and open the application again to start a fresh connection.
- The three file transfer faults listed under 1.9 are still being worked on. See the known issues before relying on file transfer for important files.
Every domain you have, and a portal only your networks can see
DartRelay 2.0 signs people in from several Active Directory domains, including ones that do not trust each other, lets you limit the portal and the console to the networks you choose, and handles shared Windows logins by itself.
Read this first if you are upgrading
Three changes alter existing behaviour. Read them before you upgrade a production installation.
- Your domain moves into a Directories list. The domain the server is joined to, and any single domain you configured before, are added to Authentication → Directories automatically. The one you configured becomes the default for usernames typed without a domain. A sign-in that names a domain not on the list, enabled, is now refused without contacting any domain controller.
- Two host options are replaced by automatic behaviour. The 1.9 host checkboxes A separate Windows session for each device and Sign out of Windows when the last tab closes are gone. DartRelay now recognises a shared Windows login by itself and applies both behaviours to it.
- Every server in a pool must run the same version. As before, upgrade them together.
Several Active Directory domains
- A Directories list. A new Directories page lists every
domain DartRelay accepts, filled automatically from the server's own domain and its
trusts. Each sign-in goes to exactly one domain — chosen from
DOMAIN\name, thename@suffix, or the default — and a password is never tried against several domains in turn, so nobody is locked out in a domain they never meant to use. - Domains with no trust. People in a separate forest can sign in too: DartRelay talks to that domain's own domain controllers directly, with a service account of its own and a choice of where in the directory to look.
- A domain for each address. Under Tenancy & Branding, every address can have its own default domain and its own domain list on the sign-in page — or hide the list entirely, so one address signs in to one domain.
Security
- Network access rules. Limit the portal, the console, or both to the network addresses and ranges you list, installation-wide or for a single address. A change that would lock you out of the console is refused, and the console can always be opened from the server's own desktop.
- Blocked addresses. Turn away a scanner or a persistent bad-password source with one click from the audit log, with a note saying why.
- Keeping robots off public addresses. An address that admits visitors without a sign-in can ask them to prove they are a person first, so crawlers never become guest sessions.
Sessions and hosts
- Shared Windows logins handled automatically. When several people use one saved Windows account, each device gets its own Windows session and the session is signed out when its last tab closes, so nobody sees anyone else's work and no disconnected sessions pile up. The host is prepared for this in the background.
- Domain users can sign in to newly prepared hosts. Installing the Remote Desktop Session Host role can now add the domain's users to the host's Remote Desktop Users group, so a freshly joined host no longer refuses everyone but administrators.
- A clear refusal message. When a host refuses an account, the portal now says You are not authorized to use this application, naming it, and the log records the host's real reason.
Fixes
- Installing the Remote Desktop Session Host role works on a host in a different domain from the DartRelay server. The host's management account only needs to be a local administrator on that host, and a failure now names the account and the reason.
- After a host restarts with the role installed, its page no longer shows the install panel beneath the green confirmation.
Seats count devices, and one portal can run on several servers
The largest release since 1.0. A Relay Seat now counts a device rather than a person, several servers can serve one portal behind a load balancer, one licence can cover several installations, an address can be opened to the public without a sign-in, and people can reset their own passwords.
Read this first if you are upgrading
Four changes alter existing behaviour. None is silent, but all four are worth reading before you upgrade a production installation.
- A Relay Seat is now one device with a live session, where it used to be one person. This changes how many seats a given customer needs.
- Automatic launch rules are now chosen on the address, not scoped by typing hostnames into the rule. Every address starts with no rule chosen, including on upgrade. If an address opens an application automatically today, add that rule to the address after upgrading — and note which rules name which hostnames before you start.
- An installation with no valid licence now refuses to launch anything. Not activated, expired, deactivated — all the same answer. Earlier versions read "no seat limit" as "unlimited" and admitted everybody.
- Every server in a pool must run the same version. Upgrade them together.
Licensing and seats
Signing in to the portal costs nothing at all — the seat is taken by the first launch and returned when the last session on that device ends. A device is a browser profile on a machine, recognised by a cookie. Nothing is fingerprinted.
The consequences, stated plainly:
- Two browsers on one machine, used at the same time, are two seats. Close one and open the other and it is one seat throughout.
- A desk PC and a laptop in use at once are two seats.
- Clearing cookies does not cost a seat.
- One person moving between three machines during the day holds one seat at a time, as long as they sign out or their sessions end.
The unit changed because credentials are shareable. Five accounts used by a hundred people read as five people, and a hundred people were served for the price of five. Two people at two screens are two devices whatever account they type.
A page that shows you the evidence
System → Seats gives one row per device, with the accounts that used it, live sessions, first seen and last active, address, tenant, and — in a pool — the server it is on. It carries the highest number of devices in the last thirty days, which is the figure to hold a renewal conversation on, a CSV export, and a Release control that ends a device's sessions and returns its seat. Two flags mark a likely second browser and a device seen from several addresses at once; both are reports, and neither changes the count.
