JD Strong
JD Strong
Fleet 4.45.0 is live. Check out the full changelog or continue reading to get the highlights. For upgrade instructions, see our upgrade guide in the Fleet docs.
Fleet expands its device management capabilities with remote lock functionalities for macOS, Windows, and Linux systems. This development allows administrators to enhance security protocols and respond swiftly to potential security breaches by either locking a device remotely. This feature is particularly crucial in scenarios involving lost or stolen devices or when a device is suspected to be compromised. By integrating these remote actions, Fleet empowers IT and security teams with robust tools to protect organizational data and maintain device security. This update aligns with Fleet's values of ownership and results, as it offers users more control over their device fleet while ensuring effective response measures are in place for critical security incidents.
A script library specifically designed for Linux hosts has been added. This complements Fleet's existing script execution functionalities and script libraries for macOS and Windows. The script library for Linux allows administrators to store, manage, and execute scripts efficiently using the Fleet UI or API, facilitating streamlined operations and maintenance tasks on Linux-based systems. This addition underscores Fleet's commitment to adaptability and inclusiveness, ensuring users can leverage the platform's full potential regardless of their operating system environment. By providing a dedicated script library for Linux, Fleet reinforces its dedication to delivering versatile and user-centric solutions that cater to the diverse needs of IT and security professionals.
Fleet introduces a new --osquery-db
flag to the fleetctl
package command, catering to a unique requirement for virtual machine (VM) environments. This feature allows users to specify or update the osquery database directory for fleetd
at the time of packaging or through an environment variable. By enabling the customization of the osquery data storage location, users can direct fleetd
to utilize directories with more available space, optimizing resource use in VM setups. This enhancement demonstrates Fleet's commitment to ownership by giving users greater control over their Fleet configuration and results and facilitating more efficient data management in resource-constrained environments.
Endpoint operations:
fleetctl gitops
command for GitOps workflow synchronization.gitops
role to support reading queries/policies and writing scripts.--enable-scripts
flag.POST
requests on the root path to highlight misconfigured osquery instances.Device management (MDM):
GET /api/_version_/fleet/mdm/commandresults
.fleetctl mdm lock
and fleetctl mdm unlock
commands.host_mdm_actions
DB table for MDM lock and wipe functionality.only_full_group_by
mode enabled.Vulnerability management:
resolved_in_version
in the /os_versions
API response.<![CDATA[ ... ]]>
element.Visit our Upgrade guide in the Fleet docs for instructions on updating to Fleet 4.45.0.