From 9041f49d7fad8d9949b81b4cec258bbb2aaf83b0 Mon Sep 17 00:00:00 2001 From: Mike Thomas <78363703+mike-j-thomas@users.noreply.github.com> Date: Wed, 14 Aug 2024 09:32:41 +0900 Subject: [PATCH] Website: update features on pricing page (#20993) - Removed duplicate and redundant features - Reordered features by order of operation from the POV of an IT admin - Consolidated use cases - Renamed some features for clarity See [this doc](https://docs.google.com/document/d/1z7X__TmJIpRXQF-Mx9NK4EChwkX73fj0ymLnIJM2GnQ/edit?usp=sharing) for more details, including methodology for the organization and styling. --------- Co-authored-by: Eric Co-authored-by: Noah Talerman <47070608+noahtalerman@users.noreply.github.com> --- handbook/company/pricing-features-table.yml | 2200 ++++++++++--------- website/api/controllers/view-pricing.js | 6 +- website/scripts/build-static-content.js | 2 +- website/views/pages/pricing.ejs | 12 +- 4 files changed, 1158 insertions(+), 1062 deletions(-) diff --git a/handbook/company/pricing-features-table.yml b/handbook/company/pricing-features-table.yml index 4514c3c95e..a884f58f07 100644 --- a/handbook/company/pricing-features-table.yml +++ b/handbook/company/pricing-features-table.yml @@ -12,6 +12,201 @@ # jamfProHasFeature: Whether or not Jamf Pro has this (or a comparable) feature. Supported values: "yes", "no" or "appleOnly" (currently not used by Fleet website UI) # jamfProtectHasFeature: Whether or not Jamf Protext has this (or a comparable) feature. Supported values: "yes", "no" or "appleOnly" (currently not used by Fleet website UI) # +# +# +# ██████╗ ███████╗██████╗ ██╗ ██████╗ ██╗ ██╗███╗ ███╗███████╗███╗ ██╗████████╗ +# ██╔══██╗██╔════╝██╔══██╗██║ ██╔═══██╗╚██╗ ██╔╝████╗ ████║██╔════╝████╗ ██║╚══██╔══╝ +# ██║ ██║█████╗ ██████╔╝██║ ██║ ██║ ╚████╔╝ ██╔████╔██║█████╗ ██╔██╗ ██║ ██║ +# ██║ ██║██╔══╝ ██╔═══╝ ██║ ██║ ██║ ╚██╔╝ ██║╚██╔╝██║██╔══╝ ██║╚██╗██║ ██║ +# ██████╔╝███████╗██║ ███████╗╚██████╔╝ ██║ ██║ ╚═╝ ██║███████╗██║ ╚████║ ██║ +# ╚═════╝ ╚══════╝╚═╝ ╚══════╝ ╚═════╝ ╚═╝ ╚═╝ ╚═╝╚══════╝╚═╝ ╚═══╝ ╚═╝ +# +# +# ╔╦╗╔═╗╔╗╔╔═╗╔═╗╔═╗╔╦╗ ╔═╗╦ ╔═╗╦ ╦╔╦╗ +# ║║║╠═╣║║║╠═╣║ ╦║╣ ║║ ║ ║ ║ ║║ ║ ║║ +# ╩ ╩╩ ╩╝╚╝╩ ╩╚═╝╚═╝═╩╝ ╚═╝╩═╝╚═╝╚═╝═╩╝ +- industryName: Managed cloud + description: Have Fleet host it for you (currently only available for customers with 700+ hosts. PS. Wish we could host for you? We're working on it! Please let us know if you know of a good partner. In the meantime, join fleetdm.com/support and we're happy to help you deploy Fleet yourself.) + pricingTableCategories: [Deployment] + productCategories: [Endpoint operations,Device management,Vulnerability management] + tier: Premium + jamfProHasFeature: yes + jamfProtectHasFeature: yes +# +# ╔═╗╔═╗╦ ╔═╗ ╦ ╦╔═╗╔═╗╔╦╗╔═╗╔╦╗ +# ╚═╗║╣ ║ ╠╣───╠═╣║ ║╚═╗ ║ ║╣ ║║ +# ╚═╝╚═╝╩═╝╚ ╩ ╩╚═╝╚═╝ ╩ ╚═╝═╩╝ +- industryName: Self-hosted + friendlyName: Host it yourself + description: Deploy Fleet anywhere and host it yourself, even in air-gapped environments except where technologically impossible. + pricingTableCategories: [Deployment] + documentationUrl: https://fleetdm.com/docs/deploy/introduction + productCategories: [Endpoint operations,Device management,Vulnerability management] + tier: Free + jamfProHasFeature: yes + jamfProtectHasFeature: no + buzzwords: [Self-hosted] +# +# ╔╦╗╦ ╦╦ ╔╦╗╦ ╔╦╗╔═╗╔╗╔╔═╗╔╗╔╔═╗╦ ╦ +# ║║║║ ║║ ║ ║───║ ║╣ ║║║╠═╣║║║║ ╚╦╝ +# ╩ ╩╚═╝╩═╝╩ ╩ ╩ ╚═╝╝╚╝╩ ╩╝╚╝╚═╝ ╩ +- industryName: Multi-tenancy + description: For managed service providers to use a single instance of Fleet for multiple customers. + documentationUrl: https://github.com/fleetdm/fleet/issues/9956 + productCategories: [Device management] + pricingTableCategories: [Deployment] + usualDepartment: IT + buzzwords: [OEM,Private label,House brand,Clear label,Multi-tenancy] + tier: Premium + comingSoonOn: 2024-08-26 #customer-deebradel +# +# ╔╦╗╔═╗╔═╗╦ ╔═╗╦ ╦╔╦╗╔═╗╔╗╔╔╦╗ ╔╦╗╔═╗╔═╗╦ ╔═╗ +# ║║║╣ ╠═╝║ ║ ║╚╦╝║║║║╣ ║║║ ║ ║ ║ ║║ ║║ ╚═╗ +# ═╩╝╚═╝╩ ╩═╝╚═╝ ╩ ╩ ╩╚═╝╝╚╝ ╩ ╩ ╚═╝╚═╝╩═╝╚═╝ +- industryName: Deployment tools + description: Pre-built Terraform modules and Helm charts to help you get up and running. + documentationUrl: https://fleetdm.com/docs/deploy/introduction + usualDepartment: IT + tier: Free + jamfProHasFeature: no + jamfProtectHasFeature: no + productCategories: [Endpoint operations] + pricingTableCategories: [Deployment] +# +# +# ██████╗ ██████╗ ███╗ ██╗███████╗██╗ ██████╗ ██╗ ██╗██████╗ █████╗ ████████╗██╗ ██████╗ ███╗ ██╗ +# ██╔════╝██╔═══██╗████╗ ██║██╔════╝██║██╔════╝ ██║ ██║██╔══██╗██╔══██╗╚══██╔══╝██║██╔═══██╗████╗ ██║ +# ██║ ██║ ██║██╔██╗ ██║█████╗ ██║██║ ███╗██║ ██║██████╔╝███████║ ██║ ██║██║ ██║██╔██╗ ██║ +# ██║ ██║ ██║██║╚██╗██║██╔══╝ ██║██║ ██║██║ ██║██╔══██╗██╔══██║ ██║ ██║██║ ██║██║╚██╗██║ +# ╚██████╗╚██████╔╝██║ ╚████║██║ ██║╚██████╔╝╚██████╔╝██║ ██║██║ ██║ ██║ ██║╚██████╔╝██║ ╚████║ +# ╚═════╝ ╚═════╝ ╚═╝ ╚═══╝╚═╝ ╚═╝ ╚═════╝ ╚═════╝ ╚═╝ ╚═╝╚═╝ ╚═╝ ╚═╝ ╚═╝ ╚═════╝ ╚═╝ ╚═══╝ +# +# +# ╔═╗╦═╗╦╦ ╦╔═╗╔╦╗╔═╗ ╦ ╦╔═╗╔╦╗╔═╗╔╦╗╔═╗ ╦═╗╔═╗╔═╗╦╔═╗╔╦╗╦═╗╦ ╦ +# ╠═╝╠╦╝║╚╗╔╝╠═╣ ║ ║╣ ║ ║╠═╝ ║║╠═╣ ║ ║╣ ╠╦╝║╣ ║ ╦║╚═╗ ║ ╠╦╝╚╦╝ +# ╩ ╩╚═╩ ╚╝ ╩ ╩ ╩ ╚═╝ ╚═╝╩ ═╩╝╩ ╩ ╩ ╚═╝ ╩╚═╚═╝╚═╝╩╚═╝ ╩ ╩╚═ ╩ +- industryName: Private update registry + friendlyName: Update agents from a secret URL + description: Load agent code from a secret URL that you manage. + documentationUrl: https://fleetdm.com/docs/using-fleet/update-agents + tier: Premium + jamfProHasFeature: no + jamfProtectHasFeature: no + productCategories: [Endpoint operations] + pricingTableCategories: [Configuration] + usualDepartment: Security +# +# ╔═╗╔═╗╔╗╔╔╦╗╦═╗╔═╗╦ ╔═╗╔═╗╔═╗╔╗╔╔╦╗ ╦ ╦╔═╗╦═╗╔═╗╦╔═╗╔╗╔╔═╗ +# ║ ║ ║║║║ ║ ╠╦╝║ ║║ ╠═╣║ ╦║╣ ║║║ ║ ╚╗╔╝║╣ ╠╦╝╚═╗║║ ║║║║╚═╗ +# ╚═╝╚═╝╝╚╝ ╩ ╩╚═╚═╝╩═╝ ╩ ╩╚═╝╚═╝╝╚╝ ╩ ╚╝ ╚═╝╩╚═╚═╝╩╚═╝╝╚╝╚═╝ +- industryName: Control agent versions + description: Manage agents remotely by setting different versions per-baseline. + documentationUrl: https://fleetdm.com/docs/configuration/agent-configuration#configure-fleetd-update-channels + tier: Premium + jamfProHasFeature: no + jamfProtectHasFeature: no + productCategories: [Endpoint operations] + pricingTableCategories: [Configuration] + usualDepartment: IT +# +# ╔═╗╔═╗╔╦╗╔╦╗╔═╗╔╗╔╔╦╗ ╦ ╦╔╗╔╔═╗ ╔╦╗╔═╗╔═╗╦ ┌─ ╔═╗╦ ╦ ─┐ +# ║ ║ ║║║║║║║╠═╣║║║ ║║ ║ ║║║║║╣ ║ ║ ║║ ║║ │ ║ ║ ║ │ +# ╚═╝╚═╝╩ ╩╩ ╩╩ ╩╝╚╝═╩╝ ╩═╝╩╝╚╝╚═╝ ╩ ╚═╝╚═╝╩═╝ └─ ╚═╝╩═╝╩ ─┘ +- industryName: Command line tool (CLI) + friendlyName: fleetctl + documentationUrl: https://fleetdm.com/docs/using-fleet/fleetctl-cli + productCategories: [Endpoint operations,Device management] + pricingTableCategories: [Configuration] + usualDepartment: IT + tier: Free + jamfProHasFeature: yes + jamfProtectHasFeature: yes +# +# ╔═╗╦╔╦╗╔═╗╔═╗╔═╗ +# ║ ╦║ ║ ║ ║╠═╝╚═╗ +# ╚═╝╩ ╩ ╚═╝╩ ╚═╝ +- industryName: GitOps + friendlyName: Manage endpoints in git + documentationUrl: https://github.com/fleetdm/fleet-gitops + description: Fork the best practices GitHub repo and use the included GitHub Actions to quickly automate Fleet console and configuration workflow management. + productCategories: [Endpoint operations,Device management,Vulnerability management] + pricingTableCategories: [Configuration] + usualDepartment: IT + tier: Free + jamfProHasFeature: yes + jamfProtectHasFeature: yes + demos: + description: A top savings and investment company wanted workflows and automation so that one bad actor can't brick their fleet. This way, they have to make a pull request first. + quote: I don't want one bad actor to brick my fleet. I want them to make a pull request first. + moreInfoUrl: https://docs.google.com/document/d/1hAQL6P--Tt3syq1MTRONAxhQA_2Vjt3oOJJt_O4xbiE/edit?disco=AAABAVnYvns&usp_dm=true#heading=h.7en766pueek4 +# +# ╔╦╗╦ ╦╔═╗ ╔═╗╔═╗╔═╗╔╦╗╔═╗╦═╗ ╔═╗╦ ╦╔╦╗╦ ╦╔═╗╔╗╔╔╦╗╦╔═╗╔═╗╔╦╗╦╔═╗╔╗╔ +# ║ ║║║║ ║───╠╣ ╠═╣║ ║ ║ ║╠╦╝ ╠═╣║ ║ ║ ╠═╣║╣ ║║║ ║ ║║ ╠═╣ ║ ║║ ║║║║ +# ╩ ╚╩╝╚═╝ ╚ ╩ ╩╚═╝ ╩ ╚═╝╩╚═ ╩ ╩╚═╝ ╩ ╩ ╩╚═╝╝╚╝ ╩ ╩╚═╝╩ ╩ ╩ ╩╚═╝╝╚╝ +- industryName: Two-factor authentication + moreInfoUrl: https://github.com/fleetdm/fleet/issues/5478 + productCategories: [Endpoint operations,Device management,Vulnerability management] + pricingTableCategories: [Configuration] + usualDepartment: IT + tier: Free + jamfProHasFeature: yes + jamfProtectHasFeature: yes + waysToUse: + - description: Enforce two-factor authentication when logging in to Fleet for added security. + comingSoonOn: 2024-12-31 #customer-rosner +# +# ╔═╗╦ ╦╔═╗╔╦╗╔═╗╔╦╗ ╔═╗╔═╗╦═╗ ╔═╗╦═╗╔═╗╔═╗╔═╗ ╔╦╗╔═╗╔╦╗╔═╗╦╔╗╔ ╦╔╦╗╔═╗╔╗╔╔╦╗╦╔╦╗╦ ╦ +# ╚═╗╚╦╝╚═╗ ║ ║╣ ║║║ ╠╣ ║ ║╠╦╝ ║ ╠╦╝║ ║╚═╗╚═╗───║║║ ║║║║╠═╣║║║║ ║ ║║║╣ ║║║ ║ ║ ║ ╚╦╝ +# ╚═╝ ╩ ╚═╝ ╩ ╚═╝╩ ╩ ╚ ╚═╝╩╚═ ╚═╝╩╚═╚═╝╚═╝╚═╝ ═╩╝╚═╝╩ ╩╩ ╩╩╝╚╝ ╩═╩╝╚═╝╝╚╝ ╩ ╩ ╩ ╩ +# ╔╦╗╔═╗╔╗╔╔═╗╔═╗╔═╗╔╦╗╔═╗╔╗╔╔╦╗ ╔═╗╦═╗╔═╗╦ ╦╦╔═╗╦╔═╗╔╗╔╦╔╗╔╔═╗ +# ║║║╠═╣║║║╠═╣║ ╦║╣ ║║║║╣ ║║║ ║ ╠═╝╠╦╝║ ║╚╗╔╝║╚═╗║║ ║║║║║║║║║ ╦ +# ╩ ╩╩ ╩╝╚╝╩ ╩╚═╝╚═╝╩ ╩╚═╝╝╚╝ ╩ ╩ ╩╚═╚═╝ ╚╝ ╩╚═╝╩╚═╝╝╚╝╩╝╚╝╚═╝ +- industryName: System for Cross-domain Identity Management (SCIM) provisioning + moreInfoUrl: https://github.com/fleetdm/fleet/issues/15671 + productCategories: [Endpoint operations,Device management,Vulnerability management] + pricingTableCategories: [Configuration] + usualDepartment: IT + tier: Premium + comingSoonOn: 2024-12-31 #customer-rosner +# +# ╦═╗╔═╗╦ ╔═╗ ╔╗ ╔═╗╔═╗╔═╗╔╦╗ ╔═╗╔═╗╔═╗╔═╗╔═╗╔═╗ ╔═╗╔═╗╔╗╔╔╦╗╦═╗╔═╗╦ +# ╠╦╝║ ║║ ║╣───╠╩╗╠═╣╚═╗║╣ ║║ ╠═╣║ ║ ║╣ ╚═╗╚═╗ ║ ║ ║║║║ ║ ╠╦╝║ ║║ +# ╩╚═╚═╝╩═╝╚═╝ ╚═╝╩ ╩╚═╝╚═╝═╩╝ ╩ ╩╚═╝╚═╝╚═╝╚═╝╚═╝ ╚═╝╚═╝╝╚╝ ╩ ╩╚═╚═╝╩═╝ +- industryName: Role-based access control + documentationUrl: https://fleetdm.com/docs/using-fleet/manage-access#manage-access + productCategories: [Endpoint operations,Device management,Vulnerability management] + pricingTableCategories: [Configuration] + usualDepartment: IT + tier: Premium + jamfProHasFeature: yes + jamfProtectHasFeature: yes +# +# ╔═╗╦ ╦╔╦╗╦╔╦╗ ╦ ╔═╗╔═╗╔═╗╦╔╗╔╔═╗ +# ╠═╣║ ║ ║║║ ║ ║ ║ ║║ ╦║ ╦║║║║║ ╦ +# ╩ ╩╚═╝═╩╝╩ ╩ ╩═╝╚═╝╚═╝╚═╝╩╝╚╝╚═╝ +- industryName: Audit logging + description: Log all activity, including queries, scripts, access, etc. + documentationUrl: https://fleetdm.com/docs/rest-api/rest-api#list-activities + productCategories: [Endpoint operations, Device management] + pricingTableCategories: [Configuration] + tier: Premium + jamfProHasFeature: yes + jamfProtectHasFeature: yes + usualDepartment: Security + waysToUse: + - description: Export activity of Fleet admins to your SIEM or data lake +# +# ╔═╗╔═╗╔═╗╔═╗╔═╗ ╔╦╗╦═╗╔═╗╔╗╔╔═╗╔═╗╔═╗╦═╗╔═╗╔╗╔╔═╗╦ ╦ +# ╚═╗║ ║ ║╠═╝║╣ ║ ╠╦╝╠═╣║║║╚═╗╠═╝╠═╣╠╦╝║╣ ║║║║ ╚╦╝ +# ╚═╝╚═╝╚═╝╩ ╚═╝ ╩ ╩╚═╩ ╩╝╚╝╚═╝╩ ╩ ╩╩╚═╚═╝╝╚╝╚═╝ ╩ +- industryName: Scope transparency + description: Let end users see the source code for exactly how they are being monitored, and set clear expectations about what is and isn’t acceptable use of work computers. + tier: Free + documentationUrl: https://fleetdm.com/transparency + productCategories: [Endpoint operations] + pricingTableCategories: [Configuration] +# +# # ██████╗ ███████╗██╗ ██╗██╗ ██████╗███████╗ # ██╔══██╗██╔════╝██║ ██║██║██╔════╝██╔════╝ # ██║ ██║█████╗ ██║ ██║██║██║ █████╗ @@ -38,7 +233,7 @@ jamfProtectHasFeature: no usualDepartment: IT productCategories: [Device management] - pricingTableCategories: [Device management] + pricingTableCategories: [Devices] # # ╔╦╗╔╦╗╔╦╗ ╔╦╗╦╔═╗╦═╗╔═╗╔╦╗╦╔═╗╔╗╔ # ║║║ ║║║║║ ║║║║║ ╦╠╦╝╠═╣ ║ ║║ ║║║║ @@ -51,7 +246,7 @@ documentationUrl: https://fleetdm.com/docs/using-fleet/mdm-migration-guide usualDepartment: IT productCategories: [Device management] - pricingTableCategories: [Device management] + pricingTableCategories: [Devices] # # ╔═╗╔═╗╦═╗╔═╗ ╔╦╗╔═╗╦ ╦╔═╗╦ ╦ ╔═╗╔═╗╔╦╗╦ ╦╔═╗ # ╔═╝║╣ ╠╦╝║ ║───║ ║ ║║ ║║ ╠═╣ ╚═╗║╣ ║ ║ ║╠═╝ @@ -64,7 +259,7 @@ jamfProtectHasFeature: no usualDepartment: IT productCategories: [Device management] - pricingTableCategories: [Device management] + pricingTableCategories: [Devices] waysToUse: - description: Zero-touch for iOS/iPadOS is coming soon (2024-07-15). - description: Ship a macOS workstation to the end user's home and have them automatically enroll to Fleet during out-of-the-box setup. @@ -74,25 +269,10 @@ moreInfoUrl: https://github.com/fleetdm/fleet/issues/19037 - description: Require end users to authenticate with your identity provider (IdP) and agree to an end user license agreement (EULA) before they can use their new workstation # -# ╦ ╦╔═╗╔═╗╦═╗ ╔═╗╔═╗╔═╗╔═╗╦ ╦╔╗╔╔╦╗ ╔═╗╦ ╦╔╗╔╔═╗ -# ║ ║╚═╗║╣ ╠╦╝ ╠═╣║ ║ ║ ║║ ║║║║ ║ ╚═╗╚╦╝║║║║ -# ╚═╝╚═╝╚═╝╩╚═ ╩ ╩╚═╝╚═╝╚═╝╚═╝╝╚╝ ╩ ╚═╝ ╩ ╝╚╝╚═╝ -- industryName: User account sync - description: Sync user accounts via Okta, AD, or any IDP. - documentationUrl: https://fleetdm.com/docs/using-fleet/mdm-macos-setup-experience - productCategories: [Endpoint operations,Device management,Vulnerability management] - pricingTableCategories: [Device management] - usualDepartment: IT - tier: Premium - jamfProHasFeature: yes - jamfProtectHasFeature: yes - waysToUse: - - description: Automatically set admin access to Fleet based on your IDP -# # ╔╗ ╦ ╦╔═╗╔╦╗ ╔═╗╔╗╔╦═╗╔═╗╦ ╦ ╔╦╗╔═╗╔╗╔╔╦╗ # ╠╩╗╚╦╝║ ║ ║║ ║╣ ║║║╠╦╝║ ║║ ║ ║║║║╣ ║║║ ║ # ╚═╝ ╩ ╚═╝═╩╝ ╚═╝╝╚╝╩╚═╚═╝╩═╝╩═╝╩ ╩╚═╝╝╚╝ ╩ -- industryName: BYOD enrollment +- industryName: Bring your own device (BYOD) enrollment description: BYOD enrollment for macOS, iOS/iPadOS (coming soon), Windows, and Android (coming soon) devices. documentationUrl: https://fleetdm.com/guides/sysadmin-diaries-device-enrollment#byod-enrollment tier: Free @@ -100,24 +280,112 @@ jamfProtectHasFeature: no usualDepartment: IT productCategories: [Device management] - pricingTableCategories: [Device management] + pricingTableCategories: [Devices] waysToUse: - description: Support ACME as a protocol for MDM certificate generation. Coming soon (2024-12-31) #customer-rosner moreInfoUrl: https://github.com/fleetdm/fleet/issues/15611 # +# ╦ ╦╔═╗╔═╗╦═╗ ╔═╗╔═╗╔═╗╔═╗╦ ╦╔╗╔╔╦╗ ╔═╗╦ ╦╔╗╔╔═╗ +# ║ ║╚═╗║╣ ╠╦╝ ╠═╣║ ║ ║ ║║ ║║║║ ║ ╚═╗╚╦╝║║║║ +# ╚═╝╚═╝╚═╝╩╚═ ╩ ╩╚═╝╚═╝╚═╝╚═╝╝╚╝ ╩ ╚═╝ ╩ ╝╚╝╚═╝ +- industryName: User account sync + description: Sync user accounts via Okta, AD, or any IDP. + documentationUrl: https://fleetdm.com/docs/using-fleet/mdm-macos-setup-experience + productCategories: [Endpoint operations,Device management,Vulnerability management] + pricingTableCategories: [Devices] + usualDepartment: IT + tier: Premium + jamfProHasFeature: yes + jamfProtectHasFeature: yes + waysToUse: + - description: Automatically set admin access to Fleet based on your IDP +# +# ╦ ╦╦ ╦╔╦╗╔═╗╔╗╔ ╔═╗╔╗╔╔╦╗╔═╗╔═╗╦╔╗╔╔╦╗ ╔╦╗╔═╗╔═╗╔═╗╦╔╗╔╔═╗ +# ╠═╣║ ║║║║╠═╣║║║───║╣ ║║║ ║║╠═╝║ ║║║║║ ║ ║║║╠═╣╠═╝╠═╝║║║║║ ╦ +# ╩ ╩╚═╝╩ ╩╩ ╩╝╚╝ ╚═╝╝╚╝═╩╝╩ ╚═╝╩╝╚╝ ╩ ╩ ╩╩ ╩╩ ╩ ╩╝╚╝╚═╝ +- industryName: Human-endpoint mapping + friendlyName: See who logs in on every computer + description: Identify who logs in to any system, including login history and current sessions. Look up any host by the email address of the person using it. + documentationUrl: https://fleetdm.com/docs/rest-api/rest-api#get-hosts-google-chrome-profiles + screenshotSrc: + tier: Free + jamfProHasFeature: yes + jamfProtectHasFeature: yes + productCategories: [Endpoint operations] + pricingTableCategories: [Devices] + usualDepartment: IT + buzzwords: [Device users,human-to-device mapping] + dri: mikermcneil + demos: + - description: Security engineers at a top gaming company wanted to get demographics off their macOS, Windows, and Linux machines about who the user is and who's logged in. + moreInfoUrl: https://docs.google.com/document/d/1qFYtMoKh3zyERLhbErJOEOo2me6Bc7KOOkjKn482Sqc/edit + - description: Data engineers at a top biotech corporation needed to know who is logged into their devices. + quote: So we don't know exactly what's going on after we deploy the device, we know that they are compliant with the security because we are running these stuff, but we don't know certainly who is running, who is logging in the device? + moreInfoUrl: https://docs.google.com/document/d/17MNI5ykzlFjdVmQ8SPMrT1oR_hY_vkYAJx31F7l7Pv8/edit#heading=h.7en766pueek4 + waysToUse: + - description: Look up computer by ActiveDirectory account + - description: Find device by Google Chrome user + - description: Identify who logs in to any system, including login history and current sessions. + - description: Look up any host by the email address of the person using it. + - description: Check user login history + moreInfoUrl: https://www.lepide.com/how-to/audit-who-logged-into-a-computer-and-when.html#:~:text=To%20find%20out%20the%20details,logs%20in%20%E2%80%9CWindows%20Logs%E2%80%9D. + - description: See currently logged in users + moreInfoUrl: https://www.top-password.com/blog/see-currently-logged-in-users-in-windows/ + - description: Get demographics off of our machines about who the user is and who's logged in + moreInfoUrl: https://docs.google.com/document/d/1qFYtMoKh3zyERLhbErJOEOo2me6Bc7KOOkjKn482Sqc/edit + - description: See what servers someone is logged-in on + moreInfoUrl: https://community.spiceworks.com/topic/138171-is-there-a-way-to-see-what-servers-someone-is-logged-in-on +# # ╔╦╗╔═╗╦ ╦╦╔═╗╔═╗ ╦╔╗╔╦ ╦╔═╗╔╗╔╔╦╗╔═╗╦═╗╦ ╦ # ║║║╣ ╚╗╔╝║║ ║╣ ║║║║╚╗╔╝║╣ ║║║ ║ ║ ║╠╦╝╚╦╝ # ═╩╝╚═╝ ╚╝ ╩╚═╝╚═╝ ╩╝╚╝ ╚╝ ╚═╝╝╚╝ ╩ ╚═╝╩╚═ ╩ - industryName: Device inventory - description: The device inventory allows admins to view device data. + description: Includes a list of all devices and all hardware and software attributes for each device. documentationUrl: https://fleetdm.com/docs/using-fleet/understanding-host-vitals moreInfoUrl: https://github.com/fleetdm/fleet/issues/14415 tier: Free jamfProHasFeature: yes jamfProtectHasFeature: yes usualDepartment: IT + productCategories: [Endpoint operations,Device management, Vulnerability management] + pricingTableCategories: [Devices] + waysToUse: + - description: Implement software inventory recommendations from the SANS 20 / CIS 18. + moreInfoUrl: https://docs.google.com/document/d/1E6EQMMqrsRc6Z3YsR6Q33OaF9eAa8zLNaz4K2YzFdyo/edit#heading=h.7en766pueek4 + - description: View a list of all hardware attributes of a device. + moreInfoUrl: https://fleetdm.com/tables/system_info + - description: View a list of all software and their versions installed on all your hosts. + moreInfoUrl: https://fleetdm.com/docs/get-started/anatomy#software-library + - description: View a list of software rolled up by title. + moreInfoUrl: https://github.com/fleetdm/fleet/issues/14674 + - description: Implement hardware and infrastructure inventory recommendations from the SANS 20 / CIS 18. + moreInfoUrl: https://docs.google.com/document/d/1E6EQMMqrsRc6Z3YsR6Q33OaF9eAa8zLNaz4K2YzFdyo/edit#heading=h.7en766pueek4 +# +# ╔═╗╔═╗╔═╗╦═╗╔═╗╦ ╦ ╦╔╗╔╦ ╦╔═╗╔╗╔╔╦╗╔═╗╦═╗╦ ╦ +# ╚═╗║╣ ╠═╣╠╦╝║ ╠═╣ ║║║║╚╗╔╝║╣ ║║║ ║ ║ ║╠╦╝╚╦╝ +# ╚═╝╚═╝╩ ╩╩╚═╚═╝╩ ╩ ╩╝╚╝ ╚╝ ╚═╝╝╚╝ ╩ ╚═╝╩╚═ ╩ +- industryName: Search inventory + description: Search devices by IP, serial, hostname, and UUID. + documentationUrl: https://fleetdm.com/docs/using-fleet/learn-how-to-use-fleet#how-to-ask-questions-about-your-device productCategories: [Endpoint operations,Device management] - pricingTableCategories: [Device management] + pricingTableCategories: [Devices] + usualDepartment: IT + tier: Free + jamfProHasFeature: yes + jamfProtectHasFeature: yes +# +# ╔╦╗╔═╗╦═╗╔═╗╔═╗╔╦╗╔═╗╔╦╗ ╔╦╗╔═╗╦ ╦╦╔═╗╔═╗ ╔═╗╔═╗╔═╗╔═╗╦╔╗╔╔═╗ +# ║ ╠═╣╠╦╝║ ╦║╣ ║ ║╣ ║║ ║║║╣ ╚╗╔╝║║ ║╣ ╚═╗║ ║ ║╠═╝║║║║║ ╦ +# ╩ ╩ ╩╩╚═╚═╝╚═╝ ╩ ╚═╝═╩╝ ═╩╝╚═╝ ╚╝ ╩╚═╝╚═╝ ╚═╝╚═╝╚═╝╩ ╩╝╚╝╚═╝ +- industryName: Targeted device scoping + description: Organize devices with Teams and Labels. + documentationUrl: https://fleetdm.com/guides/managing-labels-in-fleet + tier: Premium + jamfProHasFeature: yes + jamfProtectHasFeature: yes + usualDepartment: IT + productCategories: [Device management] + pricingTableCategories: [Devices] # # ╔═╗╔╗╔╔═╗╔═╗╦═╗╔═╗╔═╗ ╔╦╗╦╔═╗╦╔═ ╔═╗╔╗╔╔═╗╦═╗╦ ╦╔═╗╔╦╗╦╔═╗╔╗╔ # ║╣ ║║║╠╣ ║ ║╠╦╝║ ║╣ ║║║╚═╗╠╩╗ ║╣ ║║║║ ╠╦╝╚╦╝╠═╝ ║ ║║ ║║║║ @@ -127,7 +395,7 @@ documentationUrl: https://fleetdm.com/docs/using-fleet/mdm-disk-encryption friendlyName: Ensure hard disks are encrypted productCategories: [Device management] - pricingTableCategories: [Device management] + pricingTableCategories: [Devices] usualDepartment: Security tier: Premium jamfProHasFeature: appleOnly @@ -149,7 +417,7 @@ jamfProtectHasFeature: no usualDepartment: IT productCategories: [Device management,Vulnerability management] - pricingTableCategories: [Device management] + pricingTableCategories: [Devices] waysToUse: - description: Enforce macOS updates via Nudge. - description: Progressively enhance from Nudge to DDM-based OS updates. @@ -180,8 +448,141 @@ - description: MDM commands for iOS/iPadOS are coming soon (2024-07-15). - description: Send MDM commands to tell end users to update their OS. moreInfoUrl: https://developer.apple.com/documentation/devicemanagement/schedule_an_os_update + - description: Configure agent options remotely, over the air. (Includes osquery config, and osquery startup flags.). + moreInfoUrl: https://fleetdm.com/docs/configuration/agent-configuration productCategories: [Device management] - pricingTableCategories: [Device management] + pricingTableCategories: [Devices] +# +# ╔╦╗╔═╗╔═╗╦ ╔═╗╦═╗╔═╗╔╦╗╦╦ ╦╔═╗ ╔╦╗╔═╗╦ ╦╦╔═╗╔═╗ ╔╦╗╔═╗╔╗╔╔═╗╔═╗╔═╗╔╦╗╔═╗╔╗╔╔╦╗ +# ║║║╣ ║ ║ ╠═╣╠╦╝╠═╣ ║ ║╚╗╔╝║╣ ║║║╣ ╚╗╔╝║║ ║╣ ║║║╠═╣║║║╠═╣║ ╦║╣ ║║║║╣ ║║║ ║ +# ═╩╝╚═╝╚═╝╩═╝╩ ╩╩╚═╩ ╩ ╩ ╩ ╚╝ ╚═╝ ═╩╝╚═╝ ╚╝ ╩╚═╝╚═╝ ╩ ╩╩ ╩╝╚╝╩ ╩╚═╝╚═╝╩ ╩╚═╝╝╚╝ ╩ +- industryName: Declarative Device Management (DDM) support for configuration profiles + description: Full support for Apple DDM configuration profiles. + documentationUrl: https://fleetdm.com/docs/using-fleet/mdm-os-updates#macos + tier: Free + jamfProHasFeature: cloudOnly + jamfProtectHasFeature: cloudOnly + usualDepartment: IT + productCategories: [Device management] + pricingTableCategories: [Devices] +# +# ╔╦╗╔═╗╦ ╦╦╔═╗╔═╗ ╦ ╦╔═╗╔═╗╦ ╔╦╗╦ ╦ +# ║║║╣ ╚╗╔╝║║ ║╣ ╠═╣║╣ ╠═╣║ ║ ╠═╣ +# ═╩╝╚═╝ ╚╝ ╩╚═╝╚═╝ ╩ ╩╚═╝╩ ╩╩═╝╩ ╩ ╩ +- industryName: Device health + friendlyName: Automate device health + description: Automatically report system health issues using webhooks or integrations, to notify or quarantine outdated or misconfigured systems that are at higher risk of vulnerabilities or theft. + documentationUrl: https://fleetdm.com/docs/using-fleet/automations#automations + screenshotSrc: + tier: Free + jamfProHasFeature: no + jamfProtectHasFeature: yes + productCategories: [Device management,Endpoint operations] + pricingTableCategories: [Devices] + usualDepartment: IT + dri: mikermcneil + demos: + - description: A large tech company used the Fleet API to block access to corporate apps for outdated operating system versions with certain "celebrity" vulnerabilities. + quote: + moreInfoUrl: https://play.goconsensus.com/s4e490bb9 + buzzwords: [Device trust,Zero trust,Layer 7 device trust,Beyondcorp,Device attestation,Conditional access] + waysToUse: + - description: Automatically manage the behavior of endpoints that are at higher risk of vulnerabilities or data loss due to their configuration or patch level. + - description: Block access to corporate apps for users whose devices with unexpected settings, like disabled screen lock, passwords that are too short, unencrypted hard disks, and more + - description: Quickly implement conditional access based on device health using osquery and a simple device health REST API. + moreInfoUrl: https://github.com/fleetdm/fleet/issues/14920 + - description: Control and restore access to applications by automatically restricting access when devices do not meet particular security requirements. + moreInfoUrl: https://duo.com/docs/device-health + - description: Control which laptop and desktop devices can access corporate apps and websites based on what vulnerabilities it might be exposed to based on how the device is configured, whether it's up to date, its MDM enrollment status, and anything else you can build in a SQL query of Fleet's 300 data tables representing information about enrolled host systems. Coming soon (2024-09-30). + moreInfoUrl: https://github.com/fleetdm/fleet/issues/16236 + - description: Implement multivariate device trust + moreInfoUrl: https://youtu.be/5sFOdpMLXQg?feature=shared&t=1445 + - description: Implement your own version of Google's zero trust model (BeyondCorp) + moreInfoUrl: https://cloud.google.com/beyondcorp + - description: Get endpoint data into ServiceNow and make your asset management teams happy + moreInfoUrl: https://www.youtube.com/watch?v=aVbU6_9JoM0 + - description: Monitor devices that don't meet your organization's custom security policies + - description: Quickly report your posture and vulnerabilities to auditors, showing remediation status and timing. + - description: Keep your devices compliant with customizable baselines, or use common benchmarks like CIS. + - description: Discover security misconfigurations that increase attack surface. + - description: Detect suspcious services listening on open ports that should not be connected to the internet, such as Remote Desktop Protocol (RDP). + moreInfoUrl: https://paraflare.com/articles/vulnerability-management-via-osquery/#:~:text=WHERE%20statename%20%3D%20%E2%80%9CEnabled%E2%80%9D-,OPEN%20SOCKETS,-Lastly%2C%20an%20examination + - description: Discover potentially unwanted programs that increase attack surface. + moreInfoUrl: https://paraflare.com/articles/vulnerability-management-via-osquery/ + - description: Detect self-signed certifcates + - description: Detect legacy protocols with safer versions + moreInfoUrl: https://paraflare.com/articles/vulnerability-management-via-osquery/#:~:text=WHERE%20self_signed%20%3D%201%3B-,LEGACY%20PROTOCOLS,-This%20section%20will + - description: Detect exposed secrets on the command line + moreInfoUrl: https://paraflare.com/articles/vulnerability-management-via-osquery/#:~:text=WDigest%20is%20disabled.-,EXPOSED%20SECRETS,-Often%2C%20to%20create + - description: Detect and surface issues with devices + - description: Share device health reports + - description: Align endpoints with your security policies + moreInfoUrl: https://www.axonius.com/use-cases/cmdb-reconciliation + - description: Maximize security control coverage + - description: Uncover gaps in security policies, configurations, and hygiene + moreInfoUrl: https://www.axonius.com/use-cases/coverage-gap-discovery + - description: Automatically apply security policies to protect endpoints against attack. + - description: Surface security issues in all your deployed endpoints even data centers and factories. + - description: Continually validate controls and policies + - description: Block access to corporate apps if your end users are failing a specific number of critical policies. + moreInfoUrl: https://github.com/fleetdm/fleet/issues/16206 +# +# ╔═╗╔═╗╔═╗╦ ╦╔═╗╔═╗╔╦╗╦╔═╗╔╗╔ ╔╦╗╔═╗╔═╗╦ ╔═╗╦ ╦╔╦╗╔═╗╔╗╔╔╦╗ +# ╠═╣╠═╝╠═╝║ ║║ ╠═╣ ║ ║║ ║║║║ ║║║╣ ╠═╝║ ║ ║╚╦╝║║║║╣ ║║║ ║ +# ╩ ╩╩ ╩ ╩═╝╩╚═╝╩ ╩ ╩ ╩╚═╝╝╚╝ ═╩╝╚═╝╩ ╩═╝╚═╝ ╩ ╩ ╩╚═╝╝╚╝ ╩ +- industryName: Application deployment + description: Deploy applications and security agents on macOS, iOS/iPadOS, Linux, Windows, and Android (coming soon) devices. Additionally, install macOS and iOS/iPadOS apps from the App Store (coming soon). + tier: Premium + jamfProHasFeature: appleOnly + jamfProtectHasFeature: no + isExperimental: yes + usualDepartment: IT + productCategories: [Device management] + pricingTableCategories: [Devices] + moreInfoUrl: https://github.com/fleetdm/fleet/issues/18867 + waysToUse: + - description: Easily configure and install SentinelOne, Crowdstrike, and other security tools. + moreInfoUrl: https://github.com/fleetdm/fleet/issues/14921 + - description: Offer licenses for Photoshop and other App Sore apps for your end users. + - description: macOS coming soon (2024-07-15). #customer-rosner + moreInfoUrl: https://github.com/fleetdm/fleet/issues/18867 + - description: iOS/iPadOS coming soon (2024-08-11). + moreInfoUrl: https://github.com/fleetdm/fleet/issues/14899 +# +# ╔═╗╔═╗╦ ╔═╗ ╔═╗╔═╗╦═╗╦ ╦╦╔═╗╔═╗ ╔═╗╔═╗╔═╗╦ ╦╔═╗╔═╗╔╦╗╦╔═╗╔╗╔ ╦╔╗╔╔═╗╔╦╗╔═╗╦ ╦ ╔═╗╔╦╗╦╔═╗╔╗╔ +# ╚═╗║╣ ║ ╠╣───╚═╗║╣ ╠╦╝╚╗╔╝║║ ║╣ ╠═╣╠═╝╠═╝║ ║║ ╠═╣ ║ ║║ ║║║║ ║║║║╚═╗ ║ ╠═╣║ ║ ╠═╣ ║ ║║ ║║║║ +# ╚═╝╚═╝╩═╝╚ ╚═╝╚═╝╩╚═ ╚╝ ╩╚═╝╚═╝ ╩ ╩╩ ╩ ╩═╝╩╚═╝╩ ╩ ╩ ╩╚═╝╝╚╝ ╩╝╚╝╚═╝ ╩ ╩ ╩╩═╝╩═╝╩ ╩ ╩ ╩╚═╝╝╚╝ +- industryName: Self-service application installation + description: Allow end users to install apps through Fleet Desktop for macOS, Linux, and Windows. + tier: Premium + jamfProHasFeature: yes + jamfProtectHasFeature: no + isExperimental: yes + usualDepartment: IT + productCategories: [Device management] + pricingTableCategories: [Devices] + moreInfoUrl: https://github.com/fleetdm/fleet/issues/17587 + waysToUse: + - description: Build scripts for Ansible deployments + moreInfoUrl: https://www.youtube.com/watch?v=qflUfLQCnwY&list=PL6-FgoWOoK2YUR4ADGsxTSL3onb-GzCnM&index=4 + - description: Deploy osquery to macOS via Jamf + moreInfoUrl: https://www.youtube.com/watch?v=qflUfLQCnwY&list=PL6-FgoWOoK2YUR4ADGsxTSL3onb-GzCnM&index=4 + - description: Package osquery for Linux servers via Workspace One and Windows servers via group policies + moreInfoUrl: https://www.youtube.com/watch?v=qflUfLQCnwY&list=PL6-FgoWOoK2YUR4ADGsxTSL3onb-GzCnM&index=4 +# +# ╔═╗╔═╗╔═╗╦ ╦╔═╗╔═╗╔╦╗╦╔═╗╔╗╔ ╔╦╗╔═╗╔╗╔╔═╗╔═╗╔═╗╔╦╗╔═╗╔╗╔╔╦╗ +# ╠═╣╠═╝╠═╝║ ║║ ╠═╣ ║ ║║ ║║║║ ║║║╠═╣║║║╠═╣║ ╦║╣ ║║║║╣ ║║║ ║ +# ╩ ╩╩ ╩ ╩═╝╩╚═╝╩ ╩ ╩ ╩╚═╝╝╚╝ ╩ ╩╩ ╩╝╚╝╩ ╩╚═╝╚═╝╩ ╩╚═╝╝╚╝ ╩ +- industryName: Application management + description: Manage updates and patches for apps on macOS, Windows, and Linux computers. + tier: Premium + jamfProHasFeature: appleOnly + jamfProtectHasFeature: no + comingSoonOn: 2024-08-25 + usualDepartment: IT + productCategories: [Device management] + pricingTableCategories: [Devices] + moreInfoUrl: https://github.com/fleetdm/fleet/issues/18865 # # ╔═╗╔═╗╦═╗╦╔═╗╔╦╗ ╔═╗═╗ ╦╔═╗╔═╗╦ ╦╔╦╗╦╔═╗╔╗╔ # ╚═╗║ ╠╦╝║╠═╝ ║ ║╣ ╔╩╦╝║╣ ║ ║ ║ ║ ║║ ║║║║ @@ -196,7 +597,7 @@ dri: mikermcneil usualDepartment: IT productCategories: [Endpoint operations,Device management] - pricingTableCategories: [Device management] + pricingTableCategories: [Devices] demos: - description: A large tech company used scripts to fix