For audit reasons, it is required that Privileged Access Manager's (PAM's) session recordings created by PAM be viewable (played back) at a later time. Can all PAM appliances within a PAM cluster view the session recordings created by other PAM appliances that are member of the cluster?
PAM uses a unique key to encrypt all session recordings for security and confidentiality purposes, the encrypted session recordings cannot be viewable (played back) outside of PAM.
As of PAM versions 3.3.3, the encryption key is shared by all PAM appliances within a PAM cluster. Session recordings for these versions can be viewed by any PAM appliance within the same cluster which created them. This can include a standalone PAM appliance that was ejected from the same cluster where these sessions were originally recorded on.
View Session Recordings Documentation: View Session Recordings