Teleport Connect

Gravitational, Inc.·Gravitational.TeleportConnect

Teleport Connect provides easy and secure access to SSH servers, databases, applications, Windows desktops, and Kubernetes clusters.

winget install --id Gravitational.TeleportConnect --exact --source winget

Latest 18.11.1·September 16, 2026

Release Notes
  • Added support for LSA protection, the Teleport Windows authentication package can now be used on hosts with LSA protection (RunAsPPL) enabled.
  • Fixed an issue where Windows authentication would fail with Teleport-managed non-AD users.
  • Fixed an issue causing the bot web UI page to crash when the cluster has 1000 bots with many traits. Performance of the page will be improved in a later release.
  • Added a new command, tsh mcp login, to provide OAuth authentication support for MCP servers in tsh.
  • Fixed an issue that caused Teleport Connect to leak connections to the local SSH agent.
  • Updated Go to 1.26.8.
  • Running tsh proxy kube with per-session MFA now performs a single MFA ceremony covering all requested Kubernetes clusters instead of one per cluster, and issues per-cluster certificates concurrently.
  • The tsh proxy kube command now issues a single shared certificate for Kubernetes clusters that do not require per-session MFA, reducing certificate issuances across large fan-outs.
  • Improved OpenTelemetry tracing configuration mechanism in tbot.
  • Fixed Bot kind not being reported accurately in heartbeats.
  • Improved SCIM group member addition performance.
  • Fixed tsh kubectl exec masking exit codes.
  • Fixed an issue in tbot's workload-identity-api service where slow connections to the Teleport Proxy could result in timeouts.
  • Added ldap_host and ldap_tls_server_name options to the database service's AD config, letting the LDAP endpoint and its TLS server name be configured separately from kdc_host_name.
  • Added a pki_domain option to the database service's AD config, letting the CRL-publishing domain be configured separately from domain.
  • Added tctl plugin support for Github and SCIM plugins.
  • Fixed loss of Bound Keypair token status on update by always preserving the existing token's status, ensuring bots and agents can not have their credentials deleted accidentally.
  • Added support for RDS Proxy discovery configuration in teleport/discovery/aws Terraform module.
  • Added CA override support to SQL Server PKINIT databases. The complete trust chain must be present in the CA override definition, otherwise kinit won't be able to validate its own certificate.
  • Added support for ambient credentials in teleport/discovery/aws Terraform module.
  • Fixed Error parsing application context error when trying to use bash auto completes generated by tbot or teleport-update.
  • Support --iac=terraform for tctl acl create and tctl acl update commands that print the Terraform config for the resulting resources instead of applying the change (dry-run).
  • Improved search in the user pickers to match username only.
  • Fixed tsh scp failing to spawn a SFTP server if the user home directory was not found. Non-existent files will still fail but absolute paths will be handled gracefully.
  • Fixed regression where joining when the token name contains : followed by base64 would result in a not found error.
  • Fixed access request reason requirement (request.reason.mode: required) being ignored when requestable roles were specified with a wildcard, regexp, or claims_to_roles instead of literal role names.
  • Improved output of tctl plugins command.
  • Changed tctl auth crl to export CA override CRLs, in addition to the self-signed CA CRLs.
  • Fixed an issue that prevented the correct version from being displayed for tctl builds on macOS.
  • Added draft, enforce, and 30-minute test run controls to the IP Allowlist panel for Teleport Cloud, backed by new mode and expires fields on the client_ip_restriction resource.
  • Reduced memory allocations on the VNet network stack data path.
  • Improved VNet throughput by increasing the TUN MTU to 16 KiB.
  • Added teleport reconfigure to generate a new agent configuration file from an existing one.
  • Added support for using the tpm join method with scoped tokens.
  • Added scope namespacing to ssh servers.
  • Scoped bots can now issue application-routed certificates through tbot's.
  • Added support for the GitLab CI join method with scoped join tokens, including scoped Bot.
  • Updated Entra ID edit plugin UI to support sync interval configuration.
  • VNet no longer rewrites /etc/resolver files on macOS when the DNS configuration is unchanged.
  • Reduced VNet memory allocations when handling DNS queries.
  • Fixed Redshift automatic user cleanup after a PostgreSQL client disconnects during connection setup.
  • EC2 auto-discovery now fetches instances across AWS accounts and regions concurrently with bounded concurrency.
  • Fixed potential deadlock/segfault when using libnss-extrausers on Linux agents with user creation enabled.