issues with their security and compliance agents on workstations. buzzwords: [Remote script execution,PowerShell scripts,Bash scripts] @@ -216,57 +617,7 @@ - description: Run scripts on online/offline hosts moreInfoUrl: https://github.com/fleetdm/fleet/issues/15529 - description: Only maintainers and admins can run scripts. - moreInfoUrl: https://github.com/fleetdm/fleet/issues/19055 -# -# ╔═╗╔═╗╔═╗╦ ╦╔═╗╔═╗╔╦╗╦╔═╗╔╗╔ ╔╦╗╔═╗╔═╗╦ ╔═╗╦ ╦╔╦╗╔═╗╔╗╔╔╦╗ -# ╠═╣╠═╝╠═╝║ ║║ ╠═╣ ║ ║║ ║║║║ ║║║╣ ╠═╝║ ║ ║╚╦╝║║║║╣ ║║║ ║ -# ╩ ╩╩ ╩ ╩═╝╩╚═╝╩ ╩ ╩ ╩╚═╝╝╚╝ ═╩╝╚═╝╩ ╩═╝╚═╝ ╩ ╩ ╩╚═╝╝╚╝ ╩ -- industryName: Application deployment - description: Deploy applications and security agents on macOS, iOS/iPadOS, Linux, Windows, and Android (coming soon) devices. Additionally, install macOS and iOS/iPadOS apps from the App Store (coming soon). - tier: Premium - jamfProHasFeature: appleOnly - jamfProtectHasFeature: no - isExperimental: yes - usualDepartment: IT - productCategories: [Device management] - pricingTableCategories: [Device management] - moreInfoUrl: https://github.com/fleetdm/fleet/issues/18867 - waysToUse: - - description: Easily configure and install SentinelOne, Crowdstrike, and other security tools. - moreInfoUrl: https://github.com/fleetdm/fleet/issues/14921 - - description: Offer licenses for Photoshop and other App Sore apps for your end users. - - description: macOS coming soon (2024-07-15). #customer-rosner - moreInfoUrl: https://github.com/fleetdm/fleet/issues/18867 - - description: iOS/iPadOS coming soon (2024-08-11). - moreInfoUrl: https://github.com/fleetdm/fleet/issues/14899 -# -# ╔═╗╔═╗╦ ╔═╗ ╔═╗╔═╗╦═╗╦ ╦╦╔═╗╔═╗ ╔═╗╔═╗╔═╗╦ ╦╔═╗╔═╗╔╦╗╦╔═╗╔╗╔ ╦╔╗╔╔═╗╔╦╗╔═╗╦ ╦ ╔═╗╔╦╗╦╔═╗╔╗╔ -# ╚═╗║╣ ║ ╠╣ ╚═╗║╣ ╠╦╝╚╗╔╝║║ ║╣ ╠═╣╠═╝╠═╝║ ║║ ╠═╣ ║ ║║ ║║║║ ║║║║╚═╗ ║ ╠═╣║ ║ ╠═╣ ║ ║║ ║║║║ -# ╚═╝╚═╝╩═╝╚ ╚═╝╚═╝╩╚═ ╚╝ ╩╚═╝╚═╝ ╩ ╩╩ ╩ ╩═╝╩╚═╝╩ ╩ ╩ ╩╚═╝╝╚╝ ╩╝╚╝╚═╝ ╩ ╩ ╩╩═╝╩═╝╩ ╩ ╩ ╩╚═╝╝╚╝ -- industryName: Self service application installation - description: Allow end users to install apps through Fleet Desktop for macOS, Linux, and Windows. - tier: Premium - jamfProHasFeature: yes - jamfProtectHasFeature: no - isExperimental: yes - usualDepartment: IT - productCategories: [Device management] - pricingTableCategories: [Device management] - moreInfoUrl: https://github.com/fleetdm/fleet/issues/17587 -# -# ╔═╗╔═╗╔═╗╦ ╦╔═╗╔═╗╔╦╗╦╔═╗╔╗╔ ╔╦╗╔═╗╔╗╔╔═╗╔═╗╔═╗╔╦╗╔═╗╔╗╔╔╦╗ -# ╠═╣╠═╝╠═╝║ ║║ ╠═╣ ║ ║║ ║║║║ ║║║╠═╣║║║╠═╣║ ╦║╣ ║║║║╣ ║║║ ║ -# ╩ ╩╩ ╩ ╩═╝╩╚═╝╩ ╩ ╩ ╩╚═╝╝╚╝ ╩ ╩╩ ╩╝╚╝╩ ╩╚═╝╚═╝╩ ╩╚═╝╝╚╝ ╩ -- industryName: Application management - description: Manage updates and patches for apps on macOS, Windows, and Linux computers. - tier: Premium - jamfProHasFeature: appleOnly - jamfProtectHasFeature: no - comingSoonOn: 2024-08-25 - usualDepartment: IT - productCategories: [Device management] - pricingTableCategories: [Device management] - moreInfoUrl: https://github.com/fleetdm/fleet/issues/18865 + moreInfoUrl: https://github.com/fleetdm/fleet/issues/19055 # # ╔╦╗╔═╗╦ ╦╦╔═╗╔═╗ ╦═╗╔═╗╔╦╗╔═╗╔╦╗╦╔═╗╔╦╗╦╔═╗╔╗╔ # ║║║╣ ╚╗╔╝║║ ║╣ ╠╦╝║╣ ║║║║╣ ║║║╠═╣ ║ ║║ ║║║║ @@ -279,9 +630,23 @@ jamfProtectHasFeature: no usualDepartment: IT productCategories: [Device management, Vulnerability management] - pricingTableCategories: [Device management] + pricingTableCategories: [Devices] waysToUse: - description: Send software vulnerability emails to end users to encourage self-remediation. +# +# ╔╦╗╔═╗╦╔╗╔╔╦╗╔═╗╔╗╔╔═╗╔╗╔╔═╗╔═╗ ╦ ╦╦╔╗╔╔╦╗╔═╗╦ ╦╔═╗ +# ║║║╠═╣║║║║ ║ ║╣ ║║║╠═╣║║║║ ║╣ ║║║║║║║ ║║║ ║║║║╚═╗ +# ╩ ╩╩ ╩╩╝╚╝ ╩ ╚═╝╝╚╝╩ ╩╝╚╝╚═╝╚═╝ ╚╩╝╩╝╚╝═╩╝╚═╝╚╩╝╚═╝ +- industryName: Maintenance windows + friendlyName: Fleet in your calendar + description: Create a calendar event to auto-remediate failing policies when your end users are free. + documentationUrl: https://github.com/fleetdm/fleet/issues/17230 + tier: Premium + jamfProHasFeature: no + jamfProtectHasFeature: no + isExperimental: yes + productCategories: [Device management, Endpoint operations] + pricingTableCategories: [Devices] # # ╔═╗╔═╗╔╗╔╔╦╗ ╦ ╔═╗╔═╗╦╔═ ╔═╗╔╗╔╔╦╗ ╦ ╦╦╔═╗╔═╗ ╔═╗╔═╗╔╦╗╔╦╗╔═╗╔╗╔╔╦╗╔═╗ # ╚═╗║╣ ║║║ ║║ ║ ║ ║║ ╠╩╗ ╠═╣║║║ ║║ ║║║║╠═╝║╣ ║ ║ ║║║║║║║╠═╣║║║ ║║╚═╗ @@ -299,36 +664,256 @@ jamfProtectHasFeature: no usualDepartment: IT productCategories: [Device management] - pricingTableCategories: [Device management] + pricingTableCategories: [Devices] # -# ╔═╗╔═╗╔═╗╦ ╔═╗ ╔╦╗╔═╗╔═╗╦ ╔═╗╦═╗╔═╗╔╦╗╦╦ ╦╔═╗ ╔╦╗╔═╗╦ ╦╦╔═╗╔═╗ ╔╦╗╔═╗╔╗╔╔═╗╔═╗╔═╗╔╦╗╔═╗╔╗╔╔╦╗ -# ╠═╣╠═╝╠═╝║ ║╣ ║║║╣ ║ ║ ╠═╣╠╦╝╠═╣ ║ ║╚╗╔╝║╣ ║║║╣ ╚╗╔╝║║ ║╣ ║║║╠═╣║║║╠═╣║ ╦║╣ ║║║║╣ ║║║ ║ -# ╩ ╩╩ ╩ ╩═╝╚═╝ ═╩╝╚═╝╚═╝╩═╝╩ ╩╩╚═╩ ╩ ╩ ╩ ╚╝ ╚═╝ ═╩╝╚═╝ ╚╝ ╩╚═╝╚═╝ ╩ ╩╩ ╩╝╚╝╩ ╩╚═╝╚═╝╩ ╩╚═╝╝╚╝ ╩ -# ╔═╗╦ ╦╔═╗╔═╗╔═╗╦═╗╔╦╗ ╔═╗╔═╗╦═╗ ╔═╗╔═╗╔╗╔╔═╗╦╔═╗╦ ╦╦═╗╔═╗╔╦╗╦╔═╗╔╗╔ ╔═╗╦═╗╔═╗╔═╗╦╦ ╔═╗╔═╗ -# ╚═╗║ ║╠═╝╠═╝║ ║╠╦╝ ║ ╠╣ ║ ║╠╦╝ ║ ║ ║║║║╠╣ ║║ ╦║ ║╠╦╝╠═╣ ║ ║║ ║║║║ ╠═╝╠╦╝║ ║╠╣ ║║ ║╣ ╚═╗ -# ╚═╝╚═╝╩ ╩ ╚═╝╩╚═ ╩ ╚ ╚═╝╩╚═ ╚═╝╚═╝╝╚╝╚ ╩╚═╝╚═╝╩╚═╩ ╩ ╩ ╩╚═╝╝╚╝ ╩ ╩╚═╚═╝╚ ╩╩═╝╚═╝╚═╝ -- industryName: Apple Declarative Device Management (DDM) support for configuration profiles - description: Use the latest device management protocol on your Apple devices. - documentationUrl: https://fleetdm.com/docs/using-fleet/mdm-os-updates#macos - tier: Premium - jamfProHasFeature: cloudOnly - jamfProtectHasFeature: cloudOnly +# +# ███████╗███╗ ██╗██████╗ ██████╗ ██████╗ ██╗███╗ ██╗████████╗ +# ██╔════╝████╗ ██║██╔══██╗██╔══██╗██╔═══██╗██║████╗ ██║╚══██╔══╝ +# █████╗ ██╔██╗ ██║██║ ██║██████╔╝██║ ██║██║██╔██╗ ██║ ██║ +# ██╔══╝ ██║╚██╗██║██║ ██║██╔═══╝ ██║ ██║██║██║╚██╗██║ ██║ +# ███████╗██║ ╚████║██████╔╝██║ ╚██████╔╝██║██║ ╚████║ ██║ +# ╚══════╝╚═╝ ╚═══╝╚═════╝ ╚═╝ ╚═════╝ ╚═╝╚═╝ ╚═══╝ ╚═╝ +# +# ██████╗ ██████╗ ███████╗██████╗ █████╗ ████████╗██╗ ██████╗ ███╗ ██╗███████╗ +# ██╔═══██╗██╔══██╗██╔════╝██╔══██╗██╔══██╗╚══██╔══╝██║██╔═══██╗████╗ ██║██╔════╝ +# ██║ ██║██████╔╝█████╗ ██████╔╝███████║ ██║ ██║██║ ██║██╔██╗ ██║███████╗ +# ██║ ██║██╔═══╝ ██╔══╝ ██╔══██╗██╔══██║ ██║ ██║██║ ██║██║╚██╗██║╚════██║ +# ╚██████╔╝██║ ███████╗██║ ██║██║ ██║ ██║ ██║╚██████╔╝██║ ╚████║███████║ +# ╚═════╝ ╚═╝ ╚══════╝╚═╝ ╚═╝╚═╝ ╚═╝ ╚═╝ ╚═╝ ╚═════╝ ╚═╝ ╚═══╝╚══════╝ +# +# +# +# ╔═╗ ╦ ╦╔═╗╦═╗╦╔═╗╔═╗ +# ║═╬╗║ ║║╣ ╠╦╝║║╣ ╚═╗ +# ╚═╝╚╚═╝╚═╝╩╚═╩╚═╝╚═╝ +- industryName: Queries + description: Scheduled or saved queries with optional AI-generated descriptions, and, live queries for real-time data collection. + documentationUrl: https://fleetdm.com/docs/using-fleet/fleet-ui + tier: Free + jamfProHasFeature: no + jamfProtectHasFeature: no + productCategories: [Endpoint operations,Device management,Vulnerability management] + pricingTableCategories: [Devices] usualDepartment: IT - productCategories: [Device management] - pricingTableCategories: [Device management] + demos: + - description: A top financial services company needed to set up rolling deployments for changes to osquery agents running on their production servers. + moreInfoUrl: https://docs.google.com/document/d/1UdzZMyBLbs9SUXfSXN2x2wZQCbjZZUetYlNWH6-ryqQ/edit#heading=h.2lh6ehprpvl6 +# +# ╔═╗ ╦ ╦╔═╗╦═╗╦ ╦ ╔═╗╔═╗╦═╗╔═╗╔═╗╦═╗╔╦╗╔═╗╔╗╔╔═╗╔═╗ ╔╦╗╔═╗╔╗╔╦╔╦╗╔═╗╦═╗╦╔╗╔╔═╗ +# ║═╬╗║ ║║╣ ╠╦╝╚╦╝ ╠═╝║╣ ╠╦╝╠╣ ║ ║╠╦╝║║║╠═╣║║║║ ║╣ ║║║║ ║║║║║ ║ ║ ║╠╦╝║║║║║ ╦ +# ╚═╝╚╚═╝╚═╝╩╚═ ╩ ╩ ╚═╝╩╚═╚ ╚═╝╩╚═╩ ╩╩ ╩╝╚╝╚═╝╚═╝ ╩ ╩╚═╝╝╚╝╩ ╩ ╚═╝╩╚═╩╝╚╝╚═╝ +- industryName: Query performance monitoring + documentationUrl: https://fleetdm.com/docs/get-started/faq#will-fleet-slow-down-my-servers-what-about-my-employee-laptops + tier: Free + jamfProHasFeature: no + jamfProtectHasFeature: no + productCategories: [Endpoint operations] + pricingTableCategories: [Devices] + demos: + - description: A top software company needed to understand the performance impact of osquery queries before running them on all of their production Linux servers. + moreInfoUrl: https://docs.google.com/document/d/1WzMc8GJCRU6tTBb6gLsSTzFysqtXO8CtP2sXMPKgYSk/edit?disco=AAAA6xuVxGg + - description: A top software company wanted to detect regressions when adding/changing queries and fail builds if queries were too expensive. + moreInfoUrl: https://docs.google.com/document/d/1WzMc8GJCRU6tTBb6gLsSTzFysqtXO8CtP2sXMPKgYSk/edit?disco=AAAA6xuVxGg + waysToUse: + - description: Monitor performance for automated queries. + - description: Monitor performance for live queries. + moreInfoUrl: https://github.com/fleetdm/fleet/issues/467 # -# ╔╦╗╔═╗╦═╗╔═╗╔═╗╔╦╗╔═╗╔╦╗ ╔╦╗╔═╗╦ ╦╦╔═╗╔═╗ ╔═╗╔═╗╔═╗╔═╗╦╔╗╔╔═╗ -# ║ ╠═╣╠╦╝║ ╦║╣ ║ ║╣ ║║ ║║║╣ ╚╗╔╝║║ ║╣ ╚═╗║ ║ ║╠═╝║║║║║ ╦ -# ╩ ╩ ╩╩╚═╚═╝╚═╝ ╩ ╚═╝═╩╝ ═╩╝╚═╝ ╚╝ ╩╚═╝╚═╝ ╚═╝╚═╝╚═╝╩ ╩╝╚╝╚═╝ -- industryName: Targeted device scoping - description: Organize devices with Teams and Labels. - documentationUrl: https://fleetdm.com/guides/managing-labels-in-fleet +# ╔═╗╦ ╦╔═╗╔╦╗╔═╗╔╦╗ ╔╦╗╔═╗╔╗ ╦ ╔═╗╔═╗ +# ║ ║ ║╚═╗ ║ ║ ║║║║ ║ ╠═╣╠╩╗║ ║╣ ╚═╗ +# ╚═╝╚═╝╚═╝ ╩ ╚═╝╩ ╩ ╩ ╩ ╩╚═╝╩═╝╚═╝╚═╝ +- industryName: Custom tables + friendlyName: Add tables to osquery with extensions + description: Create your own osquery tables, extensions & automatic table configurations or disable existing tables to maintain PII or privacy. + documentationUrl: https://fleetdm.com/docs/configuration/agent-configuration#extensions + moreInfoUrl: https://github.com/trailofbits/osquery-extensions/blob/3df2b72ad78549e25344c79dbc9bce6808c4d92a/README.md#extensions + tier: Premium + jamfProHasFeature: no + jamfProtectHasFeature: no + productCategories: [Endpoint operations] + pricingTableCategories: [Devices] + usualDepartment: IT +# +# ╦═╗╔═╗╔╦╗╔═╗╔╦╗╔═╗ ╔═╗╔═╗╔╦╗╔╦╗╦╔╗╔╔═╗╔═╗ +# ╠╦╝║╣ ║║║║ ║ ║ ║╣ ╚═╗║╣ ║ ║ ║║║║║ ╦╚═╗ +# ╩╚═╚═╝╩ ╩╚═╝ ╩ ╚═╝ ╚═╝╚═╝ ╩ ╩ ╩╝╚╝╚═╝╚═╝ +- industryName: Remote settings + description: Configure agent options remotely, over the air. (Includes osquery config, and osquery startup flags.). + documentationUrl: https://fleetdm.com/docs/configuration/agent-configuration + moreInfoUrl: https://github.com/fleetdm/fleet/issues/13825 + tier: Free + jamfProHasFeature: no + jamfProtectHasFeature: no + productCategories: [Endpoint operations] + pricingTableCategories: [Devices] + usualDepartment: Security +# +# ╔╦╗╔═╗╔═╗╔╦╗╔═╗ +# ║ ║╣ ╠═╣║║║╚═╗ +# ╩ ╚═╝╩ ╩╩ ╩╚═╝ +- industryName: Teams + friendlyName: Manage different endpoints differently + documentationUrl: https://fleetdm.com/docs/using-fleet/segment-hosts + description: Enroll hosts into device groups ("teams") using different enrollment secrets and/or installers. Set baselines and strategies for hosts in different situations, and move hosts between them via API-driven automations or a simple, delegatable user interface with role-based access. tier: Premium jamfProHasFeature: yes jamfProtectHasFeature: yes + productCategories: [Endpoint operations,Device management,Vulnerability management] + pricingTableCategories: [Devices] + waysToUse: + - description: Automate remediation for different applications with different security postures (cloud security engineering) +# +# ╦ ╔═╗╔╗ ╔═╗╦ ╔═╗ +# ║ ╠═╣╠╩╗║╣ ║ ╚═╗ +# ╩═╝╩ ╩╚═╝╚═╝╩═╝╚═╝ +- industryName: Labels + documentationUrl: https://fleetdm.com/docs/rest-api/rest-api#add-label + friendlyName: Filter hosts using SQL + productCategories: [Endpoint operations,Device management,Vulnerability management] + pricingTableCategories: [Devices] usualDepartment: IT - productCategories: [Device management] - pricingTableCategories: [Device management] + tier: Free + jamfProHasFeature: no + jamfProtectHasFeature: no +# +# ╔═╗╔═╗╦ ╦╔═╗╦╔═╗╔═╗ +# ╠═╝║ ║║ ║║ ║║╣ ╚═╗ +# ╩ ╚═╝╩═╝╩╚═╝╩╚═╝╚═╝ +- industryName: Policies + description: A policy is a specific “yes” or “no” query. Use policies to manage security compliance in your organization. + documentationUrl: https://fleetdm.com/docs/using-fleet/fleet-ui + tier: Free + jamfProHasFeature: yes + jamfProtectHasFeature: no + productCategories: [Endpoint operations,Device management,Vulnerability management] + pricingTableCategories: [Devices] + usualDepartment: IT + demos: + - description: A top financial services company needed to set up rolling deployments for changes to osquery agents running on their production servers. + moreInfoUrl: https://docs.google.com/document/d/1UdzZMyBLbs9SUXfSXN2x2wZQCbjZZUetYlNWH6-ryqQ/edit#heading=h.2lh6ehprpvl6 + waysToUse: + - description: Trigger a workflow based on a failing policy + moreInfoUrl: https://fleetdm.com/docs/using-fleet/automations#policy-automations +# +# ╔═╗╦╦ ╔═╗ ╦╔╗╔╔╦╗╔═╗╔═╗╦═╗╦╔╦╗╦ ╦ ╔╦╗╔═╗╔╗╔╦╔╦╗╔═╗╦═╗╦╔╗╔╔═╗ +# ╠╣ ║║ ║╣ ║║║║ ║ ║╣ ║ ╦╠╦╝║ ║ ╚╦╝ ║║║║ ║║║║║ ║ ║ ║╠╦╝║║║║║ ╦ +# ╚ ╩╩═╝╚═╝ ╩╝╚╝ ╩ ╚═╝╚═╝╩╚═╩ ╩ ╩ ╩ ╩╚═╝╝╚╝╩ ╩ ╚═╝╩╚═╩╝╚╝╚═╝ +- industryName: File integrity monitoring (FIM) # Short industry phrase + friendlyName: Detect changes to critical files # Short, Fleet one-liner for the feature, written in the imperative mood. (If easy to do, base this off of the words that an actual customer is saying.) + description: Specify files to monitor for changes or deletions, then log those events to your SIEM or data lake, including key information such as filepath and checksum. # Clear Mr. Rogers description + documentationUrl: https://fleetdm.com/guides/osquery-evented-tables-overview#file-integrity-monitoring-fim # URL of the single-best page within the docs which serves as a "jumping-off point" for this feature. + screenshotSrc: "" # A screenshot of the single, best, simplifying, obvious example + tier: Free # Either "Free" or "Premium" + jamfProHasFeature: no + jamfProtectHasFeature: yes + usualDepartment: Security # or omit if there isn't a particular departmental leaning we've noticed + productCategories: [Endpoint operations] # or omit if this isn't associated with a single product category + pricingTableCategories: [Devices] + dri: mikermcneil #GitHub user name + demos: + - description: A top gaming company needed a way to monitor critical files on production Debian servers. + quote: The FIM features are kind of a top priority. + moreInfoUrl: https://docs.google.com/document/d/1pE9U-1E4YDiy6h4TorszrTOiFAauFiORikSUFUqW7Pk/edit + buzzwords: [File integrity monitoring (FIM),Host-based intrusion detection system (HIDS),Anomaly detection] + waysToUse: + - description: Monitor critical files on production Debian servers + - description: Detect anomalous filesystem activity + moreInfoUrl: https://www.beyondtrust.com/resources/glossary/file-integrity-monitoring + - description: Detect unintended changes + moreInfoUrl: https://www.beyondtrust.com/resources/glossary/file-integrity-monitoring + - description: Verify update status and monitor system health + moreInfoUrl: https://www.beyondtrust.com/resources/glossary/file-integrity-monitoring + - description: Meet compliance mandates + moreInfoUrl: https://www.beyondtrust.com/resources/glossary/file-integrity-monitoring +# +# ╔═╗╦╦ ╔═╗ ╔═╗╔═╗╦═╗╦ ╦╦╔╗╔╔═╗ +# ╠╣ ║║ ║╣ ║ ╠═╣╠╦╝╚╗╔╝║║║║║ ╦ +# ╚ ╩╩═╝╚═╝ ╚═╝╩ ╩╩╚═ ╚╝ ╩╝╚╝╚═╝ +- industryName: File carving + description: Write the results of complex queries to AWS S3. + documentationUrl: https://fleetdm.com/docs/configuration/fleet-server-configuration#s-3-file-carving-backend + tier: Free + jamfProHasFeature: no + jamfProtectHasFeature: no + usualDepartment: Security + productCategories: [Endpoint operations] + pricingTableCategories: [Devices] +# +# ╔╗ ╦╔╗╔╔═╗╦═╗╦ ╦ ╔═╗╦ ╦╔╦╗╦ ╦╔═╗╦═╗╦╔═╗╔═╗╔╦╗╦╔═╗╔╗╔ +# ╠╩╗║║║║╠═╣╠╦╝╚╦╝ ╠═╣║ ║ ║ ╠═╣║ ║╠╦╝║╔═╝╠═╣ ║ ║║ ║║║║ +# ╚═╝╩╝╚╝╩ ╩╩╚═ ╩ ╩ ╩╚═╝ ╩ ╩ ╩╚═╝╩╚═╩╚═╝╩ ╩ ╩ ╩╚═╝╝╚╝ +- industryName: Binary authorization + friendlyName: Restrict what programs can run, and what files running programs can access. + description: + documentationUrl: + tier: Free + jamfProHasFeature: yes + jamfProtectHasFeature: yes + dri: mikermcneil + usualDepartment: Security + productCategories: [Endpoint operations] + pricingTableCategories: [Devices] + comingSoonOn: 2025-06-30 + buzzwords: [Mandatory Access Control (MAC),Privilege confinement,Binary authorization,Santa,Binary allowlisting,Binary whitelisting] + demos: + - description: + moreInfoUrl: + waysToUse: + - description: Confine programs to a limited set of resources. + - description: Report on AppArmor events + moreInfoUrl: https://fleetdm.com/tables/apparmor_events + - description: Confine programs according to a set of rules that specify which files a program can access. + moreInfoUrl: https://wiki.debian.org/AppArmor + - description: Proactively protect the system against both known and unknown vulnerabilities. +# +# ╦═╗╔═╗╔═╗╔═╗╦═╗╔╦╗╦╔╗╔╔═╗ +# ╠╦╝║╣ ╠═╝║ ║╠╦╝ ║ ║║║║║ ╦ +# ╩╚═╚═╝╩ ╚═╝╩╚═ ╩ ╩╝╚╝╚═╝ +- industryName: Reporting + description: Generate reports based on searchable device attributes + documentationUrl: https://fleetdm.com/docs/rest-api/rest-api#get-query-report + productCategories: [Endpoint operations,Device management,Vulnerability management] + pricingTableCategories: [Devices] + usualDepartment: IT + tier: Premium + jamfProHasFeature: yes + jamfProtectHasFeature: yes +# +# ╦╔╗╔╔═╗╦╔╦╗╔═╗╔╗╔╔╦╗ ╦═╗╔═╗╔═╗╔═╗╔═╗╔╗╔╔═╗╔═╗ +# ║║║║║ ║ ║║║╣ ║║║ ║ ╠╦╝║╣ ╚═╗╠═╝║ ║║║║╚═╗║╣ +# ╩╝╚╝╚═╝╩═╩╝╚═╝╝╚╝ ╩ ╩╚═╚═╝╚═╝╩ ╚═╝╝╚╝╚═╝╚═╝ +- industryName: Incident response + friendlyName: Interrogate hosts in real time + description: Live query, triage, figuring out scope of impact, remediate using scripts or MDM commands (e.g. remote wipe), and quarantine or reimage using other systems and APIs (e.g. remove from network, decommission container) + documentationUrl: https://fleetdm.com/securing/how-osquery-can-help-cyber-responders#simplifying-endpoint-visibility-with-osquery-and-fleet + tier: Free + jamfProHasFeature: yes + jamfProtectHasFeature: yes + dri: mikermcneil + usualDepartment: Security + productCategories: [Endpoint operations] + pricingTableCategories: [Devices] + buzzwords: [] + demos: + - description: + moreInfoUrl: + waysToUse: + - description: +# +# ╔═╗╦ ╦╔═╗╔╦╗╔═╗╔╦╗ ╦ ╔═╗╔═╗╔═╗╦╔╗╔╔═╗ +# ║ ║ ║╚═╗ ║ ║ ║║║║ ║ ║ ║║ ╦║ ╦║║║║║ ╦ +# ╚═╝╚═╝╚═╝ ╩ ╚═╝╩ ╩ ╩═╝╚═╝╚═╝╚═╝╩╝╚╝╚═╝ +- industryName: Custom logging + description: Flexible, configurable logging destinations (AWS Kinesis, Lambda, GCP, Kafka). + documentationUrl: https://fleetdm.com/docs/using-fleet/log-destinations#log-destinations + tier: Free + jamfProHasFeature: yes + jamfProtectHasFeature: yes + usualDepartment: Security + productCategories: [Endpoint operations] + pricingTableCategories: [Devices] + buzzwords: [Real-time export,Ship logs] +# # # ██╗ ██╗██╗ ██╗██╗ ███╗ ██╗███████╗██████╗ █████╗ ██████╗ ██╗██╗ ██╗████████╗██╗ ██╗ # ██║ ██║██║ ██║██║ ████╗ ██║██╔════╝██╔══██╗██╔══██╗██╔══██╗██║██║ ██║╚══██╔══╝╚██╗ ██╔╝ @@ -358,7 +943,7 @@ dri: mikermcneil usualDepartment: Security productCategories: [Endpoint operations,Vulnerability management] - pricingTableCategories: [Vulnerability management] + pricingTableCategories: [Devices] buzzwords: [YARA scanning,Cyber Threat Intelligence (CTI),Indicators of compromise (IOCs),Antivirus (AV),Endpoint protection platform (EPP),Endpoint detection and response (EDR),Malware detection,Signature-based malware detection,Malware scanning,Malware analysis,Anomaly detection] demos: - description: A top media company used Fleet policies with YARA rules to continuously scan host filesystems for malware signatures provided by internal and external threat intelligence teams. @@ -388,7 +973,7 @@ friendlyName: Detect vulnerable software documentationUrl: https://fleetdm.com/vulnerability-management productCategories: [Vulnerability management] - pricingTableCategories: [Vulnerability management] + pricingTableCategories: [Devices] usualDepartment: Security tier: Free jamfProHasFeature: no @@ -408,36 +993,18 @@ - description: One of the world's largest, top transportation companies uses Fleet's API to email relevant, actually-installed vulnerabilities to responsible teams so they can fix them. moreInfoUrl: https://docs.google.com/document/d/1oeCmT077o_5nxzLhnxs7kcg_4Qn1Pn1F5zx10nQOAp8/edit # -# ╦ ╦╦ ╦╦ ╔╗╔╔═╗╦═╗╔═╗╔╗ ╦╦ ╦╔╦╗╦ ╦ ╔╦╗╔═╗╔═╗╦ ╦╔╗ ╔═╗╔═╗╦═╗╔╦╗ -# ╚╗╔╝║ ║║ ║║║║╣ ╠╦╝╠═╣╠╩╗║║ ║ ║ ╚╦╝ ║║╠═╣╚═╗╠═╣╠╩╗║ ║╠═╣╠╦╝ ║║ -# ╚╝ ╚═╝╩═╝╝╚╝╚═╝╩╚═╩ ╩╚═╝╩╩═╝╩ ╩ ╩ ═╩╝╩ ╩╚═╝╩ ╩╚═╝╚═╝╩ ╩╩╚══╩╝ -- industryName: Vulnerability dashboard - friendlyName: Vulnerability dashboard - documentationUrl: https://fleetdm.com/vulnerability-management - productCategories: [Vulnerability management] - pricingTableCategories: [Vulnerability management] - usualDepartment: Security - tier: Premium - jamfProHasFeature: no - jamfProtectHasFeature: yes - demos: - - description: See a list of all vulnerabilities across your hosts. - moreInfoUrl: https://github.com/fleetdm/fleet/issues/15919 - - description: AI generated CVSS v4 context. Coming soon (2024-12-31). - waysToUse: - - description: Easily communicate to executives regarding the progress of patching vulnerable software. Only show vulnerabilities that you care about. -# # ╦ ╦╦ ╦╦ ╔╗╔╔═╗╦═╗╔═╗╔╗ ╦╦ ╦╔╦╗╦ ╦ ╔═╗╔═╗╔═╗╦═╗╔═╗╔═╗ ╔═╗╔═╗╔═╗╔═╗ ╔═╗╔╗╔╔╦╗ ╔═╗╦ ╦╔═╗╔═╗ # ╚╗╔╝║ ║║ ║║║║╣ ╠╦╝╠═╣╠╩╗║║ ║ ║ ╚╦╝ ╚═╗║ ║ ║╠╦╝║╣ ╚═╗ ─── ║╣ ╠═╝╚═╗╚═╗ ╠═╣║║║ ║║ ║ ╚╗╔╝╚═╗╚═╗ # ╚╝ ╚═╝╩═╝╝╚╝╚═╝╩╚═╩ ╩╚═╝╩╩═╝╩ ╩ ╩ ╚═╝╚═╝╚═╝╩╚═╚═╝╚═╝ ╚═╝╩ ╚═╝╚═╝ ╩ ╩╝╚╝═╩╝ ╚═╝ ╚╝ ╚═╝╚═╝ -- industryName: Vulnerability scores (EPSS and CVSS) +- industryName: Vulnerability scores + friendlyName: EPSS and CVSS documentationUrl: https://fleetdm.com/vulnerability-management tier: Premium jamfProHasFeature: no jamfProtectHasFeature: yes usualDepartment: Security productCategories: [Vulnerability management] - pricingTableCategories: [Vulnerability management] + pricingTableCategories: [Devices] buzzwords: [Risk scores,Cyber risk,Risk reduction,Security operations effectiveness,Peer benchmarking,Security program effectiveness,Risk-based exposure scoring,Threat context,Cyber exposure,Exposure quantification and benchmarking,Optimize security investments,Vulnerability assessment] demos: - description: Fleet enables a more modern, threat-first prioritization approach to vulnerability management. @@ -452,14 +1019,15 @@ # ╔═╗╦╔═╗╔═╗ ╦╔═╔═╗╦ ╦╔═╗ # ║ ║╚═╗╠═╣ ╠╩╗║╣ ╚╗╔╝╚═╗ # ╚═╝╩╚═╝╩ ╩ ╩ ╩╚═╝ ╚╝ ╚═╝ -- industryName: CISA KEVs (known exploited vulnerabilities) +- industryName: CISA KEVs + description: Known exploited vulnerabilities documentationUrl: https://fleetdm.com/vulnerability-management tier: Premium jamfProHasFeature: no jamfProtectHasFeature: yes usualDepartment: Security productCategories: [Vulnerability management] - pricingTableCategories: [Vulnerability management] + pricingTableCategories: [Devices] demos: - description: moreInfoUrl: @@ -468,721 +1036,157 @@ - description: Use CISA KEVs for vulnerability management - moreInfoUrl: https://www.youtube.com/watch?v=Z3mw2oxssYk # -# ╔═╗╔═╗╔═╗╔═╗╔╦╗ ╔╦╗╦╔═╗╔═╗╔═╗╦ ╦╔═╗╦═╗╦ ╦ -# ╠═╣╚═╗╚═╗║╣ ║ ║║║╚═╗║ ║ ║╚╗╔╝║╣ ╠╦╝╚╦╝ -# ╩ ╩╚═╝╚═╝╚═╝ ╩ ═╩╝╩╚═╝╚═╝╚═╝ ╚╝ ╚═╝╩╚═ ╩ +# ╔═╗╔═╗╔═╗╔═╗╔╦╗ ╔╦╗╦╔═╗╔═╗╔═╗╦ ╦╔═╗╦═╗╦ ╦ +# ╠═╣╚═╗╚═╗║╣ ║ ║║║╚═╗║ ║ ║╚╗╔╝║╣ ╠╦╝╚╦╝ +# ╩ ╩╚═╝╚═╝╚═╝ ╩ ═╩╝╩╚═╝╚═╝╚═╝ ╚╝ ╚═╝╩╚═ ╩ - industryName: Asset discovery documentationUrl: tier: Premium comingSoonOn: 2025-06-30 usualDepartment: Security productCategories: [Vulnerability management] - pricingTableCategories: [Vulnerability management] + pricingTableCategories: [Devices] +# # -# ███████╗███╗ ██╗██████╗ ██████╗ ██████╗ ██╗███╗ ██╗████████╗ -# ██╔════╝████╗ ██║██╔══██╗██╔══██╗██╔═══██╗██║████╗ ██║╚══██╔══╝ -# █████╗ ██╔██╗ ██║██║ ██║██████╔╝██║ ██║██║██╔██╗ ██║ ██║ -# ██╔══╝ ██║╚██╗██║██║ ██║██╔═══╝ ██║ ██║██║██║╚██╗██║ ██║ -# ███████╗██║ ╚████║██████╔╝██║ ╚██████╔╝██║██║ ╚████║ ██║ -# ╚══════╝╚═╝ ╚═══╝╚═════╝ ╚═╝ ╚═════╝ ╚═╝╚═╝ ╚═══╝ ╚═╝ -# -# ██████╗ ██████╗ ███████╗██████╗ █████╗ ████████╗██╗ ██████╗ ███╗ ██╗███████╗ -# ██╔═══██╗██╔══██╗██╔════╝██╔══██╗██╔══██╗╚══██╔══╝██║██╔═══██╗████╗ ██║██╔════╝ -# ██║ ██║██████╔╝█████╗ ██████╔╝███████║ ██║ ██║██║ ██║██╔██╗ ██║███████╗ -# ██║ ██║██╔═══╝ ██╔══╝ ██╔══██╗██╔══██║ ██║ ██║██║ ██║██║╚██╗██║╚════██║ -# ╚██████╔╝██║ ███████╗██║ ██║██║ ██║ ██║ ██║╚██████╔╝██║ ╚████║███████║ -# ╚═════╝ ╚═╝ ╚══════╝╚═╝ ╚═╝╚═╝ ╚═╝ ╚═╝ ╚═╝ ╚═════╝ ╚═╝ ╚═══╝╚══════╝ -# # -# ╔╦╗╔═╗╦ ╦╦╔═╗╔═╗ ╦ ╦╔═╗╔═╗╦ ╔╦╗╦ ╦ -# ║║║╣ ╚╗╔╝║║ ║╣ ╠═╣║╣ ╠═╣║ ║ ╠═╣ -# ═╩╝╚═╝ ╚╝ ╩╚═╝╚═╝ ╩ ╩╚═╝╩ ╩╩═╝╩ ╩ ╩ -- industryName: Device health - friendlyName: Automate device health - description: Automatically report system health issues using webhooks or integrations, to notify or quarantine outdated or misconfigured systems that are at higher risk of vulnerabilities or theft. +# ██╗███╗ ██╗████████╗███████╗ ██████╗ ██████╗ █████╗ ████████╗██╗ ██████╗ ███╗ ██╗███████╗ +# ██║████╗ ██║╚══██╔══╝██╔════╝██╔════╝ ██╔══██╗██╔══██╗╚══██╔══╝██║██╔═══██╗████╗ ██║██╔════╝ +# ██║██╔██╗ ██║ ██║ █████╗ ██║ ███╗██████╔╝███████║ ██║ ██║██║ ██║██╔██╗ ██║███████╗ +# ██║██║╚██╗██║ ██║ ██╔══╝ ██║ ██║██╔══██╗██╔══██║ ██║ ██║██║ ██║██║╚██╗██║╚════██║ +# ██║██║ ╚████║ ██║ ███████╗╚██████╔╝██║ ██║██║ ██║ ██║ ██║╚██████╔╝██║ ╚████║███████║ +# ╚═╝╚═╝ ╚═══╝ ╚═╝ ╚══════╝ ╚═════╝ ╚═╝ ╚═╝╚═╝ ╚═╝ ╚═╝ ╚═╝ ╚═════╝ ╚═╝ ╚═══╝╚══════╝ +# +# +# ╦═╗╔═╗╔═╗╔╦╗ ╔═╗╔═╗╦ +# ╠╦╝║╣ ╚═╗ ║ ╠═╣╠═╝║ +# ╩╚═╚═╝╚═╝ ╩ ╩ ╩╩ ╩ +- industryName: REST API + friendlyName: Automate any feature + description: + productCategories: [Endpoint operations,Device management,Vulnerability management] + pricingTableCategories: [Integrations] + usualDepartment: IT + documentationUrl: https://fleetdm.com/docs/rest-api/rest-api + screenshotSrc: + tier: Free + jamfProHasFeature: yes + jamfProtectHasFeature: yes + dri: rachaelshaw +# +# ╦ ╦╔═╗╔╗ ╦ ╦╔═╗╔═╗╦╔═╔═╗ +# ║║║║╣ ╠╩╗╠═╣║ ║║ ║╠╩╗╚═╗ +# ╚╩╝╚═╝╚═╝╩ ╩╚═╝╚═╝╩ ╩╚═╝ +- industryName: Webhooks + friendlyName: Automations documentationUrl: https://fleetdm.com/docs/using-fleet/automations#automations - screenshotSrc: - tier: Free - jamfProHasFeature: no - jamfProtectHasFeature: yes - productCategories: [Device management,Endpoint operations] - pricingTableCategories: [Endpoint operations] - usualDepartment: IT - dri: mikermcneil - demos: - - description: A large tech company used the Fleet API to block access to corporate apps for outdated operating system versions with certain "celebrity" vulnerabilities. - quote: - moreInfoUrl: https://play.goconsensus.com/s4e490bb9 - buzzwords: [Device trust,Zero trust,Layer 7 device trust,Beyondcorp,Device attestation,Conditional access] - waysToUse: - - description: Automatically manage the behavior of endpoints that are at higher risk of vulnerabilities or data loss due to their configuration or patch level. - - description: Block access to corporate apps for users whose devices with unexpected settings, like disabled screen lock, passwords that are too short, unencrypted hard disks, and more - - description: Quickly implement conditional access based on device health using osquery and a simple device health REST API. - moreInfoUrl: https://github.com/fleetdm/fleet/issues/14920 - - description: Control and restore access to applications by automatically restricting access when devices do not meet particular security requirements. - moreInfoUrl: https://duo.com/docs/device-health - - description: Control which laptop and desktop devices can access corporate apps and websites based on what vulnerabilities it might be exposed to based on how the device is configured, whether it's up to date, its MDM enrollment status, and anything else you can build in a SQL query of Fleet's 300 data tables representing information about enrolled host systems. Coming soon (2024-09-30). - moreInfoUrl: https://github.com/fleetdm/fleet/issues/16236 - - description: Implement multivariate device trust - moreInfoUrl: https://youtu.be/5sFOdpMLXQg?feature=shared&t=1445 - - description: Implement your own version of Google's zero trust model (BeyondCorp) - moreInfoUrl: https://cloud.google.com/beyondcorp - - description: Get endpoint data into ServiceNow and make your asset management teams happy - moreInfoUrl: https://www.youtube.com/watch?v=aVbU6_9JoM0 -# -# ╔═╗╦ ╦╔╦╗╔═╗╔╦╗╔═╗╔╦╗╦╔═╗ ╔═╗╔═╗╔═╗╔╦╗╦ ╦╦═╗╔═╗ ╔═╗╔═╗╔═╗╔═╗╔═╗╔═╗╔╦╗╔═╗╔╗╔╔╦╗ -# ╠═╣║ ║ ║ ║ ║║║║╠═╣ ║ ║║ ╠═╝║ ║╚═╗ ║ ║ ║╠╦╝║╣ ╠═╣╚═╗╚═╗║╣ ╚═╗╚═╗║║║║╣ ║║║ ║ -# ╩ ╩╚═╝ ╩ ╚═╝╩ ╩╩ ╩ ╩ ╩╚═╝ ╩ ╚═╝╚═╝ ╩ ╚═╝╩╚═╚═╝ ╩ ╩╚═╝╚═╝╚═╝╚═╝╚═╝╩ ╩╚═╝╝╚╝ ╩ -- industryName: Automatic posture assessment - friendlyName: Verify any security or compliance goal - description: Simplify security audits, build definitive reports, and discover + verify ongoing compliance for every endpoint, from workstations to data centers. - documentationUrl: https://fleetdm.com/docs/using-fleet/cis-benchmarks#cis-benchmarks - screenshotSrc: - usualDepartment: Security - tier: Free - jamfProHasFeature: no - jamfProtectHasFeature: yes - productCategories: [Endpoint operations] - pricingTableCategories: [Endpoint operations] - dri: mikermcneil - demos: - - description: A large tech company used Fleet's CIS Benchmark policies to automatically assess posuture of 80,000 endpoints. - quote: - moreInfoUrl: - buzzwords: [Attack surface management (ASM),Endpoint hardening,Security posture,Cyber hygiene,Anomaly detection,Configuration management,Attack Surface Monitoring,Policy assessment] - waysToUse: - - description: Monitor devices that don't meet your organization's custom security policies - - description: Quickly report your posture and vulnerabilities to auditors, showing remediation status and timing. - - description: Keep your devices compliant with customizable baselines, or use common benchmarks like CIS. - - description: Discover security misconfigurations that increase attack surface. - - description: Detect suspcious services listening on open ports that should not be connected to the internet, such as Remote Desktop Protocol (RDP). - moreInfoUrl: https://paraflare.com/articles/vulnerability-management-via-osquery/#:~:text=WHERE%20statename%20%3D%20%E2%80%9CEnabled%E2%80%9D-,OPEN%20SOCKETS,-Lastly%2C%20an%20examination - - description: Discover potentially unwanted programs that increase attack surface. - moreInfoUrl: https://paraflare.com/articles/vulnerability-management-via-osquery/ - - description: Detect self-signed certifcates - - description: Detect legacy protocols with safer versions - moreInfoUrl: https://paraflare.com/articles/vulnerability-management-via-osquery/#:~:text=WHERE%20self_signed%20%3D%201%3B-,LEGACY%20PROTOCOLS,-This%20section%20will - - description: Detect exposed secrets on the command line - moreInfoUrl: https://paraflare.com/articles/vulnerability-management-via-osquery/#:~:text=WDigest%20is%20disabled.