Extending the timer on an active JIT account now does what you'd expect across every account source.
The expiry time actually extends.
For Active Directory and Entra ID / Microsoft 365 accounts, the countdown to automatic expiry previously carried on unchanged, so the account was disabled at its original time regardless of the extension. Extending now adds the selected period to the time remaining, and the dashboard shows the new expiry — a one-hour JIT account extended by an hour after 35 minutes will show 1 hour 25 minutes remaining.
The password no longer changes.
Extending also regenerated the password on Active Directory and Local accounts, so a technician already signed in with that credential found it no longer worked — the opposite of what extending a session is for. The existing password is now left in place across all sources.
This applies consistently to Active Directory, Local and Entra ID / Microsoft 365 sources, to both standard and burner JIT accounts, and whether you extend from the dashboard, the browser extension or the QTech mobile app. Events recorded for an extension show the correct updated expiry time.