Installer type: nullsoft

x64—42C5520A162059EA1F1F22329508D5CF104DB5A91E451E31096CF3F4E71525A5

Details

License
Proprietary
Copyright
© 2026 Gravitational Inc.; all rights reserved.

Older versions (61)

18.11.0
x64—1098B9944114326DD11D146B67032F4F8C5AA500E5771B2C38D887E7202A165C
18.10.7
x64—C17D6E2B0AB6D1386DFF7FB3C62D1ACF7E57B873361C5BEB3CBA21E7B034DF11
18.10.6
x64—CB9EF4005F9A9ED4157A5580F0C6EA6E63DB24C5EC547DC74CF093B0490D4AB0
18.10.4
x64—FA4F9E267E27A893D72C0F1CE4C7F39EE4578CA98DFDACF2383C0C9966D9A62F
18.10.3
x64—1CEEDC11200B90BE6428E51939E0FE82C57BA74F65A2D50200F7AAC76AE203AC
18.10.1
x64—1F448ED6823944BA276BDFA50EFD75AF9D8165EFC62B19BBD65E285C8C63015C
18.10.0
x64—3AACAA6FDBA9AECB6A5BE0E7E9CA8EFB8CAA9BEBD9EB90A0F9683AC2D58AEEFB
18.9.2
x64—6DC56C825F2346956F8E79D21C6CFBDCE61F07B9EAB7D8C4F0D3F649512057CE
18.9.1
x64—F8EC957BF9F1D0673D6EAE3806F7D7246C58175D12A66565A81FBBFEA121F49A
18.9.0
x64—6C5ABB734804B6AE0A3AB4BBC6E533C447F2DA2F79DD8ECC1473F751BE977DA1
18.8.3
x64—03909FEC34C320E69B09B5C19ACAA87778749AEF5B904B837628AA514185D6D3
18.8.2
x64—45504165636582024467C1651E21CD9DD2849157E375BE60A15C43E1DCCC3601
18.8.1
x64—1551D0E9A4DB4F48BFAFC7B02E77EDD45D909DF41929C2BC131F5012475F45A5
18.8.0
x64—2076D37F0EE3B973CC65647AE36862A65CAE89B18F4976038872B0B105A8882D
18.7.6
x64—2C998ABD7D1E496360084AFDF5B672360A49BA6BE1EEE1AC92FB2E9C7E944AEA
18.7.5
x64—01BF6DDAB006E5AE80170ACDD9DA2DA871A10C2A7CD744CEA6616D018A3BA76D
18.7.4
x64—E2184FB3D75DBAC2ABF93BAA16F33D8B86936EA3E3581B5671A335D9CD42ED5E
18.7.3
x64—AD01B29057121C4002636D9DF272192D5AEA1BE9CF9D9EC4B570B3642A9CD606
18.7.2
x64—A06D2FBEB9254E09C21096CC4500D3C0A51C244BB87B470C78127EA02F3F7D55
18.7.1
x64—A95E7FC3D8B74B58478653B9D88DFEB1B2C10B19D6917CD7A0F4CD6D2C5782C8
18.7.0
x64—94EDB09048AB38FCA960FD8EB3385F244485E6FD1B102A9EA4D21A2ECC66E7E4
18.6.8
x64—797C7ED8EF3E7ECDF72F2EEDF00C2C97B7D886198C19B7D1CAB27C07A551C2DA
18.6.7
x64—E081523CC4B13966D4C0E7558FF3300A1EE69C770A6F5036D30648A6A0EF8007
18.6.6
x64—56F6613A44B8C3A5AF3C2A0D8A9E71A33BBC3A0602B7E3431CB54A8D30C12828
18.6.5
x64—4F6E8688E022FC75500DDA8F2BF5725725F73D075B2A25FCD1441B75E4435B84
18.6.4
x64—B23D064E71FB2FD3E4B462A611CDBE4819D81758108058937D825DF7AB8B7228
18.6.3
x64—B37BF3C8094A11869501930EBD83A47F2F69DC057219851497A461C2F55E5B8D
18.6.2
x64—8D4DC2F821BEE29D63B50C06CCDC3243FDF12618AD1AEA626A8EF48CA4CD2DC8
18.6.1
x64—F5A8A9F929C0524CB0EF016686D3B35EED79BB7EE73C4C9E8A54FF37FB539F14
18.6.0