-,EXPOSED%20SECRETS,-Often%2C%20to%20create - - description: Detect and surface issues with devices - - description: Share device health reports - - description: Align endpoints with your security policies - moreInfoUrl: https://www.axonius.com/use-cases/cmdb-reconciliation - - description: Maximize security control coverage - - description: Uncover gaps in security policies, configurations, and hygiene - moreInfoUrl: https://www.axonius.com/use-cases/coverage-gap-discovery - - description: Automatically apply security policies to protect endpoints against attack. - - description: Surface security issues in all your deployed endpoints even data centers and factories. - - description: Continually validate controls and policies -# -# ╦ ╦╦ ╦╔╦╗╔═╗╔╗╔ ╔═╗╔╗╔╔╦╗╔═╗╔═╗╦╔╗╔╔╦╗ ╔╦╗╔═╗╔═╗╔═╗╦╔╗╔╔═╗ -# ╠═╣║ ║║║║╠═╣║║║───║╣ ║║║ ║║╠═╝║ ║║║║║ ║ ║║║╠═╣╠═╝╠═╝║║║║║ ╦ -# ╩ ╩╚═╝╩ ╩╩ ╩╝╚╝ ╚═╝╝╚╝═╩╝╩ ╚═╝╩╝╚╝ ╩ ╩ ╩╩ ╩╩ ╩ ╩╝╚╝╚═╝ -- industryName: Human-endpoint mapping - friendlyName: See who logs in on every computer - description: Identify who logs in to any system, including login history and current sessions. Look up any host by the email address of the person using it. - documentationUrl: https://fleetdm.com/docs/rest-api/rest-api#get-hosts-google-chrome-profiles - screenshotSrc: - tier: Free - jamfProHasFeature: yes - jamfProtectHasFeature: yes - productCategories: [Endpoint operations] - pricingTableCategories: [Endpoint operations] - usualDepartment: IT - buzzwords: [Device users,human-to-device mapping] - dri: mikermcneil - demos: - - description: Security engineers at a top gaming company wanted to get demographics off their macOS, Windows, and Linux machines about who the user is and who's logged in. - moreInfoUrl: https://docs.google.com/document/d/1qFYtMoKh3zyERLhbErJOEOo2me6Bc7KOOkjKn482Sqc/edit - - description: Data engineers at a top biotech corporation needed to know who is logged into their devices. - quote: So we don't know exactly what's going on after we deploy the device, we know that they are compliant with the security because we are running these stuff, but we don't know certainly who is running, who is logging in the device? - moreInfoUrl: https://docs.google.com/document/d/17MNI5ykzlFjdVmQ8SPMrT1oR_hY_vkYAJx31F7l7Pv8/edit#heading=h.7en766pueek4 - waysToUse: - - description: Look up computer by ActiveDirectory account - - description: Find device by Google Chrome user - - description: Identify who logs in to any system, including login history and current sessions. - - description: Look up any host by the email address of the person using it. - - description: Check user login history - moreInfoUrl: https://www.lepide.com/how-to/audit-who-logged-into-a-computer-and-when.html#:~:text=To%20find%20out%20the%20details,logs%20in%20%E2%80%9CWindows%20Logs%E2%80%9D. - - description: See currently logged in users - moreInfoUrl: https://www.top-password.com/blog/see-currently-logged-in-users-in-windows/ - - description: Get demographics off of our machines about who the user is and who's logged in - moreInfoUrl: https://docs.google.com/document/d/1qFYtMoKh3zyERLhbErJOEOo2me6Bc7KOOkjKn482Sqc/edit - - description: See what servers someone is logged-in on - moreInfoUrl: https://community.spiceworks.com/topic/138171-is-there-a-way-to-see-what-servers-someone-is-logged-in-on -# -# ╦╔╗╔╔╦╗╦═╗╦ ╦╔═╗╔╦╗╦╔═╗╔╗╔ ╔╦╗╔═╗╔╦╗╔═╗╔═╗╔╦╗╦╔═╗╔╗╔ -# ║║║║ ║ ╠╦╝║ ║╚═╗ ║ ║║ ║║║║ ║║║╣ ║ ║╣ ║ ║ ║║ ║║║║ -# ╩╝╚╝ ╩ ╩╚═╚═╝╚═╝ ╩ ╩╚═╝╝╚╝ ═╩╝╚═╝ ╩ ╚═╝╚═╝ ╩ ╩╚═╝╝╚╝ -- industryName: Intrusion detection - friendlyName: Build custom query and policy automations to detect suspicious behavior - description: Send webhooks and ship logs to detect intrusions and issues with devices. - documentationUrl: https://fleetdm.com/docs/using-fleet/log-destinations - tier: Free - jamfProHasFeature: no - jamfProtectHasFeature: yes - usualDepartment: Security - productCategories: [Endpoint operations] - pricingTableCategories: [Endpoint operations] - buzzwords: [Host-based intrusion detection system (HIDS,Indicators of Compromise (IOCs),Feeder for SIEM] - demos: - - description: A top media company wanted to share more security data with other departments without slowing down hosts. - waysToUse: - - description: Send webhooks to generate alerts when an IOC is detected on one or more devices. - - description: Ship logs to Splunk, Snowflake, and other SIEMs to build a host-based intrusion detection system (HIDS). - - description: Synchronize live state of endpoints to a data lake or SIEM in a consistent shape. - - description: Export the data to other systems - moreInfoUrl: https://docs.google.com/document/d/1pE9U-1E4YDiy6h4TorszrTOiFAauFiORikSUFUqW7Pk/edit - - description: Export data to a third-party SIEM tool - moreInfoUrl: https://www.websense.com/content/support/library/web/hosted/admin_guide/siem_integration_explain.aspx - - description: Gather data and log events from endpoints - moreInfoUrl: https://techbeacon.com/security/how-osquery-can-lift-your-security-teams-game#:~:text=%22If%20security%20teams%20didn%27t%20have%20osquery%2C%20they%20would%20have%20to%20find%20a%20way%20to%20manually%20go%20into%20each%20endpoint%20and%20gather%20data%2C%20or%20buy%20a%20third%2Dparty%20tool%20to%20do%20that%20for%20them -# -# ╔═╗╦ ╔═╗╔═╗╔╗╔╔═╗╦═╗╔═╗╔╦╗╔═╗╔╦╗ ╔╦╗╔═╗╔═╗╔═╗╦═╗╦╔═╗╔╦╗╦╔═╗╔╗╔╔═╗ -# ╠═╣║───║ ╦║╣ ║║║║╣ ╠╦╝╠═╣ ║ ║╣ ║║ ║║║╣ ╚═╗║ ╠╦╝║╠═╝ ║ ║║ ║║║║╚═╗ -# ╩ ╩╩ ╚═╝╚═╝╝╚╝╚═╝╩╚═╩ ╩ ╩ ╚═╝═╩╝ ═╩╝╚═╝╚═╝╚═╝╩╚═╩╩ ╩ ╩╚═╝╝╚╝╚═╝ -- industryName: AI-generated descriptions (optional) - description: Optionally use AI to explain why your security policies matter. - documentationUrl: https://github.com/fleetdm/fleet/issues/18187 - tier: Free - jamfProHasFeature: no - jamfProtectHasFeature: no - productCategories: [Endpoint operations] - pricingTableCategories: [Endpoint operations] -# -# ╔═╗╦╔╦╗ -# ╠╣ ║║║║ -# ╚ ╩╩ ╩ -- industryName: File integrity monitoring (FIM) # Short industry phrase - friendlyName: Detect changes to critical files # Short, Fleet one-liner for the feature, written in the imperative mood. (If easy to do, base this off of the words that an actual customer is saying.) - description: Specify files to monitor for changes or deletions, then log those events to your SIEM or data lake, including key information such as filepath and checksum. # Clear Mr. Rogers description - documentationUrl: https://fleetdm.com/guides/osquery-evented-tables-overview#file-integrity-monitoring-fim # URL of the single-best page within the docs which serves as a "jumping-off point" for this feature. - screenshotSrc: "" # A screenshot of the single, best, simplifying, obvious example - tier: Free # Either "Free" or "Premium" - jamfProHasFeature: no - jamfProtectHasFeature: yes - usualDepartment: Security # or omit if there isn't a particular departmental leaning we've noticed - productCategories: [Endpoint operations] # or omit if this isn't associated with a single product category - pricingTableCategories: [Endpoint operations] - dri: mikermcneil #GitHub user name - demos: - - description: A top gaming company needed a way to monitor critical files on production Debian servers. - quote: The FIM features are kind of a top priority. - moreInfoUrl: https://docs.google.com/document/d/1pE9U-1E4YDiy6h4TorszrTOiFAauFiORikSUFUqW7Pk/edit - buzzwords: [File integrity monitoring (FIM),Host-based intrusion detection system (HIDS),Anomaly detection] - waysToUse: - - description: Monitor critical files on production Debian servers - - description: Detect anomalous filesystem activity - moreInfoUrl: https://www.beyondtrust.com/resources/glossary/file-integrity-monitoring - - description: Detect unintended changes - moreInfoUrl: https://www.beyondtrust.com/resources/glossary/file-integrity-monitoring - - description: Verify update status and monitor system health - moreInfoUrl: https://www.beyondtrust.com/resources/glossary/file-integrity-monitoring - - description: Meet compliance mandates - moreInfoUrl: https://www.beyondtrust.com/resources/glossary/file-integrity-monitoring -# -# ╔╦╗╔═╗╦╔╗╔╔╦╗╔═╗╔╗╔╔═╗╔╗╔╔═╗╔═╗ ╦ ╦╦╔╗╔╔╦╗╔═╗╦ ╦╔═╗ -# ║║║╠═╣║║║║ ║ ║╣ ║║║╠═╣║║║║ ║╣ ║║║║║║║ ║║║ ║║║║╚═╗ -# ╩ ╩╩ ╩╩╝╚╝ ╩ ╚═╝╝╚╝╩ ╩╝╚╝╚═╝╚═╝ ╚╩╝╩╝╚╝═╩╝╚═╝╚╩╝╚═╝ -- industryName: Maintenance windows - friendlyName: Fleet in your calendar - description: Create a calendar event to auto-remediate failing policies when your end users are free. - documentationUrl: https://github.com/fleetdm/fleet/issues/17230 - tier: Premium - jamfProHasFeature: no - jamfProtectHasFeature: no - isExperimental: yes - productCategories: [Endpoint operations] - pricingTableCategories: [Endpoint operations] -# -# ╔╦╗╔═╗╔╦╗╔═╗╔═╗╔╦╗╦╔═╗╔╗╔ ╔═╗╔╗╔╔═╗╦╔╗╔╔═╗╔═╗╦═╗╦╔╗╔╔═╗ -# ║║║╣ ║ ║╣ ║ ║ ║║ ║║║║ ║╣ ║║║║ ╦║║║║║╣ ║╣ ╠╦╝║║║║║ ╦ -# ═╩╝╚═╝ ╩ ╚═╝╚═╝ ╩ ╩╚═╝╝╚╝ ╚═╝╝╚╝╚═╝╩╝╚╝╚═╝╚═╝╩╚═╩╝╚╝╚═╝ -- industryName: Detection engineering - friendlyName: # Ship logs to your data lake and comopare with known bad binary hashes or capture behavioral data and build custom detections (e.g. using a framework like MITRE) - description: - documentationUrl: https://fleetdm.com/docs/using-fleet/log-destinations - tier: Free - jamfProHasFeature: no - jamfProtectHasFeature: yes - dri: mikermcneil - usualDepartment: Security - productCategories: [Endpoint operations] - pricingTableCategories: [Endpoint operations] - buzzwords: [Security analytics,Behavioral analytics,MITRE ATT&CK,Tactics techniques and procedures (TTPs),Security information and event management (SIEM)] - demos: - - description: - moreInfoUrl: - waysToUse: - - description: -# -# ╔╦╗╦ ╦╦═╗╔═╗╔═╗╔╦╗ ╦ ╦╦ ╦╔╗╔╔╦╗╦╔╗╔╔═╗ -# ║ ╠═╣╠╦╝║╣ ╠═╣ ║ ╠═╣║ ║║║║ ║ ║║║║║ ╦ -# ╩ ╩ ╩╩╚═╚═╝╩ ╩ ╩ ╩ ╩╚═╝╝╚╝ ╩ ╩╝╚╝╚═╝ -- industryName: Threat hunting - friendlyName: # TODO: live query - description: - documentationUrl: https://fleetdm.com/queries - tier: Free - jamfProHasFeature: no - jamfProtectHasFeature: yes - dri: mikermcneil - usualDepartment: Security - productCategories: [Endpoint operations] - pricingTableCategories: [Endpoint operations] - buzzwords: [] - demos: - - description: - moreInfoUrl: - waysToUse: - - description: -# -# ╦╔╗╔╔═╗╦╔╦╗╔═╗╔╗╔╔╦╗ ╦═╗╔═╗╔═╗╔═╗╔═╗╔╗╔╔═╗╔═╗ -# ║║║║║ ║ ║║║╣ ║║║ ║ ╠╦╝║╣ ╚═╗╠═╝║ ║║║║╚═╗║╣ -# ╩╝╚╝╚═╝╩═╩╝╚═╝╝╚╝ ╩ ╩╚═╚═╝╚═╝╩ ╚═╝╝╚╝╚═╝╚═╝ -- industryName: Incident response - friendlyName: Interrogate hosts in real time - description: Live query, triage, figuring out scope of impact, remediate using scripts or MDM commands (e.g. remote wipe), and quarantine or reimage using other systems and APIs (e.g. remove from network, decommission container) - documentationUrl: https://fleetdm.com/securing/how-osquery-can-help-cyber-responders#simplifying-endpoint-visibility-with-osquery-and-fleet - tier: Free - jamfProHasFeature: yes - jamfProtectHasFeature: yes - dri: mikermcneil - usualDepartment: Security - productCategories: [Endpoint operations] - pricingTableCategories: [Endpoint operations] - buzzwords: [] - demos: - - description: - moreInfoUrl: - waysToUse: - - description: -# -# ╔╗ ╦╔╗╔╔═╗╦═╗╦ ╦ ╔═╗╦ ╦╔╦╗╦ ╦╔═╗╦═╗╦╔═╗╔═╗╔╦╗╦╔═╗╔╗╔ -# ╠╩╗║║║║╠═╣╠╦╝╚╦╝ ╠═╣║ ║ ║ ╠═╣║ ║╠╦╝║╔═╝╠═╣ ║ ║║ ║║║║ -# ╚═╝╩╝╚╝╩ ╩╩╚═ ╩ ╩ ╩╚═╝ ╩ ╩ ╩╚═╝╩╚═╩╚═╝╩ ╩ ╩ ╩╚═╝╝╚╝ -- industryName: Binary authorization - friendlyName: Restrict what programs can run, and what files running programs can access. - description: - documentationUrl: - tier: Free - jamfProHasFeature: yes - jamfProtectHasFeature: yes - dri: mikermcneil - usualDepartment: Security - productCategories: [Endpoint operations] - pricingTableCategories: [Endpoint operations] - comingSoonOn: 2025-06-30 - buzzwords: [Mandatory Access Control (MAC),Privilege confinement,Binary authorization,Santa,Binary allowlisting,Binary whitelisting] - demos: - - description: - moreInfoUrl: - waysToUse: - - description: Confine programs to a limited set of resources. - - description: Report on AppArmor events - moreInfoUrl: https://fleetdm.com/tables/apparmor_events - - description: Confine programs according to a set of rules that specify which files a program can access. - moreInfoUrl: https://wiki.debian.org/AppArmor - - description: Proactively protect the system against both known and unknown vulnerabilities. -# -# ╔═╗╔═╗╔═╗╔╗╔╔╦╗ ╔═╗╦ ╦╔╦╗╔═╗ ╦ ╦╔═╗╔╦╗╔═╗╔╦╗╔═╗ -# ╠═╣║ ╦║╣ ║║║ ║ ╠═╣║ ║ ║ ║ ║───║ ║╠═╝ ║║╠═╣ ║ ║╣ -# ╩ ╩╚═╝╚═╝╝╚╝ ╩ ╩ ╩╚═╝ ╩ ╚═╝ ╚═╝╩ ═╩╝╩ ╩ ╩ ╚═╝ -- industryName: Agent auto-update (optional) - friendlyName: Keep agents and extensions up to date - description: Optionally keep agents and extensions up to date automatically using Fleet's free update registry, powered by The Update Framework (TUF). - documentationUrl: https://fleetdm.com/docs/using-fleet/enroll-hosts - tier: Free - jamfProHasFeature: yes - jamfProtectHasFeature: no - productCategories: [Endpoint operations] - pricingTableCategories: [Endpoint operations] - usualDepartment: IT -# -# ╦╔╗╔╔═╗╔╦╗╔═╗╦ ╦ ╔═╗╦═╗╔═╗ -# ║║║║╚═╗ ║ ╠═╣║ ║ ║╣ ╠╦╝╚═╗ -# ╩╝╚╝╚═╝ ╩ ╩ ╩╩═╝╩═╝╚═╝╩╚═╚═╝ -- industryName: Installers (self-service) - tier: Free - jamfProHasFeature: yes - jamfProtectHasFeature: no - productCategories: [Endpoint operations] - pricingTableCategories: [Endpoint operations] - usualDepartment: IT - documentationUrl: https://fleetdm.com/docs/using-fleet/enroll-hosts - waysToUse: - - description: Build scripts for Ansible deployments - moreInfoUrl: https://www.youtube.com/watch?v=qflUfLQCnwY&list=PL6-FgoWOoK2YUR4ADGsxTSL3onb-GzCnM&index=4 - - description: Deploy osquery to macOS via Jamf - moreInfoUrl: https://www.youtube.com/watch?v=qflUfLQCnwY&list=PL6-FgoWOoK2YUR4ADGsxTSL3onb-GzCnM&index=4 - - description: Package osquery for Linux servers via Workspace One and Windows servers via group policies - moreInfoUrl: https://www.youtube.com/watch?v=qflUfLQCnwY&list=PL6-FgoWOoK2YUR4ADGsxTSL3onb-GzCnM&index=4 -# -# ╔╗ ╔═╗╔╦╗╔═╗╦ ╦ ╦╔╗╔╔═╗╔╦╗╔═╗╦ ╦ ╔═╗╔╦╗╦╔═╗╔╗╔ -# ╠╩╗╠═╣ ║ ║ ╠═╣ ║║║║╚═╗ ║ ╠═╣║ ║ ╠═╣ ║ ║║ ║║║║ -# ╚═╝╩ ╩ ╩ ╚═╝╩ ╩ ╩╝╚╝╚═╝ ╩ ╩ ╩╩═╝╩═╝╩ ╩ ╩ ╩╚═╝╝╚╝ -- industryName: Batch installation (Chef, Ansible, Puppet, MDM) - friendlyName: Install agents over the air - documentationUrl: https://fleetdm.com/docs/using-fleet/enroll-hosts - tier: Free - jamfProHasFeature: no - jamfProtectHasFeature: no - productCategories: [Endpoint operations] - pricingTableCategories: [Endpoint operations] - usualDepartment: IT -# -# ╦═╗╔═╗╔╦╗╔═╗╔╦╗╔═╗ ╔═╗╔═╗╔╦╗╔╦╗╦╔╗╔╔═╗╔═╗ -# ╠╦╝║╣ ║║║║ ║ ║ ║╣ ╚═╗║╣ ║ ║ ║║║║║ ╦╚═╗ -# ╩╚═╚═╝╩ ╩╚═╝ ╩ ╚═╝ ╚═╝╚═╝ ╩ ╩ ╩╝╚╝╚═╝╚═╝ -- industryName: Remote settings - description: Configure agent options remotely, over the air. (Includes osquery config, and osquery startup flags.). - documentationUrl: https://fleetdm.com/docs/configuration/agent-configuration - moreInfoUrl: https://github.com/fleetdm/fleet/issues/13825 - tier: Free - jamfProHasFeature: no - jamfProtectHasFeature: no - productCategories: [Endpoint