One licence across several installations
Any activated installation can share its seats with others, so sites that cannot share a database — or cannot reach the internet — still draw on one pool. The installation holding the key issues a single-use enrolment token, lasting 24 hours, and lists every installation using it with its seat usage and a Revoke control. An enrolled installation keeps working on its own if the key holder cannot be reached, up to an allowance based on what it has actually been using. Open sessions are never cut.
Grace, and a notice you cannot miss
Grace now covers expiry as well as an unreachable key holder: applications keep launching after a licence expires until grace ends, with the date shown. A licence notice appears above every console page from ten days before expiry, turning red for the last three days and while an installation is running on grace. It cannot be dismissed, and it clears the moment the licence is renewed.
Licences now also carry an Extra percentage, allowing a short burst above the licensed number rather than a refusal. Seventy seats at five per cent is seventy-three, and the console says so in those words.
Running more than one server
DartRelay now supports a pool: several servers sharing one database, behind a load balancer, on a hostname of their own. Each extra server is added during installation and needs no licence key of its own. A pool gives you capacity and maintenance headroom — you can drain one server, patch it, and put it back without a maintenance window.
System → Load balancer is a new page holding the settings once for every server: trusted proxies, forwarded-header handling, the public address used in email, sign-in by header for appliances that authenticate in front of DartRelay, and the sign-out address. A value set in a server's own configuration file still overrides the console for that server, and the page shows it as locked.
What a pool is not
It is not failover. A server failing under a live session ends that session and the person signs in again. Sessions do not move between servers, and pass-through credentials live on the server that authenticated.
Getting in
An address can admit visitors without a sign-in
Nominate one guest account for the installation, then turn it on either installation-wide or for a single address. A bound address decides this on its own, so turning the installation switch on can never open a customer's branded address. Pair it with an automatic-launch rule and a public address becomes one application and nothing else.
People can reset their own password
A Forgot your password? link on the sign-in page emails a one-time link, for portal accounts and Active Directory accounts alike. It needs two switches — one on the theme, one on the Security page — so that branding permission alone cannot open it. The page gives the same answer whatever is typed, so it cannot be used to discover which usernames exist, and the link always goes to the address already held for the account.
Sessions and hosts
- A separate Windows session for each device, as a per-host option. One person in two browsers gets two Windows sessions instead of sharing one.
- Sign out of Windows when the last tab closes, as a per-host option. Stops abandoned disconnected sessions being offered to the next arrival. Published applications only.
- Applications follow the window. Going full screen, or leaving it, now resizes the application to fit instead of leaving it at its old size.
The portal
- A single-application portal. An address can be reduced to one application with no catalogue behind it: the Home tab hidden, the application opening by itself, and a Start again panel when the person closes it.
- Automatic launch is chosen per address. Open an address under Tenancy & Branding and add rules to it in the order you want them. The rule still decides what opens and who it applies to; the address decides where.
- File transfer settings moved. One card holds the path, the account and what people may do in the drive, and any individual desktop or application can override all of it.
Known issues
Three faults in file transfer are known and being worked on. If you are piloting it:
- Downloading stops working after 128 files in one session, and a file taken from the download folder is removed from it whether or not it reached the browser — so a download that fails loses the file.
- Filenames outside the plain English alphabet do not survive.
- Only the last level of the share path is created, so if the parent folder does not exist, file transfer fails for every resource using it.
Maintenance
Fixed a permission check that was refusing the console's own keep-alive requests and filling the log with denials.
A real file browser
Upload and download became one panel behind a single button in the session toolbar.
Move up and down folders, filter, drag files in, and take several files or a whole folder out as a zip. Delete, rename and create folder arrived with it, each separately controlled by the administrator.
The Download folder that used to appear in the drive root is gone. Files
are taken out by selecting them in the browser, rather than by saving into a specially
named folder — which had the side effect of deleting anything written there.
Tenancy, and a brand for every customer
- Tenancy & Branding. An address can be bound to a tenant with its own brand, its own seat allocation, its own announcements and its own terms of use — from one installation, without a second licence.
- Seat allocation per tenant, enforced on top of the licence rather than instead of it, with the allocated-against-licensed comparison on the page.
- Announcements and agreements aimed at chosen tenants, and notices that can be placed where you want them on the page.
- Certificates that renew themselves, issued and renewed automatically.
- Restricted categories — a folder of resources and everything in it hidden from anyone not granted it.
- Idle timeout measured at the keyboard, a password age policy, and a fuller theme editor.
The foundations
DartRelay 1.0 was released on 7 September 2024. Over the releases that followed, the product grew from a way of putting a Windows application in a browser into the platform described above.
What was laid down across these releases, all of which is still here:
- Publishing applications and desktops from Windows hosts with nothing installed on them — no agent, then or now.
- The portal: a catalogue of resources, sessions as tabs, favourites, search and sort.
- Web applications alongside published ones.
- Sign-in against portal accounts, local Windows accounts and Active Directory, with two-factor authentication and a verification challenge.
- Administrator roles and permissions, and an audit log.
- Themes and a block editor that builds the sign-in and home pages piece by piece, rather than tinting a fixed design.
- Categories, automatic launch, file transfer, printing to PDF, email delivery and templates, and five shipped portal languages with the means to add more.
Step-by-step guides for every feature: dartrelay.com/docs