x64—75AF99202FB726345F46A7D7A7EC5FF5D8C2C70DB2A1FE6DCF5AB04E10517B85
18.5.1
x64—EE4BC83C95CA0C4CF5876269E128843658CF3CA3A0FED062C7A7E364F26FCA7F
18.5.0
x64—5AFD0D4084646A6C7C18DED8B74928226111549B33D37C729D8417924B2D3435
18.4.2
x64—780F15866CF70B61081CEAD90F109408A5D050E1EAAC9970558A1848A870EAF4
18.4.1
x64—E3D869201571184FF2C28A9D85E53B159368B23FD493A77939E4FB13AFD0591F
18.4.0
x64—420FF0C1C20C76492669DF1E3FB036F34422587EC4D7C6AFE661EB3EE3DC94E2
18.3.2
x64—4559C3686BE038E3BFE07948A3456F5C625A98484C81E5E9D486DCEED5FD4191
18.3.1
x64—534C2ECD9D99C5AA032573C9DCA3F67A8EFAE4F390F496A81901FF319CDB3EA2
18.3.0
x64—C8D4533F8058A50EA5C827418DABF53460704F83530697605F9F06AEE7FB253A
18.2.10
x64—B437C9BA02EED6A4632040DE5892D307B93197EE916C434BBE604D4FB4F1E293
18.2.9
x64—DEF0D9BDF021FF682EF91ED7E8845FD7B73BA2B8D13BD070647250FFF82F617B
18.2.8
x64—DFC0753AD70DE3916CBFF8DA7C53C5E8EC9F933BC9E59996DAE045345019A852
18.2.7
x64—92A2832E3066465AFB9E6FFB7E2660D5526E8C27B39A02117C081F848E0A005D
18.2.6
x64—B469085437F8F076E31A0EA9DE2197CA7BEB087E10756D6E773D8E15AEE6F24F
18.2.5
x64—066BB097C7A3D3D86A17E58E0B744FB1E7FF4216C957775E588A7C795D90E0D6
18.2.4
x64—DE9EABF488F6D0B95B4DA866E6A783E9467F1EC5354D9D72566C2A0B4C00786A
18.2.3
x64—70F7C79160022FA62A04DFF9B9930675B6862B3328CCD1690A64662A687264DC
18.2.2
x64—0C9242FDD38CBC172A1C2A907E38D3307AB48FB7ACC7DD4C8809A8E9EEF55066
18.2.1
x64—B0A9595D60AEA91CAD01E0BC318A01828F0B6743CB029398A712C85D08C1A344
18.2.0
x64—FC510A516C3699228FA6A0554132515DB6F7443D8C4BFE005E15299B7922D08B
18.1.8
x64—AF8223228AA622EB111338AC8F5F64DCFB88C07260BF15F5284EC6D7FCAFE245
18.1.7
x64—BC073DA751F9C1744D026DB7BF59CE23CE1075C7DADA356B124422634A888013
18.1.6
x64—20E5903F622F54FA0FCCEDFD86F014A7BB2F7BBD3F0A1FEDBEBE673CE55C53B5
18.1.5
x64—F983CEB6E266E45743F8E2267741DCFB07225918A86BC5F73833910A70F268D3
18.1.4
x64—A2C00D6E276BAC740E98129209CE10748EAE0CE3E8E555BE1BDD68B4EF1D587A
18.1.3
x64—1EB75F77CD9208C6970BDC0B432AAD8E7B1925609BD87CFC589E1465E94853E6
18.1.2
x64—9A29B50675BDA0EC08D2D57D214255431032D1CA937BA8887C22DC6D4AE78307
18.1.1
x64—570541912373E91552BD5B0971E2F082EEB7B4B4E22C8C2DC854100996C9FB93
18.1.0
x64—38CBDF45E3B8DBFF88AE319E3BC31047F34EDCD50EB8AC81227E9C3BC1F5419C
18.0.2
x64—AE4EA44BB3B4732789D3450E538CA57DC377979355485E14559B9282A279D753
18.0.1
x64—5C0D13ADB9E84F6DD657B659643DC8AD460B5946F48ECECAC0D75CF3D0058FB9
18.0.0
x64—9324863BC886C90802C26BFA30BFCD9F300809A731F7ADD4CFD77160ADE4F661