operations] - pricingTableCategories: [Endpoint operations] - usualDepartment: Security -# -# ╔╦╗╦═╗╦╔═╗╔═╗╔═╗╦═╗ ╔═╗ ╦ ╦╔═╗╦═╗╦╔═╔═╗╦ ╔═╗╦ ╦ ╔╗ ╔═╗╔═╗╔═╗╔╦╗ ╔═╗╔╗╔ ╔═╗ -# ║ ╠╦╝║║ ╦║ ╦║╣ ╠╦╝ ╠═╣ ║║║║ ║╠╦╝╠╩╗╠╣ ║ ║ ║║║║ ╠╩╗╠═╣╚═╗║╣ ║║ ║ ║║║║ ╠═╣ -# ╩ ╩╚═╩╚═╝╚═╝╚═╝╩╚═ ╩ ╩ ╚╩╝╚═╝╩╚═╩ ╩╚ ╩═╝╚═╝╚╩╝ ╚═╝╩ ╩╚═╝╚═╝═╩╝ ╚═╝╝╚╝ ╩ ╩ -# ╔═╗╔═╗╦╦ ╦╔╗╔╔═╗ ╔═╗╔═╗╦ ╦╔═╗╦ ╦ -# ╠╣ ╠═╣║║ ║║║║║ ╦ ╠═╝║ ║║ ║║ ╚╦╝ -# ╚ ╩ ╩╩╩═╝╩╝╚╝╚═╝ ╩ ╚═╝╩═╝╩╚═╝ ╩ -- industryName: Trigger a workflow based on a failing policy - documentationUrl: https://fleetdm.com/docs/using-fleet/automations#policy-automations - productCategories: [Endpoint operations,Device management] - pricingTableCategories: [Endpoint operations] - usualDepartment: IT - tier: Free - jamfProHasFeature: yes - jamfProtectHasFeature: no -# -# ╔═╗╔═╗╔═╗╔╦╗╦ ╦╔═╗╦═╗╔═╗ ╦╔╗╔╦ ╦╔═╗╔╗╔╔╦╗╔═╗╦═╗╦ ╦ -# ╚═╗║ ║╠╣ ║ ║║║╠═╣╠╦╝║╣ ║║║║╚╗╔╝║╣ ║║║ ║ ║ ║╠╦╝╚╦╝ -# ╚═╝╚═╝╚ ╩ ╚╩╝╩ ╩╩╚═╚═╝ ╩╝╚╝ ╚╝ ╚═╝╝╚╝ ╩ ╚═╝╩╚═ ╩ -- industryName: Software inventory - documentationUrl: https://fleetdm.com/docs/get-started/anatomy#software-library - tier: Free - jamfProHasFeature: yes - jamfProtectHasFeature: no productCategories: [Endpoint operations,Device management,Vulnerability management] - pricingTableCategories: [Endpoint operations] - waysToUse: - - description: Implement software inventory recommendations from the SANS 20 / CIS 18. - moreInfoUrl: https://docs.google.com/document/d/1E6EQMMqrsRc6Z3YsR6Q33OaF9eAa8zLNaz4K2YzFdyo/edit#heading=h.7en766pueek4 - - description: View a list of all software and their versions installed on all your hosts. - - description: View a list of software rolled up by title. - moreInfoUrl: https://github.com/fleetdm/fleet/issues/14674 -# -# ╦ ╦╔═╗╦═╗╔╦╗╦ ╦╔═╗╦═╗╔═╗ ╦╔╗╔╦ ╦╔═╗╔╗╔╔╦╗╔═╗╦═╗╦ ╦ -# ╠═╣╠═╣╠╦╝ ║║║║║╠═╣╠╦╝║╣ ║║║║╚╗╔╝║╣ ║║║ ║ ║ ║╠╦╝╚╦╝ -# ╩ ╩╩ ╩╩╚══╩╝╚╩╝╩ ╩╩╚═╚═╝ ╩╝╚╝ ╚╝ ╚═╝╝╚╝ ╩ ╚═╝╩╚═ ╩ -- industryName: Hardware inventory - documentationUrl: https://fleetdm.com/tables/system_info - productCategories: [Endpoint operations,Device management,Vulnerability management] - pricingTableCategories: [Endpoint operations] + pricingTableCategories: [Integrations] + usualDepartment: IT tier: Free jamfProHasFeature: yes - jamfProtectHasFeature: no - waysToUse: - - description: Implement hardware and infrastructure inventory recommendations from the SANS 20 / CIS 18. - moreInfoUrl: https://docs.google.com/document/d/1E6EQMMqrsRc6Z3YsR6Q33OaF9eAa8zLNaz4K2YzFdyo/edit#heading=h.7en766pueek4 + jamfProtectHasFeature: yes # -# ╔╦╗╔═╗╦ ╦╦╔═╗╔═╗ ╦╔╗╔╦ ╦╔═╗╔╗╔╔╦╗╔═╗╦═╗╦ ╦ ╔╦╗╔═╗╔═╗╦ ╦╔╗ ╔═╗╔═╗╦═╗╔╦╗ -# ║║║╣ ╚╗╔╝║║ ║╣ ║║║║╚╗╔╝║╣ ║║║ ║ ║ ║╠╦╝╚╦╝ ║║╠═╣╚═╗╠═╣╠╩╗║ ║╠═╣╠╦╝ ║║ -# ═╩╝╚═╝ ╚╝ ╩╚═╝╚═╝ ╩╝╚╝ ╚╝ ╚═╝╝╚╝ ╩ ╚═╝╩╚═ ╩ ═╩╝╩ ╩╚═╝╩ ╩╚═╝╚═╝╩ ╩╩╚══╩╝ -- industryName: Device inventory dashboard - documentationUrl: - productCategories: [Endpoint operations,Device management] - pricingTableCategories: [Endpoint operations] +# ╔═╗╦═╗╔═╗╔╗╔╔╦╗ ╔═╗╔═╗╦ ╔═╗╔╗╔╦ ╦ ╦ ╔═╗╔═╗╔═╗╔═╗╔═╗╔═╗ +# ║ ╦╠╦╝╠═╣║║║ ║ ╠═╣╠═╝║───║ ║║║║║ ╚╦╝ ╠═╣║ ║ ║╣ ╚═╗╚═╗ +# ╚═╝╩╚═╩ ╩╝╚╝ ╩ ╩ ╩╩ ╩ ╚═╝╝╚╝╩═╝╩ ╩ ╩╚═╝╚═╝╚═╝╚═╝╚═╝ +- industryName: Grant API-only access + description: Grant API-only access to accounts exclusively for automation. + documentationUrl: https://fleetdm.com/docs/using-fleet/fleetctl-cli#using-fleetctl-with-an-api-only-user + productCategories: [Endpoint operations] + pricingTableCategories: [Integrations] + tier: Free + jamfProHasFeature: yes + jamfProtectHasFeature: yes +# +# ╔═╗╦╔╗╔╔═╗╦ ╔═╗ ╔═╗╦╔═╗╔╗╔ ╔═╗╔╗╔ +# ╚═╗║║║║║ ╦║ ║╣ ╚═╗║║ ╦║║║ ║ ║║║║ +# ╚═╝╩╝╚╝╚═╝╩═╝╚═╝ ╚═╝╩╚═╝╝╚╝ ╚═╝╝╚╝ +- industryName: Single sign on + description: SSO, SAML + documentationUrl: https://fleetdm.com/docs/deploy/single-sign-on-sso#single-sign-on-sso + productCategories: [Endpoint operations,Device management,Vulnerability management] + pricingTableCategories: [Integrations] usualDepartment: IT tier: Free jamfProHasFeature: yes jamfProtectHasFeature: yes # -# ╔╗ ╦═╗╔═╗╦ ╦╔═╗╔═╗ ╦╔╗╔╔═╗╔╦╗╔═╗╦ ╦ ╔═╗╔╦╗ ╔═╗╔═╗╔═╗╔╦╗╦ ╦╔═╗╦═╗╔═╗ ╔═╗╔═╗╔═╗╦╔═╔═╗╔═╗╔═╗╔═╗ -# ╠╩╗╠╦╝║ ║║║║╚═╗║╣ ║║║║╚═╗ ║ ╠═╣║ ║ ║╣ ║║ ╚═╗║ ║╠╣ ║ ║║║╠═╣╠╦╝║╣ ╠═╝╠═╣║ ╠╩╗╠═╣║ ╦║╣ ╚═╗ -# ╚═╝╩╚═╚═╝╚╩╝╚═╝╚═╝ ╩╝╚╝╚═╝ ╩ ╩ ╩╩═╝╩═╝╚═╝═╩╝ ╚═╝╚═╝╚ ╩ ╚╩╝╩ ╩╩╚═╚═╝ ╩ ╩ ╩╚═╝╩ ╩╩ ╩╚═╝╚═╝╚═╝ -- industryName: Browse installed software packages - documentationUrl: https://fleetdm.com/docs/rest-api/rest-api#software +# ╦╦ ╦╔═╗╔╦╗ ╦╔╗╔ ╔╦╗╦╔╦╗╔═╗ ╔═╗╦═╗╔═╗╦ ╦╦╔═╗╦╔═╗╔╗╔╦╔╗╔╔═╗ +# ║║ ║╚═╗ ║───║║║║───║ ║║║║║╣ ╠═╝╠╦╝║ ║╚╗╔╝║╚═╗║║ ║║║║║║║║║ ╦ +# ╚╝╚═╝╚═╝ ╩ ╩╝╚╝ ╩ ╩╩ ╩╚═╝ ╩ ╩╚═╚═╝ ╚╝ ╩╚═╝╩╚═╝╝╚╝╩╝╚╝╚═╝ +- industryName: Just-in-time (JIT) provisioning + documentationUrl: https://fleetdm.com/docs/deploy/single-sign-on-sso#just-in-time-jit-user-provisioning productCategories: [Endpoint operations,Device management,Vulnerability management] - pricingTableCategories: [Endpoint operations] - tier: Free - jamfProHasFeature: yes - jamfProtectHasFeature: no -# -# ╔╦╗╦ ╦╔═╗ ╔═╗╔═╗╔═╗╔╦╗╔═╗╦═╗ ╔═╗╦ ╦╔╦╗╦ ╦╔═╗╔╗╔╔╦╗╦╔═╗╔═╗╔╦╗╦╔═╗╔╗╔ -# ║ ║║║║ ║───╠╣ ╠═╣║ ║ ║ ║╠╦╝ ╠═╣║ ║ ║ ╠═╣║╣ ║║║ ║ ║║ ╠═╣ ║ ║║ ║║║║ -# ╩ ╚╩╝╚═╝ ╚ ╩ ╩╚═╝ ╩ ╚═╝╩╚═ ╩ ╩╚═╝ ╩ ╩ ╩╚═╝╝╚╝ ╩ ╩╚═╝╩ ╩ ╩ ╩╚═╝╝╚╝ -- industryName: Two-factor authentication - moreInfoUrl: https://github.com/fleetdm/fleet/issues/5478 - productCategories: [Endpoint operations,Device management,Vulnerability management] - pricingTableCategories: [Endpoint operations] - usualDepartment: IT - tier: Free - jamfProHasFeature: yes - jamfProtectHasFeature: yes - waysToUse: - - description: Enforce two-factor authentication when logging in to Fleet for added security. - comingSoonOn: 2024-12-31 #customer-rosner -# -# ╔═╗╦ ╦╔═╗╔╦╗╔═╗╔╦╗ ╔═╗╔═╗╦═╗ ╔═╗╦═╗╔═╗╔═╗╔═╗ ╔╦╗╔═╗╔╦╗╔═╗╦╔╗╔ ╦╔╦╗╔═╗╔╗╔╔╦╗╦╔╦╗╦ ╦ -# ╚═╗╚╦╝╚═╗ ║ ║╣ ║║║ ╠╣ ║ ║╠╦╝ ║ ╠╦╝║ ║╚═╗╚═╗───║║║ ║║║║╠═╣║║║║ ║ ║║║╣ ║║║ ║ ║ ║ ╚╦╝ -# ╚═╝ ╩ ╚═╝ ╩ ╚═╝╩ ╩ ╚ ╚═╝╩╚═ ╚═╝╩╚═╚═╝╚═╝╚═╝ ═╩╝╚═╝╩ ╩╩ ╩╩╝╚╝ ╩═╩╝╚═╝╝╚╝ ╩ ╩ ╩ ╩ -# ╔╦╗╔═╗╔╗╔╔═╗╔═╗╔═╗╔╦╗╔═╗╔╗╔╔╦╗ ╔═╗╦═╗╔═╗╦ ╦╦╔═╗╦╔═╗╔╗╔╦╔╗╔╔═╗ -# ║║║╠═╣║║║╠═╣║ ╦║╣ ║║║║╣ ║║║ ║ ╠═╝╠╦╝║ ║╚╗╔╝║╚═╗║║ ║║║║║║║║║ ╦ -# ╩ ╩╩ ╩╝╚╝╩ ╩╚═╝╚═╝╩ ╩╚═╝╝╚╝ ╩ ╩ ╩╚═╚═╝ ╚╝ ╩╚═╝╩╚═╝╝╚╝╩╝╚╝╚═╝ -- industryName: System for Cross-domain Identity Management (SCIM) provisioning - moreInfoUrl: https://github.com/fleetdm/fleet/issues/15671 - productCategories: [Endpoint operations,Device management,Vulnerability management] - pricingTableCategories: [Endpoint operations] + pricingTableCategories: [Integrations] usualDepartment: IT tier: Premium - comingSoonOn: 2024-12-31 #customer-rosner -# -# ╔═╗╔═╗╔═╗╦═╗╔═╗╦ ╦ ╔╦╗╔═╗╦ ╦╦╔═╗╔═╗╔═╗ ╔╗ ╦ ╦ ╦╔═╗ ╔═╗╔═╗╦═╗╦╔═╗╦ -# ╚═╗║╣ ╠═╣╠╦╝║ ╠═╣ ║║║╣ ╚╗╔╝║║ ║╣ ╚═╗ ╠╩╗╚╦╝ ║╠═╝ ╚═╗║╣ ╠╦╝║╠═╣║ -# ╚═╝╚═╝╩ ╩╩╚═╚═╝╩ ╩ ═╩╝╚═╝ ╚╝ ╩╚═╝╚═╝╚═╝ ╚═╝ ╩ ╩╩┘ ╚═╝╚═╝╩╚═╩╩ ╩╩═╝┘ -# ╦ ╦╔═╗╔═╗╔╦╗╔╗╔╔═╗╔╦╗╔═╗ ╦ ╦╦ ╦╦╔╦╗ -# ╠═╣║ ║╚═╗ ║ ║║║╠═╣║║║║╣ ║ ║║ ║║ ║║ -# ╩ ╩╚═╝╚═╝ ╩ ╝╚╝╩ ╩╩ ╩╚═╝┘ ╚═╝╚═╝╩═╩╝ -- industryName: Search devices by IP, serial, hostname, UUID - documentationUrl: https://fleetdm.com/docs/rest-api/rest-api#hosts - productCategories: [Endpoint operations,Device management] - pricingTableCategories: [Endpoint operations] - tier: Free jamfProHasFeature: yes - jamfProtectHasFeature: yes -# -# ╦ ╔═╗╔╗ ╔═╗╦ ╔═╗ ╔═╗╔═╗ ╦ ╔╦╗╦═╗╦╦ ╦╔═╗╔╗╔ -# ║ ╠═╣╠╩╗║╣ ║ ╚═╗ ╚═╗║═╬╗║─────║║╠╦╝║╚╗╔╝║╣ ║║║ -# ╩═╝╩ ╩╚═╝╚═╝╩═╝╚═╝ ╚═╝╚═╝╚╩═╝ ═╩╝╩╚═╩ ╚╝ ╚═╝╝╚╝ -- industryName: Labels (SQL-driven) - documentationUrl: https://fleetdm.com/docs/rest-api/rest-api#add-label - friendlyName: Filter hosts using SQL - productCategories: [Endpoint operations,Device management,Vulnerability management] - pricingTableCategories: [Endpoint operations] - usualDepartment: IT - tier: Free - jamfProHasFeature: no jamfProtectHasFeature: no -# -# ╦ ╦╔═╗╦═╗╔═╗╦╔═╗╔╗╔╔═╗╔╗ ╦ ╔═╗ ╔═╗ ╦ ╦╔═╗╦═╗╦╔═╗╔═╗ ╔═╗╔╗╔╔╦╗ ╔═╗╔═╗╔╗╔╔═╗╦╔═╗ -# ╚╗╔╝║╣ ╠╦╝╚═╗║║ ║║║║╠═╣╠╩╗║ ║╣ ║═╬╗║ ║║╣ ╠╦╝║║╣ ╚═╗ ╠═╣║║║ ║║ ║ ║ ║║║║╠╣ ║║ ╦ -# ╚╝ ╚═╝╩╚═╚═╝╩╚═╝╝╚╝╩ ╩╚═╝╩═╝╚═╝ ╚═╝╚╚═╝╚═╝╩╚═╩╚═╝╚═╝ ╩ ╩╝╚╝═╩╝ ╚═╝╚═╝╝╚╝╚ ╩╚═╝ -# ╔═╗╦╔╦╗╔═╗╔═╗╔═╗ -# ║ ╦║ ║ ║ ║╠═╝╚═╗ -# ╚═╝╩ ╩ ╚═╝╩ ╚═╝ -- industryName: Versionable queries and config (GitOps) - documentationUrl: https://fleetdm.com/guides/using-github-actions-to-apply-configuration-profiles-with-fleet#basic-article - tier: Free - jamfProHasFeature: no - jamfProtectHasFeature: no - productCategories: [Endpoint operations,Device management,Vulnerability management] - pricingTableCategories: [Endpoint operations] - usualDepartment: IT - demos: - - description: A top financial services company needed to set up rolling deployments for changes to osquery agents running on their production servers. - moreInfoUrl: https://docs.google.com/document/d/1UdzZMyBLbs9SUXfSXN2x2wZQCbjZZUetYlNWH6-ryqQ/edit#heading=h.2lh6ehprpvl6 -# -# ╔═╗╔═╗╔═╗╔═╗╔═╗ ╔╦╗╦═╗╔═╗╔╗╔╔═╗╔═╗╔═╗╦═╗╔═╗╔╗╔╔═╗╦ ╦ -# ╚═╗║ ║ ║╠═╝║╣ ║ ╠╦╝╠═╣║║║╚═╗╠═╝╠═╣╠╦╝║╣ ║║║║ ╚╦╝ -# ╚═╝╚═╝╚═╝╩ ╚═╝ ╩ ╩╚═╩ ╩╝╚╝╚═╝╩ ╩ ╩╩╚═╚═╝╝╚╝╚═╝ ╩ -- industryName: Scope transparency - tier: Free - documentationUrl: https://fleetdm.com/transparency - productCategories: [Endpoint operations] - pricingTableCategories: [Endpoint operations] -# -# ╔═╗╦ ╦╔╦╗╦╔╦╗ ╦ ╔═╗╔═╗ ╔═╗╔═╗ ╔═╗╔═╗╔╦╗╦╦ ╦╦╔╦╗╦ ╦ -# ╠═╣║ ║ ║║║ ║ ║ ║ ║║ ╦ ║ ║╠╣ ╠═╣║ ║ ║╚╗╔╝║ ║ ╚╦╝ -# ╩ ╩╚═╝═╩╝╩ ╩ ╩═╝╚═╝╚═╝ ╚═╝╚ ╩ ╩╚═╝ ╩ ╩ ╚╝ ╩ ╩ ╩ -- industryName: Audit log of activity (queries, scripts, logins, etc) - documentationUrl: https://fleetdm.com/docs/rest-api/rest-api#list-activities - productCategories: [Endpoint operations, Device management] - pricingTableCategories: [Endpoint operations] - tier: Premium - jamfProHasFeature: yes - jamfProtectHasFeature: yes - usualDepartment: Security - waysToUse: - - description: Export activity of Fleet admins to your SIEM or data lake -# -# ╔═╗ ╦ ╦╔═╗╦═╗╦ ╦ ╔═╗╔═╗╦═╗╔═╗╔═╗╦═╗╔╦╗╔═╗╔╗╔╔═╗╔═╗ ╔╦╗╔═╗╔╗╔╦╔╦╗╔═╗╦═╗╦╔╗╔╔═╗ -# ║═╬╗║ ║║╣ ╠╦╝╚╦╝ ╠═╝║╣ ╠╦╝╠╣ ║ ║╠╦╝║║║╠═╣║║║║ ║╣ ║║║║ ║║║║║ ║ ║ ║╠╦╝║║║║║ ╦ -# ╚═╝╚╚═╝╚═╝╩╚═ ╩ ╩ ╚═╝╩╚═╚ ╚═╝╩╚═╩ ╩╩ ╩╝╚╝╚═╝╚═╝ ╩ ╩╚═╝╝╚╝╩ ╩ ╚═╝╩╚═╩╝╚╝╚═╝ -- industryName: Query performance monitoring - documentationUrl: https://fleetdm.com/docs/get-started/faq#will-fleet-slow-down-my-servers-what-about-my-employee-laptops - tier: Free - jamfProHasFeature: no - jamfProtectHasFeature: no - productCategories: [Endpoint operations] - pricingTableCategories: [Endpoint operations] - demos: - - description: A top software company needed to understand the performance impact of osquery queries before running them on all of their production Linux servers. - moreInfoUrl: https://docs.google.com/document/d/1WzMc8GJCRU6tTBb6gLsSTzFysqtXO8CtP2sXMPKgYSk/edit?disco=AAAA6xuVxGg - - description: A top software company wanted to detect regressions when adding/changing queries and fail builds if queries were too expensive. - moreInfoUrl: https://docs.google.com/document/d/1WzMc8GJCRU6tTBb6gLsSTzFysqtXO8CtP2sXMPKgYSk/edit?disco=AAAA6xuVxGg - waysToUse: - - description: Monitor performance for automated queries. - - description: Monitor performance for live queries. - moreInfoUrl: https://github.com/fleetdm/fleet/issues/467 -# -# ╔╦╗╔═╗╔╦╗╔═╗╔═╗╔╦╗ ╔═╗╔╗╔╔╦╗ ╔═╗╦ ╦╦═╗╔═╗╔═╗╔═╗╔═╗ ╦╔═╗╔═╗╦ ╦╔═╗╔═╗ ╦ ╦╦╔╦╗╦ ╦ -# ║║║╣ ║ ║╣ ║ ║ ╠═╣║║║ ║║ ╚═╗║ ║╠╦╝╠╣ ╠═╣║ ║╣ ║╚═╗╚═╗║ ║║╣ ╚═╗ ║║║║ ║ ╠═╣ -# ═╩╝╚═╝ ╩ ╚═╝╚═╝ ╩ ╩ ╩╝╚╝═╩╝ ╚═╝╚═╝╩╚═╚ ╩ ╩╚═╝╚═╝ ╩╚═╝╚═╝╚═╝╚═╝╚═╝ ╚╩╝╩ ╩ ╩ ╩ -# ╔╦╗╔═╗╦ ╦╦╔═╗╔═╗╔═╗ -# ║║║╣ ╚╗╔╝║║ ║╣ ╚═╗ -# ═╩╝╚═╝ ╚╝ ╩╚═╝╚═╝╚═╝ -- industryName: Detect and surface issues with devices (policies) - documentationUrl: https://fleetdm.com/docs/get-started/anatomy#policy - productCategories: [Endpoint operations,Device management] - pricingTableCategories: [Endpoint operations] - usualDepartment: IT - tier: Free - jamfProHasFeature: yes - jamfProtectHasFeature: yes -# -# ╔═╗╦ ╔═╗═╗ ╦╦╔╗ ╦ ╔═╗ ╦ ╔═╗╔═╗ ╔╦╗╔═╗╔═╗╔╦╗╦╔╗╔╔═╗╔╦╗╦╔═╗╔╗╔╔═╗ -# ╠╣ ║ ║╣ ╔╩╦╝║╠╩╗║ ║╣ ║ ║ ║║ ╦ ║║║╣ ╚═╗ ║ ║║║║╠═╣ ║ ║║ ║║║║╚═╗ -# ╚ ╩═╝╚═╝╩ ╚═╩╚═╝╩═╝╚═╝ ╩═╝╚═╝╚═╝ ═╩╝╚═╝╚═╝ ╩ ╩╝╚╝╩ ╩ ╩ ╩╚═╝╝╚╝╚═╝ -- industryName: Flexible log destinations (AWS Kinesis, Lambda, GCP, Kafka) - documentationUrl: https://fleetdm.com/docs/using-fleet/log-destinations#log-destinations - tier: Free - jamfProHasFeature: yes - jamfProtectHasFeature: yes - usualDepartment: Security - productCategories: [Endpoint operations] - pricingTableCategories: [Endpoint operations] - buzzwords: [Real-time export,Ship logs] -# -# ╔═╗╦╦ ╔═╗ ╔═╗╔═╗╦═╗╦ ╦╦╔╗╔╔═╗ -# ╠╣ ║║ ║╣ ║ ╠═╣╠╦╝╚╗╔╝║║║║║ ╦ -# ╚ ╩╩═╝╚═╝ ╚═╝╩ ╩╩╚═ ╚╝ ╩╝╚╝╚═╝ -- industryName: File carving (AWS S3) - documentationUrl: https://fleetdm.com/docs/configuration/fleet-server-configuration#s-3-file-carving-backend - tier: Free - jamfProHasFeature: no - jamfProtectHasFeature: no - usualDepartment: Security - productCategories: [Endpoint operations] - pricingTableCategories: [Endpoint operations] # -# ╦ ╦╔═╗╦═╗╦╔═╗╔╗ ╦ ╔═╗ ╔═╗╔╗╔╦═╗╔═╗╦ ╦ ╔╦╗╔═╗╔╗╔╔╦╗ -# ╚╗╔╝╠═╣╠╦╝║╠═╣╠╩╗║ ║╣ ║╣ ║║║╠╦╝║ ║║ ║ ║║║║╣ ║║║ ║ -# ╚╝ ╩ ╩╩╚═╩╩ ╩╚═╝╩═╝╚═╝ ╚═╝╝╚╝╩╚═╚═╝╩═╝╩═╝╩ ╩╚═╝╝╚╝ ╩ -- industryName: Variable enrollment - description: Enroll hosts in different groups using different enrollment secrets and/or installers per-baseline. - documentationUrl: https://fleetdm.com/docs/using-fleet/segment-hosts - tier: Premium - jamfProHasFeature: yes - jamfProtectHasFeature: no - productCategories: [Endpoint operations, Device management] - pricingTableCategories: [Endpoint operations] +# ╔╦╗╦ ╦╦╦═╗╔╦╗ ╔═╗╔═╗╦═╗╔╦╗╦ ╦ ╔═╗╦ ╦╔╦╗╔═╗╔╦╗╔═╗╔╦╗╦╔═╗╔╗╔ +# ║ ╠═╣║╠╦╝ ║║───╠═╝╠═╣╠╦╝ ║ ╚╦╝ ╠═╣║ ║ ║ ║ ║║║║╠═╣ ║ ║║ ║║║║ +# ╩ ╩ ╩╩╩╚══╩╝ ╩ ╩ ╩╩╚═ ╩ ╩ ╩ ╩╚═╝ ╩ ╚═╝╩ ╩╩ ╩ ╩ ╩╚═╝╝╚╝ +- industryName: Third-party automation + friendlyName: Borrow off-the-shelf tactics from the community + documentationUrl: https://fleetdm.com/integrations + productCategories: [Endpoint operations,Device management,Vulnerability management] + pricingTableCategories: [Integrations] usualDepartment: IT -# -# ╔═╗╦═╗╦╦ ╦╔═╗╔╦╗╔═╗ ╦ ╦╔═╗╔╦╗╔═╗╔╦╗╔═╗ ╦═╗╔═╗╔═╗╦╔═╗╔╦╗╦═╗╦ ╦ -# ╠═╝╠╦╝║╚╗╔╝╠═╣ ║ ║╣ ║ ║╠═╝ ║║╠═╣ ║ ║╣ ╠╦╝║╣ ║ ╦║╚═╗ ║ ╠╦╝╚╦╝ -# ╩ ╩╚═╩ ╚╝ ╩ ╩ ╩ ╚═╝ ╚═╝╩ ═╩╝╩ ╩ ╩ ╚═╝ ╩╚═╚═╝╚═╝╩╚═╝ ╩ ╩╚═ ╩ -- industryName: Private update registry - friendlyName: Update agents from a secret URL - description: Load agent code from a secret URL that you manage. - documentationUrl: https://fleetdm.com/docs/using-fleet/update-agents - tier: Premium - jamfProHasFeature: no - jamfProtectHasFeature: no - productCategories: [Endpoint operations] - pricingTableCategories: [Endpoint operations] - usualDepartment: Security -# -# ╦ ╦╔═╗╦═╗╦╔═╗╔╗ ╦ ╔═╗ ╔═╗╔═╗╔═╗╔╗╔╔╦╗ ╦ ╦╔═╗╦═╗╔═╗╦╔═╗╔╗╔╔═╗ -# ╚╗╔╝╠═╣╠╦╝║╠═╣╠╩╗║ ║╣ ╠═╣║ ╦║╣ ║║║ ║ ╚╗╔╝║╣ ╠╦╝╚═╗║║ ║║║║╚═╗ -# ╚╝ ╩ ╩╩╚═╩╩ ╩╚═╝╩═╝╚═╝ ╩ ╩╚═╝╚═╝╝╚╝ ╩ ╚╝ ╚═╝╩╚═╚═╝╩╚═╝╝╚╝╚═╝ -- industryName: Variable agent versions - description: Manage agents remotely by setting different versions per-baseline. - documentationUrl: https://fleetdm.com/docs/configuration/agent-configuration#configure-fleetd-update-channels - tier: Premium - jamfProHasFeature: no - jamfProtectHasFeature: no - productCategories: [Endpoint operations] - pricingTableCategories: [Endpoint operations] - usualDepartment: IT -# -# ╔═╗╦ ╦╔═╗╔╦╗╔═╗╔╦╗ ╔╦╗╔═╗╔╗ ╦ ╔═╗╔═╗ -# ║ ║ ║╚═╗ ║ ║ ║║║║ ║ ╠═╣╠╩╗║ ║╣ ╚═╗ -# ╚═╝╚═╝╚═╝ ╩ ╚═╝╩ ╩ ╩ ╩ ╩╚═╝╩═╝╚═╝╚═╝ -- industryName: Custom tables - friendlyName: Add tables to osquery with extensions - description: Install osquery extensions over the air. # (GitOptional) - documentationUrl: https://fleetdm.com/docs/configuration/agent-configuration#extensions - moreInfoUrl: https://github.com/trailofbits/osquery-extensions/blob/3df2b72ad78549e25344c79dbc9bce6808c4d92a/README.md#extensions - tier: Premium - jamfProHasFeature: no - jamfProtectHasFeature: no - productCategories: [Endpoint operations] - pricingTableCategories: [Endpoint operations] - usualDepartment: IT -# -# ╔╗ ╔═╗╔═╗╔═╗╦ ╦╔╗╔╔═╗╔═╗ ╔╦╗╔═╗╦ ╦╦╔═╗╔═╗ ╔═╗╦═╗╔═╗╦ ╦╔═╗╔═╗ -# ╠╩╗╠═╣╚═╗║╣ ║ ║║║║║╣ ╚═╗ ║║║╣ ╚╗╔╝║║ ║╣ ║ ╦╠╦╝║ ║║ ║╠═╝╚═╗ -# ╚═╝╩ ╩╚═╝╚═╝╩═╝╩╝╚╝╚═╝╚═╝ ═╩╝╚═╝ ╚╝ ╩╚═╝╚═╝ ╚═╝╩╚═╚═╝╚═╝╩ ╚═╝ -- industryName: Baselines (device groups) - friendlyName: Manage different endpoints differently - documentationUrl: https://fleetdm.com/docs/using-fleet/segment-hosts - description: Set baselines and strategies for hosts in different situations called "teams", and move hosts between them via API-driven automations or a simple, delegatable user interface with role-based access. - tier: Premium + description: Plug Fleet into other frameworks and tools like Tines, Snowflake, Terraform, Chronicle, Jira, Zendesk, etc + moreInfoUrl: https://fleetdm.com/integrations + tier: Free jamfProHasFeature: yes jamfProtectHasFeature: yes - productCategories: [Endpoint operations,Device management,Vulnerability management] - pricingTableCategories: [Endpoint operations] waysToUse: - - description: Automate remediation for different applications with different security postures (cloud security engineering) -# -# ╔═╗╔═╗╔╗╔╔═╗╦═╗╔═╗╔╦╗╔═╗ ╦═╗╔═╗╔═╗╔═╗╦═╗╔╦╗╔═╗ ╔═╗╔═╗╦═╗ ╔═╗╦═╗╔═╗╦ ╦╔═╗╔═╗ -# ║ ╦║╣ ║║║║╣ ╠╦╝╠═╣ ║ ║╣ ╠╦╝║╣ ╠═╝║ ║╠╦╝ ║ ╚═╗ ╠╣ ║ ║╠╦╝ ║ ╦╠╦╝║ ║║ ║╠═╝╚═╗ -# ╚═╝╚═╝╝╚╝╚═╝╩╚═╩ ╩ ╩ ╚═╝ ╩╚═╚═╝╩ ╚═╝╩╚═ ╩ ╚═╝ ╚ ╚═╝╩╚═ ╚═╝╩╚═╚═╝╚═╝╩ ╚═╝ -# ╔═╗╔═╗ ╔╦╗╔═╗╦ ╦╦╔═╗╔═╗╔═╗ -# ║ ║╠╣ ║║║╣ ╚╗╔╝║║ ║╣ ╚═╗ -# ╚═╝╚ ═╩╝╚═╝ ╚╝ ╩╚═╝╚═╝╚═╝ -- industryName: Generate reports for groups of devices - documentationUrl: https://fleetdm.com/docs/rest-api/rest-api#get-query-report + - description: (ActiveDirectory) Know who opened your computer and check their device posture before you let them log into anything. + - description: (Ansible) Easily issue MDM commands and standardize data across operating systems. + - description: (AWS) Deploy your own self-managed Fleet in any AWS environment in minutes. + - description: (Azure) Deploy your own self-managed Fleet in the Microsoft Cloud in minutes. + - description: (Chef) Easily issue MDM commands and standardize data across operating systems. + - description: (Elastic) Ingest osquery data and monitor for important changes or events. + - description: (GitHub) Version control using git, enabling collaboration and a GitOps workflow. + - description: (GitLab) Version control using git, enabling collaboration and a GitOps workflow. + - description: (Chronicle) Ingest osquery data and monitor for important changes or events. + - description: (Google Cloud) Deploy your own self-managed Fleet in any GCP environment in minutes. + - description: (Munki) Easily issue MDM commands and standardize data across operating systems. + - description: (Okta) Know who opened your computer and check their device posture before you let them log into anything. + - description: (Snowflake) Ingest osquery data and monitor for important changes or events. + - description: (Splunk) Ingest osquery data and monitor for important changes or events. + - description: (Tines) Build custom workflows that trigger in various situations. + - description: (Webhooks) Configure automations that send webhooks to specific URLs when Fleet detects changes to host, policy, and CVE statuses. + - description: (Zendesk) Automatically create Zendesk tickets in various situations. + - description: (Jira) Automatically create Jira tickets in various situations, including exporting vulnerabilities to Jira and syncing tickets. + buzzwords: [Snowflake,Okta,Tines,Splunk,Elastic,AWS,ActiveDirectory,Ansible,GitHub,GitLab,Chronicle,Google Cloud,Munki,Vanta,Chef,Zendesk,Jira] +# +# ╔╦╗╦ ╦╦╦═╗╔╦╗ ╔═╗╔═╗╦═╗╔╦╗╦ ╦ ╔═╗╦═╗╔═╗╦ ╦╔═╗╔═╗╔╦╗╦═╗╔═╗╔╦╗╦╔═╗╔╗╔ +# ║ ╠═╣║╠╦╝ ║║───╠═╝╠═╣╠╦╝ ║ ╚╦╝ ║ ║╠╦╝║ ╠═╣║╣ ╚═╗ ║ ╠╦╝╠═╣ ║ ║║ ║║║║ +# ╩ ╩ ╩╩╩╚══╩╝ ╩ ╩ ╩╩╚═ ╩ ╩ ╚═╝╩╚═╚═╝╩ ╩╚═╝╚═╝ ╩ ╩╚═╩ ╩ ╩ ╩╚═╝╝╚╝ +- industryName: Third-party orchestration + friendlyName: Borrow off-the-shelf tactics from legendary brands + documentationUrl: https://fleetdm.com/integrations + description: Plug Fleet into other frameworks and tools like Puppet, Vanta, etc. productCategories: [Endpoint operations,Device management,Vulnerability management] - pricingTableCategories: [Endpoint operations] + pricingTableCategories: [Integrations] usualDepartment: IT + moreInfoUrl: https://fleetdm.com/integrations tier: Premium - jamfProHasFeature: yes - jamfProtectHasFeature: yes -# -# ╦═╗╔═╗╦ ╔═╗ ╔╗ ╔═╗╔═╗╔═╗╔╦╗ ╔═╗╔═╗╔═╗╔═╗╔═╗╔═╗ ╔═╗╔═╗╔╗╔╔╦╗╦═╗╔═╗╦ -# ╠╦╝║ ║║ ║╣───╠╩╗╠═╣╚═╗║╣ ║║ ╠═╣║ ║ ║╣ ╚═╗╚═╗ ║ ║ ║║║║ ║ ╠╦╝║ ║║ -# ╩╚═╚═╝╩═╝╚═╝ ╚═╝╩ ╩╚═╝╚═╝═╩╝ ╩ ╩╚═╝╚═╝╚═╝╚═╝╚═╝ ╚═╝╚═╝╝╚╝ ╩ ╩╚═╚═╝╩═╝ -- industryName: Role-based access control - documentationUrl: https://fleetdm.com/docs/using-fleet/manage-access#manage-access - productCategories: [Endpoint operations,Device management,Vulnerability management] - pricingTableCategories: [Endpoint operations] - usualDepartment: IT - tier: Premium - jamfProHasFeature: yes - jamfProtectHasFeature: yes -# -# ╔═╗╔═╗╦ ╦╔═╗╦ ╦ ╔═╗╔═╗╔═╗╦═╗╦╔╗╔╔═╗ -# ╠═╝║ ║║ ║║ ╚╦╝ ╚═╗║ ║ ║╠╦╝║║║║║ ╦ -# ╩ ╚═╝╩═╝╩╚═╝ ╩ ╚═╝╚═╝╚═╝╩╚═╩╝╚╝╚═╝ -- industryName: Policy scoring - documentationUrl: - friendlyName: Mark policies as critical - productCategories: [Endpoint operations,Device management] - pricingTableCategories: [Endpoint operations] - usualDepartment: IT - tier: Premium - jamfProHasFeature: no - jamfProtectHasFeature: no waysToUse: - - description: Block access to corporate apps if your end users are failing a specific number of critical policies. - moreInfoUrl: https://github.com/fleetdm/fleet/issues/16206 + - description: (Vanta) Trigger a workflow based on a failing policy. + - description: (Puppet) Easily issue MDM commands, standardize data across operating systems, and map macOS+Windows settings to computers with the Puppet module. + - description: (Torq) Build custom workflows that trigger in various situations. + - description: (Custom IdP) Manage access to Fleet single sign-on (SSO) through any IdP (using SAML). + buzzwords: [Vanta,Puppet,Custom IdP] +# +# ╔╦╗╦ ╦╔╗╔╦╔═╦ ╔═╗╔═╗╔╦╗╔═╗╔═╗╔╦╗╦╔╗ ╦╦ ╦╔╦╗╦ ╦ +# ║║║║ ║║║║╠╩╗║ ║ ║ ║║║║╠═╝╠═╣ ║ ║╠╩╗║║ ║ ║ ╚╦╝ +# ╩ ╩╚═╝╝╚╝╩ ╩╩ ╚═╝╚═╝╩ ╩╩ ╩ ╩ ╩ ╩╚═╝╩╩═╝╩ ╩ ╩ +- industryName: Munki compatibility + visibility + tier: Premium + jamfProHasFeature: yes + jamfProtectHasFeature: yes + usualDepartment: IT + productCategories: [Device management] + pricingTableCategories: [Integrations] # # # ███████╗██╗ ██╗██████╗ ██████╗ ██████╗ ██████╗ ████████╗ @@ -1237,261 +1241,353 @@ jamfProHasFeature: no jamfProtectHasFeature: no # -# ██████╗ ███████╗██████╗ ██╗ ██████╗ ██╗ ██╗███╗ ███╗███████╗███╗ ██╗████████╗ -# ██╔══██╗██╔════╝██╔══██╗██║ ██╔═══██╗╚██╗ ██╔╝████╗ ████║██╔════╝████╗ ██║╚══██╔══╝ -# ██║ ██║█████╗ ██████╔╝██║ ██║ ██║ ╚████╔╝ ██╔████╔██║█████╗ ██╔██╗ ██║ ██║ -# ██║ ██║██╔══╝ ██╔═══╝ ██║ ██║ ██║ ╚██╔╝ ██║╚██╔╝██║██╔══╝ ██║╚██╗██║ ██║ -# ██████╔╝███████╗██║ ███████╗╚██████╔╝ ██║ ██║ ╚═╝ ██║███████╗██║ ╚████║ ██║ -# ╚═════╝ ╚══════╝╚═╝ ╚══════╝ ╚═════╝ ╚═╝ ╚═╝ ╚═╝╚══════╝╚═╝ ╚═══╝ ╚═╝ -# +# # -# ╔═╗╦╔╦╗╔═╗╔═╗╔═╗ -# ║ ╦║ ║ ║ ║╠═╝╚═╗ -# ╚═╝╩ ╩ ╚═╝╩ ╚═╝ -- industryName: GitOps - friendlyName: Manage endpoints in git - documentationUrl: https://github.com/fleetdm/fleet-gitops - description: Fork the best practices repo and use the GitHub Action to hook it up to your Fleet instance in minutes. - productCategories: [Endpoint operations,Device management,Vulnerability management] - pricingTableCategories: [Deployment] - usualDepartment: IT - tier: Free - jamfProHasFeature: yes - jamfProtectHasFeature: yes - demos: - description: A top savings and investment company wanted workflows and automation so that one bad actor can't brick their fleet. This way, they have to make a pull request first. - quote: I don't want one bad actor to brick my fleet. I want them to make a pull request first. - moreInfoUrl: https://docs.google.com/document/d/1hAQL6P--Tt3syq1MTRONAxhQA_2Vjt3oOJJt_O4xbiE/edit?disco=AAABAVnYvns&usp_dm=true#heading=h.7en766pueek4 -# -# ╔═╗╔═╗╦ ╔═╗ ╦ ╦╔═╗╔═╗╔╦╗╔═╗╔╦╗ -# ╚═╗║╣ ║ ╠╣───╠═╣║ ║╚═╗ ║ ║╣ ║║ -# ╚═╝╚═╝╩═╝╚ ╩ ╩╚═╝╚═╝ ╩ ╚═╝═╩╝ -- industryName: Self-hosted - friendlyName: Host it yourself - description: Deploy Fleet anywhere and host it yourself, even in air-gapped environments except where technologically impossible. - pricingTableCategories: [Deployment] - documentationUrl: https://fleetdm.com/docs/deploy/introduction - productCategories: [Endpoint operations,Device management,Vulnerability management] - tier: Free - jamfProHasFeature: yes - jamfProtectHasFeature: no - buzzwords: [Self-hosted] -# -# ╔╦╗╔═╗╔═╗╦ ╔═╗╦ ╦╔╦╗╔═╗╔╗╔╔╦╗ ╔╦╗╔═╗╔═╗╦ ╔═╗ ╔╦╗╔═╗╦═╗╦═╗╔═╗╔═╗╔═╗╦═╗╔╦╗ ╦ ╦╔═╗╦ ╔╦╗ -# ║║║╣ ╠═╝║ ║ ║╚╦╝║║║║╣ ║║║ ║ ║ ║ ║║ ║║ ╚═╗ ║ ║╣ ╠╦╝╠╦╝╠═╣╠╣ ║ ║╠╦╝║║║ ╠═╣║╣ ║ ║║║ -# ═╩╝╚═╝╩ ╩═╝╚═╝ ╩ ╩ ╩╚═╝╝╚╝ ╩ ╩ ╚═╝╚═╝╩═╝╚═╝ ╩ ╚═╝╩╚═╩╚═╩ ╩╚ ╚═╝╩╚═╩ ╩┘ ╩ ╩╚═╝╩═╝╩ ╩ -- industryName: Deployment tools (Terraform, Helm) - documentationUrl: https://fleetdm.com/docs/deploy/introduction - usualDepartment: IT - tier: Free - jamfProHasFeature: no - jamfProtectHasFeature: no - productCategories: [Endpoint operations] - pricingTableCategories: [Deployment] -# -# ╔╦╗╔═╗╔╗╔╔═╗╔═╗╔═╗╔╦╗ ╔═╗╦ ╔═╗╦ ╦╔╦╗ -# ║║║╠═╣║║║╠═╣║ ╦║╣ ║║ ║ ║ ║ ║║ ║ ║║ -# ╩ ╩╩ ╩╝╚╝╩ ╩╚═╝╚═╝═╩╝ ╚═╝╩═╝╚═╝╚═╝═╩╝ -- industryName: Managed Cloud - description: Have Fleet host it for you (currently only available for customers with 700+ hosts. PS. Wish we could host for you? We're working on it! Please let us know if you know of a good partner. In the meantime, join fleetdm.com/support and we're happy to help you deploy Fleet yourself.) - pricingTableCategories: [Deployment] - productCategories: [Endpoint operations,Device management,Vulnerability management] - tier: Premium - jamfProHasFeature: yes - jamfProtectHasFeature: yes -# -# ╔╦╗╦ ╦╦ ╔╦╗╦ ╔╦╗╔═╗╔╗╔╔═╗╔╗╔╔═╗╦ ╦ -# ║║║║ ║║ ║ ║───║ ║╣ ║║║╠═╣║║║║ ╚╦╝ -# ╩ ╩╚═╝╩═╝╩ ╩ ╩ ╚═╝╝╚╝╩ ╩╝╚╝╚═╝ ╩ -- industryName: Multi-tenancy - description: For managed service providers to use a single instance of Fleet for multiple customers. - documentationUrl: https://github.com/fleetdm/fleet/issues/9956 - productCategories: [Device management] - pricingTableCategories: [Deployment] - usualDepartment: IT - buzzwords: [OEM,Private label,House brand,Clear label,Multi-tenancy] - tier: Premium - comingSoonOn: 2024-08-26 #customer-deebradel # -# ██╗███╗ ██╗████████╗███████╗ ██████╗ ██████╗ █████╗ ████████╗██╗ ██████╗ ███╗ ██╗███████╗ -# ██║████╗ ██║╚══██╔══╝██╔════╝██╔════╝ ██╔══██╗██╔══██╗╚══██╔══╝██║██╔═══██╗████╗ ██║██╔════╝ -# ██║██╔██╗ ██║ ██║ █████╗ ██║ ███╗██████╔╝███████║ ██║ ██║██║ ██║██╔██╗ ██║███████╗ -# ██║██║╚██╗██║ ██║ ██╔══╝ ██║ ██║██╔══██╗██╔══██║ ██║ ██║██║ ██║██║╚██╗██║╚════██║ -# ██║██║ ╚████║ ██║ ███████╗╚██████╔╝██║ ██║██║ ██║ ██║ ██║╚██████╔╝██║ ╚████║███████║ -# ╚═╝╚═╝ ╚═══╝ ╚═╝ ╚══════╝ ╚═════╝ ╚═╝ ╚═╝╚═╝ ╚═╝ ╚═╝ ╚═╝ ╚═════╝ ╚═╝ ╚═══╝╚══════╝ -# # -# ╦═╗╔═╗╔═╗╔╦╗ ╔═╗╔═╗╦ -# ╠╦╝║╣ ╚═╗ ║ ╠═╣╠═╝║ -# ╩╚═╚═╝╚═╝ ╩ ╩ ╩╩ ╩ -- industryName: REST API - friendlyName: Automate any feature - description: - productCategories: [Endpoint operations,Device management,Vulnerability management] - pricingTableCategories: [Integrations] - usualDepartment: IT - documentationUrl: https://fleetdm.com/docs/rest-api/rest-api - screenshotSrc: - tier: Free - jamfProHasFeature: yes - jamfProtectHasFeature: yes - dri: rachaelshaw # -# ╦ ╦╔═╗╔╗ ╦ ╦╔═╗╔═╗╦╔═╔═╗ -# ║║║║╣ ╠╩╗╠═╣║ ║║ ║╠╩╗╚═╗ -# ╚╩╝╚═╝╚═╝╩ ╩╚═╝╚═╝╩ ╩╚═╝ -- industryName: Webhooks - friendlyName: Automations - documentationUrl: https://fleetdm.com/docs/using-fleet/automations#automations - productCategories: [Endpoint operations,Device management,Vulnerability management] - pricingTableCategories: [Integrations] - usualDepartment: IT - tier: Free - jamfProHasFeature: yes - jamfProtectHasFeature: yes # -# ╔═╗╔═╗╔╦╗╔╦╗╔═╗╔╗╔╔╦╗ ╦ ╦╔╗╔╔═╗ ╔╦╗╔═╗╔═╗╦ ┌─ ╔═╗╦ ╦ ─┐ -# ║ ║ ║║║║║║║╠═╣║║║ ║║ ║ ║║║║║╣ ║ ║ ║║ ║║ │ ║ ║ ║ │ -# ╚═╝╚═╝╩ ╩╩ ╩╩ ╩╝╚╝═╩╝ ╩═╝╩╝╚╝╚═╝ ╩ ╚═╝╚═╝╩═╝ └─ ╚═╝╩═╝╩ ─┘ -- industryName: Command line tool (CLI) - friendlyName: fleetctl - documentationUrl: https://fleetdm.com/docs/using-fleet/fleetctl-cli - productCategories: [Endpoint operations,Device management] - pricingTableCategories: [Integrations] - usualDepartment: IT - tier: Free - jamfProHasFeature: yes - jamfProtectHasFeature: yes -# -# ╔═╗╦═╗╔═╗╔╗╔╔╦╗ ╔═╗╔═╗╦ ╔═╗╔╗╔╦ ╦ ╦ ╔═╗╔═╗╔═╗╔═╗╔═╗╔═╗ -# ║ ╦╠╦╝╠═╣║║║ ║ ╠═╣╠═╝║───║ ║║║║║ ╚╦╝ ╠═╣║ ║ ║╣ ╚═╗╚═╗ -# ╚═╝╩╚═╩ ╩╝╚╝ ╩ ╩ ╩╩ ╩ ╚═╝╝╚╝╩═╝╩ ╩ ╩╚═╝╚═╝╚═╝╚═╝╚═╝ -- industryName: Grant API-only access - documentationUrl: https://fleetdm.com/docs/using-fleet/fleetctl-cli#using-fleetctl-with-an-api-only-user - productCategories: [Endpoint operations] - pricingTableCategories: [Integrations] - tier: Free - jamfProHasFeature: yes - jamfProtectHasFeature: yes -# -# ╔═╗╦╔╗╔╔═╗╦ ╔═╗ ╔═╗╦╔═╗╔╗╔ ╔═╗╔╗╔ -# ╚═╗║║║║║ ╦║ ║╣ ╚═╗║║ ╦║║║ ║ ║║║║ -# ╚═╝╩╝╚╝╚═╝╩═╝╚═╝ ╚═╝╩╚═╝╝╚╝ ╚═╝╝╚╝ -- industryName: Single sign on (SSO, SAML) - documentationUrl: https://fleetdm.com/docs/deploy/single-sign-on-sso#single-sign-on-sso - productCategories: [Endpoint operations,Device management,Vulnerability management] - pricingTableCategories: [Integrations] - usualDepartment: IT - tier: Free - jamfProHasFeature: yes - jamfProtectHasFeature: yes -# -# ╦╦ ╦╔═╗╔╦╗ ╦╔╗╔ ╔╦╗╦╔╦╗╔═╗ ╔═╗╦═╗╔═╗╦ ╦╦╔═╗╦╔═╗╔╗╔╦╔╗╔╔═╗ -# ║║ ║╚═╗ ║───║║║║───║ ║║║║║╣ ╠═╝╠╦╝║ ║╚╗╔╝║╚═╗║║ ║║║║║║║║║ ╦ -# ╚╝╚═╝╚═╝ ╩ ╩╝╚╝ ╩ ╩╩ ╩╚═╝ ╩ ╩╚═╚═╝ ╚╝ ╩╚═╝╩╚═╝╝╚╝╩╝╚╝╚═╝ -- industryName: Just-in-time (JIT) provisioning - documentationUrl: https://fleetdm.com/docs/deploy/single-sign-on-sso#just-in-time-jit-user-provisioning - productCategories: [Endpoint operations,Device management,Vulnerability management] - pricingTableCategories: [Integrations] - usualDepartment: IT - tier: Premium - jamfProHasFeature: yes - jamfProtectHasFeature: no # -# ╔╦╗╔═╗╔═╗╔═╗ ╔═╗╦ ╦╔╦╗╔═╗╔╦╗╔═╗╔╦╗╦╔═╗╔╗╔╔═╗ -# ║║║╣ ║╣ ╠═╝ ╠═╣║ ║ ║ ║ ║║║║╠═╣ ║ ║║ ║║║║╚═╗ -# ═╩╝╚═╝╚═╝╩ ╩ ╩╚═╝ ╩ ╚═╝╩ ╩╩ ╩ ╩ ╩╚═╝╝╚╝╚═╝ -- industryName: Deep automations - friendlyName: Trigger webhooks or run scripts - documentationUrl: https://fleetdm.com/docs/using-fleet/automations#automations - description: Fire off webhooks or run scripts on hosts when certain things happen in Fleet. - productCategories: [Endpoint operations,Device management,Vulnerability management] - pricingTableCategories: [Integrations] - comingSoonOn: 2024-12-31 - tier: Free - buzzwords: [Automated remediation,Auto-remediation,Self-healing] - waysToUse: - - description: Use policy automations to automatically remediate issues and mitigate vulnerabilities. - - description: Use osquery and santa to work around inflexibilities in proprietary MDMs and other protection solutions. - - description: Listen to webhooks to perform autonomous self-healing (cloud security engineering) - moreInfoUrl: https://www.fugue.co/blog/automated-remediation-scripts-vs.-self-healing-infrastructure-two-approaches-to-cloud-security +# █████╗ ██████╗ ██████╗██╗ ██╗██╗██╗ ██╗███████╗ +# ██╔══██╗██╔══██╗██╔════╝██║ ██║██║██║ ██║██╔════╝ +# ███████║██████╔╝██║ ███████║██║██║ ██║█████╗ +# ██╔══██║██╔══██╗██║ ██╔══██║██║╚██╗ ██╔╝██╔══╝ +# ██║ ██║██║ ██║╚██████╗██║ ██║██║ ╚████╔╝ ███████╗ +# ╚═╝ ╚═╝╚═╝ ╚═╝ ╚═════╝╚═╝ ╚═╝╚═╝ ╚═══╝ ╚══════╝ # -# ╦╔╗╔╔╦╗╔═╗╔═╗╦═╗╔═╗╔╦╗╦╔═╗╔╗╔╔═╗ -# ║║║║ ║ ║╣ ║ ╦╠╦╝╠═╣ ║ ║║ ║║║║╚═╗ -# ╩╝╚╝ ╩ ╚═╝╚═╝╩╚═╩ ╩ ╩ ╩╚═╝╝╚╝╚═╝ -- industryName: Integrations (Tines, Snowflake, Terraform, Chronicle, Jira, Zendesk, etc) - friendlyName: Borrow off-the-shelf tactics from the community - documentationUrl: https://fleetdm.com/integrations - productCategories: [Endpoint operations,Device management,Vulnerability management] - pricingTableCategories: [Integrations] - usualDepartment: IT - description: - moreInfoUrl: https://fleetdm.com/integrations - tier: Free - jamfProHasFeature: yes - jamfProtectHasFeature: yes - waysToUse: - - description: (ActiveDirectory) Know who opened your computer and check their device posture before you let them log into anything. - - description: (Ansible) Easily issue MDM commands and standardize data across operating systems. - - description: (AWS) Deploy your own self-managed Fleet in any AWS environment in minutes. - - description: (Azure) Deploy your own self-managed Fleet in the Microsoft Cloud in minutes. - - description: (Chef) Easily issue MDM commands and standardize data across operating systems. - - description: (Elastic) Ingest osquery data and monitor for important changes or events. - - description: (GitHub) Version control using git, enabling collaboration and a GitOps workflow. - - description: (GitLab) Version control using git, enabling collaboration and a GitOps workflow. - - description: (Chronicle) Ingest osquery data and monitor for important changes or events. - - description: (Google Cloud) Deploy your own self-managed Fleet in any GCP environment in minutes. - - description: (Munki) Easily issue MDM commands and standardize data across operating systems. - - description: (Okta) Know who opened your computer and check their device posture before you let them log into anything. - - description: (Snowflake) Ingest osquery data and monitor for important changes or events. - - description: (Splunk) Ingest osquery data and monitor for important changes or events. - - description: (Tines) Build custom workflows that trigger in various situations. - - description: (Webhooks) Configure automations that send webhooks to specific URLs when Fleet detects changes to host, policy, and CVE statuses. - - description: (Zendesk) Automatically create Zendesk tickets in various situations. - - description: (Jira) Automatically create Jira tickets in various situations, including exporting vulnerabilities to Jira and syncing tickets. - buzzwords: [Snowflake,Okta,Tines,Splunk,Elastic,AWS,ActiveDirectory,Ansible,GitHub,GitLab,Chronicle,Google Cloud,Munki,Vanta,Chef,Zendesk,Jira] # -# ╔═╗╦═╗╔═╗╔╦╗╦╦ ╦╔╦╗ ╦╔╗╔╔╦╗╔═╗╔═╗╦═╗╔═╗╔╦╗╦╔═╗╔╗╔╔═╗ -# ╠═╝╠╦╝║╣ ║║║║║ ║║║║ ║║║║ ║ ║╣ ║ ╦╠╦╝╠═╣ ║ ║║ ║║║║╚═╗ -# ╩ ╩╚═╚═╝╩ ╩╩╚═╝╩ ╩ ╩╝╚╝ ╩ ╚═╝╚═╝╩╚═╩ ╩ ╩ ╩╚═╝╝╚╝╚═╝ -- industryName: Premium integrations (Puppet, Vanta, etc) - friendlyName: Borrow off-the-shelf tactics from legendary brands - documentationUrl: https://fleetdm.com/integrations - description: Plug Fleet into other frameworks and tools. - productCategories: [Endpoint operations,Device management,Vulnerability management] - pricingTableCategories: [Integrations] - usualDepartment: IT - moreInfoUrl: https://fleetdm.com/integrations - tier: Premium - waysToUse: - - description: (Vanta) Trigger a workflow based on a failing policy. - - description: (Puppet) Easily issue MDM commands, standardize data across operating systems, and map macOS+Windows settings to computers with the Puppet module. - - description: (Torq) Build custom workflows that trigger in various situations. - - description: (Custom IdP) Manage access to Fleet single sign-on (SSO) through any IdP (using SAML). - buzzwords: [Vanta,Puppet,Custom IdP] -# -# ╔╦╗╦ ╦╔╗╔╦╔═╦ ╔═╗╔═╗╔╦╗╔═╗╔═╗╔╦╗╦╔╗ ╦╦ ╦╔╦╗╦ ╦ -# ║║║║ ║║║║╠╩╗║ ║ ║ ║║║║╠═╝╠═╣ ║ ║╠╩╗║║ ║ ║ ╚╦╝ -# ╩ ╩╚═╝╝╚╝╩ ╩╩ ╚═╝╚═╝╩ ╩╩ ╩ ╩ ╩ ╩╚═╝╩╩═╝╩ ╩ ╩ -- industryName: Munki compatibility + visibility - tier: Premium - jamfProHasFeature: yes - jamfProtectHasFeature: yes - usualDepartment: IT - productCategories: [Device management] - pricingTableCategories: [Integrations] +# # ╔╦╗╔═╗╔╦╗╔═╗╔═╗╔╦╗╦╔═╗╔╗╔ ╔═╗╔╗╔╔═╗╦╔╗╔╔═╗╔═╗╦═╗╦╔╗╔╔═╗ +# # ║║║╣ ║ ║╣ ║ ║ ║║ ║║║║ ║╣ ║║║║ ╦║║║║║╣ ║╣ ╠╦╝║║║║║ ╦ +# # ═╩╝╚═╝ ╩ ╚═╝╚═╝ ╩ ╩╚═╝╝╚╝ ╚═╝╝╚╝╚═╝╩╝╚╝╚═╝╚═╝╩╚═╩╝╚╝╚═╝ +# - industryName: Detection engineering +# friendlyName: # Ship logs to your data lake and comopare with known bad binary hashes or capture behavioral data and build custom detections (e.g. using a framework like MITRE) +# description: +# documentationUrl: https://fleetdm.com/docs/using-fleet/log-destinations +# tier: Free +# jamfProHasFeature: no +# jamfProtectHasFeature: yes +# dri: mikermcneil +# usualDepartment: Security +# productCategories: [Endpoint operations] +# pricingTableCategories: [Devices] +# buzzwords: [Security analytics,Behavioral analytics,MITRE ATT&CK,Tactics techniques and procedures (TTPs),Security information and event management (SIEM)] +# demos: +# - description: +# moreInfoUrl: +# waysToUse: +# - description: # +# +# # ╦╔╗╔╔╦╗╦═╗╦ ╦╔═╗╔╦╗╦╔═╗╔╗╔ ╔╦╗╔═╗╔╦╗╔═╗╔═╗╔╦╗╦╔═╗╔╗╔ +# # ║║║║ ║ ╠╦╝║ ║╚═╗ ║ ║║ ║║║║ ║║║╣ ║ ║╣ ║ ║ ║║ ║║║║ +# # ╩╝╚╝ ╩ ╩╚═╚═╝╚═╝ ╩ ╩╚═╝╝╚╝ ═╩╝╚═╝ ╩ ╚═╝╚═╝ ╩ ╩╚═╝╝╚╝ +# - industryName: Intrusion detection +# friendlyName: Build custom query and policy automations to detect suspicious behavior +# description: Send webhooks and ship logs to detect intrusions and issues with devices. +# documentationUrl: https://fleetdm.com/docs/using-fleet/log-destinations +# tier: Free +# jamfProHasFeature: no +# jamfProtectHasFeature: yes +# usualDepartment: Security +# productCategories: [Endpoint operations] +# pricingTableCategories: [Devices] +# buzzwords: [Host-based intrusion detection system (HIDS,Indicators of Compromise (IOCs),Feeder for SIEM] +# demos: +# - description: A top media company wanted to share more security data with other departments without slowing down hosts. +# waysToUse: +# - description: Send webhooks to generate alerts when an IOC is detected on one or more devices. +# - description: Ship logs to Splunk, Snowflake, and other SIEMs to build a host-based intrusion detection system (HIDS). +# - description: Synchronize live state of endpoints to a data lake or SIEM in a consistent shape. +# - description: Export the data to other systems +# moreInfoUrl: https://docs.google.com/document/d/1pE9U-1E4YDiy6h4TorszrTOiFAauFiORikSUFUqW7Pk/edit +# - description: Export data to a third-party SIEM tool +# moreInfoUrl: https://www.websense.com/content/support/library/web/hosted/admin_guide/siem_integration_explain.aspx +# - description: Gather data and log events from endpoints +# moreInfoUrl: https://techbeacon.com/security/how-osquery-can-lift-your-security-teams-game#:~:text=%22If%20security%20teams%20didn%27t%20have%20osquery%2C%20they%20would%20have%20to%20find%20a%20way%20to%20manually%20go%20into%20each%20endpoint%20and%20gather%20data%2C%20or%20buy%20a%20third%2Dparty%20tool%20to%20do%20that%20for%20them +# +# # ╔╦╗╦ ╦╦═╗╔═╗╔═╗╔╦╗ ╦ ╦╦ ╦╔╗╔╔╦╗╦╔╗╔╔═╗ +# # ║ ╠═╣╠╦╝║╣ ╠═╣ ║ ╠═╣║ ║║║║ ║ ║║║║║ ╦ +# # ╩ ╩ ╩╩╚═╚═╝╩ ╩ ╩ ╩ ╩╚═╝╝╚╝ ╩ ╩╝╚╝╚═╝ +# - industryName: Threat hunting +# friendlyName: # TODO: live query +# description: +# documentationUrl: https://fleetdm.com/queries +# tier: Free +# jamfProHasFeature: no +# jamfProtectHasFeature: yes +# dri: mikermcneil +# usualDepartment: Security +# productCategories: [Endpoint operations] +# pricingTableCategories: [Devices] +# buzzwords: [] +# demos: +# - description: +# moreInfoUrl: +# waysToUse: +# - description: +# +# +# # ╔╦╗╔═╗╔╦╗╔═╗╔═╗╔╦╗ ╔═╗╔╗╔╔╦╗ ╔═╗╦ ╦╦═╗╔═╗╔═╗╔═╗╔═╗ ╦╔═╗╔═╗╦ ╦╔═╗╔═╗ ╦ ╦╦╔╦╗╦ ╦ +# # ║║║╣ ║ ║╣ ║ ║ ╠═╣║║║ ║║ ╚═╗║ ║╠╦╝╠╣ ╠═╣║ ║╣ ║╚═╗╚═╗║ ║║╣ ╚═╗ ║║║║ ║ ╠═╣ +# # ═╩╝╚═╝ ╩ ╚═╝╚═╝ ╩ ╩ ╩╝╚╝═╩╝ ╚═╝╚═╝╩╚═╚ ╩ ╩╚═╝╚═╝ ╩╚═╝╚═╝╚═╝╚═╝╚═╝ ╚╩╝╩ ╩ ╩ ╩ +# # ╔╦╗╔═╗╦ ╦╦╔═╗╔═╗╔═╗ +# # ║║║╣ ╚╗╔╝║║ ║╣ ╚═╗ +# # ═╩╝╚═╝ ╚╝ ╩╚═╝╚═╝╚═╝ +# - industryName: Detect and surface issues with devices (policies) +# documentationUrl: https://fleetdm.com/docs/get-started/anatomy#policy +# productCategories: [Endpoint operations,Device management] +# pricingTableCategories: [Devices] +# usualDepartment: IT +# tier: Free +# jamfProHasFeature: yes +# jamfProtectHasFeature: yes +# +# +# # ╔╗ ╔═╗╔╦╗╔═╗╦ ╦ ╦╔╗╔╔═╗╔╦╗╔═╗╦ ╦ ╔═╗╔╦╗╦╔═╗╔╗╔ +# # ╠╩╗╠═╣ ║ ║ ╠═╣ ║║║║╚═╗ ║ ╠═╣║ ║ ╠═╣ ║ ║║ ║║║║ +# # ╚═╝╩ ╩ ╩ ╚═╝╩ ╩ ╩╝╚╝╚═╝ ╩ ╩ ╩╩═╝╩═╝╩ ╩ ╩ ╩╚═╝╝╚╝ +# - industryName: Batch installation (Chef, Ansible, Puppet, MDM) +# friendlyName: Install agents over the air +# documentationUrl: https://fleetdm.com/docs/using-fleet/enroll-hosts +# tier: Free +# jamfProHasFeature: no +# jamfProtectHasFeature: no +# productCategories: [Endpoint operations] +# pricingTableCategories: [Devices] +# usualDepartment: IT +# +# +# # ╦ ╦╦ ╦╦ ╔╗╔╔═╗╦═╗╔═╗╔╗ ╦╦ ╦╔╦╗╦ ╦ ╔╦╗╔═╗╔═╗╦ ╦╔╗ ╔═╗╔═╗╦═╗╔╦╗ +# # ╚╗╔╝║ ║║ ║║║║╣ ╠╦╝╠═╣╠╩╗║║ ║ ║ ╚╦╝ ║║╠═╣╚═╗╠═╣╠╩╗║ ║╠═╣╠╦╝ ║║ +# # ╚╝ ╚═╝╩═╝╝╚╝╚═╝╩╚═╩ ╩╚═╝╩╩═╝╩ ╩ ╩ ═╩╝╩ ╩╚═╝╩ ╩╚═╝╚═╝╩ ╩╩╚══╩╝ +# - industryName: Vulnerability dashboard +# friendlyName: Vulnerability dashboard +# documentationUrl: https://fleetdm.com/vulnerability-management +# productCategories: [Vulnerability management] +# pricingTableCategories: [Devices] +# usualDepartment: Security +# tier: Premium +# jamfProHasFeature: no +# jamfProtectHasFeature: yes +# demos: +# - description: See a list of all vulnerabilities across your hosts. +# moreInfoUrl: https://github.com/fleetdm/fleet/issues/15919 +# - description: AI generated CVSS v4 context. Coming soon (2024-12-31). +# waysToUse: +# - description: Easily communicate to executives regarding the progress of patching vulnerable software. Only show vulnerabilities that you care about. +# +# +# # ╔═╗╦ ╔═╗╔═╗╔╗╔╔═╗╦═╗╔═╗╔╦╗╔═╗╔╦╗ ╔╦╗╔═╗╔═╗╔═╗╦═╗╦╔═╗╔╦╗╦╔═╗╔╗╔╔═╗ +# # ╠═╣║───║ ╦║╣ ║║║║╣ ╠╦╝╠═╣ ║ ║╣ ║║ ║║║╣ ╚═╗║ ╠╦╝║╠═╝ ║ ║║ ║║║║╚═╗ +# # ╩ ╩╩ ╚═╝╚═╝╝╚╝╚═╝╩╚═╩ ╩ ╩ ╚═╝═╩╝ ═╩╝╚═╝╚═╝╚═╝╩╚═╩╩ ╩ ╩╚═╝╝╚╝╚═╝ +# - industryName: AI-generated descriptions (optional) +# description: Optionally use AI to explain why your security policies matter. +# documentationUrl: https://github.com/fleetdm/fleet/issues/18187 +# tier: Free +# jamfProHasFeature: no +# jamfProtectHasFeature: no +# productCategories: [Endpoint operations] +# pricingTableCategories: [Devices] +# +# +# CONSOLIDATED WITH DEVICE HEALTH +# # ╔═╗╦ ╦╔╦╗╔═╗╔╦╗╔═╗╔╦╗╦╔═╗ ╔═╗╔═╗╔═╗╔╦╗╦ ╦╦═╗╔═╗ ╔═╗╔═╗╔═╗╔═╗╔═╗╔═╗╔╦╗╔═╗╔╗╔╔╦╗ +# # ╠═╣║ ║ ║ ║ ║║║║╠═╣ ║ ║║ ╠═╝║ ║╚═╗ ║ ║ ║╠╦╝║╣ ╠═╣╚═╗╚═╗║╣ ╚═╗╚═╗║║║║╣ ║║║ ║ +# # ╩ ╩╚═╝ ╩ ╚═╝╩ ╩╩ ╩ ╩ ╩╚═╝ ╩ ╚═╝╚═╝ ╩ ╚═╝╩╚═╚═╝ ╩ ╩╚═╝╚═╝╚═╝╚═╝╚═╝╩ ╩╚═╝╝╚╝ ╩ +# - industryName: Automatic posture assessment +# friendlyName: Verify any security or compliance goal +# description: Simplify security audits, build definitive reports, and discover + verify ongoing compliance for every endpoint, from workstations to data centers. +# documentationUrl: https://fleetdm.com/docs/using-fleet/cis-benchmarks#cis-benchmarks +# screenshotSrc: +# usualDepartment: Security +# tier: Free +# jamfProHasFeature: no +# jamfProtectHasFeature: yes +# productCategories: [Endpoint operations] +# pricingTableCategories: [Devices] +# dri: mikermcneil +# demos: +# - description: A large tech company used Fleet's CIS Benchmark policies to automatically assess posuture of 80,000 endpoints. +# quote: +# moreInfoUrl: +# buzzwords: [Attack surface management (ASM),Endpoint hardening,Security posture,Cyber hygiene,Anomaly detection,Configuration management,Attack Surface Monitoring,Policy assessment] +# waysToUse: +# # Consolidated ways to use with "Device health" +# +# +# CONSOLIDATED WITH DEVICE HEALTH +# # ╔═╗╔═╗╦ ╦╔═╗╦ ╦ ╔═╗╔═╗╔═╗╦═╗╦╔╗╔╔═╗ +# # ╠═╝║ ║║ ║║ ╚╦╝ ╚═╗║ ║ ║╠╦╝║║║║║ ╦ +# # ╩ ╚═╝╩═╝╩╚═╝ ╩ ╚═╝╚═╝╚═╝╩╚═╩╝╚╝╚═╝ +# - industryName: Policy scoring +# documentationUrl: +# friendlyName: Mark policies as critical +# productCategories: [Endpoint operations,Device management] +# pricingTableCategories: [Devices] +# usualDepartment: IT +# tier: Premium +# jamfProHasFeature: no +# jamfProtectHasFeature: no +# waysToUse: +# # Consolidated ways to use with "Device health" +# +# +# CONSOLIDATED WITH TEAMS +# # ╦ ╦╔═╗╦═╗╦╔═╗╔╗ ╦ ╔═╗ ╔═╗╔╗╔╦═╗╔═╗╦ ╦ ╔╦╗╔═╗╔╗╔╔╦╗ +# # ╚╗╔╝╠═╣╠╦╝║╠═╣╠╩╗║ ║╣ ║╣ ║║║╠╦╝║ ║║ ║ ║║║║╣ ║║║ ║ +# # ╚╝ ╩ ╩╩╚═╩╩ ╩╚═╝╩═╝╚═╝ ╚═╝╝╚╝╩╚═╚═╝╩═╝╩═╝╩ ╩╚═╝╝╚╝ ╩ +# - industryName: Variable enrollment +# description: Enroll hosts in different groups using different enrollment secrets and/or installers per-baseline. +# documentationUrl: https://fleetdm.com/docs/using-fleet/segment-hosts +# tier: Premium +# jamfProHasFeature: yes +# jamfProtectHasFeature: no +# productCategories: [Endpoint operations, Device management] +# pricingTableCategories: [Devices] +# usualDepartment: IT +# +# +# # ╔═╗╔═╗╔═╗╔╗╔╔╦╗ ╔═╗╦ ╦╔╦╗╔═╗ ╦ ╦╔═╗╔╦╗╔═╗╔╦╗╔═╗ +# # ╠═╣║ ╦║╣ ║║║ ║ ╠═╣║ ║ ║ ║ ║───║ ║╠═╝ ║║╠═╣ ║ ║╣ +# # ╩ ╩╚═╝╚═╝╝╚╝ ╩ ╩ ╩╚═╝ ╩ ╚═╝ ╚═╝╩ ═╩╝╩ ╩ ╩ ╚═╝ +# - industryName: Agent auto-update (optional) +# friendlyName: Keep agents and extensions up to date +# description: Optionally keep agents and extensions up to date automatically using Fleet's free update registry, powered by The Update Framework (TUF). +# documentationUrl: https://fleetdm.com/docs/using-fleet/enroll-hosts +# tier: Free +# jamfProHasFeature: yes +# jamfProtectHasFeature: no +# productCategories: [Endpoint operations] +# pricingTableCategories: [Devices] +# usualDepartment: IT +# +# +# # ╔╦╗╔═╗╔═╗╔═╗ ╔═╗╦ ╦╔╦╗╔═╗╔╦╗╔═╗╔╦╗╦╔═╗╔╗╔╔═╗ +# # ║║║╣ ║╣ ╠═╝ ╠═╣║ ║ ║ ║ ║║║║╠═╣ ║ ║║ ║║║║╚═╗ +# # ═╩╝╚═╝╚═╝╩ ╩ ╩╚═╝ ╩ ╚═╝╩ ╩╩ ╩ ╩ ╩╚═╝╝╚╝╚═╝ +# - industryName: Deep automations +# friendlyName: Trigger webhooks or run scripts +# documentationUrl: https://fleetdm.com/docs/using-fleet/automations#automations +# description: Fire off webhooks or run scripts on hosts when certain things happen in Fleet. +# productCategories: [Endpoint operations,Device management,Vulnerability management] +# pricingTableCategories: [Integrations] +# comingSoonOn: 2024-12-31 +# tier: Free +# buzzwords: [Automated remediation,Auto-remediation,Self-healing] +# waysToUse: +# - description: Use policy automations to automatically remediate issues and mitigate vulnerabilities. +# - description: Use osquery and santa to work around inflexibilities in proprietary MDMs and other protection solutions. +# - description: Listen to webhooks to perform autonomous self-healing (cloud security engineering) +# moreInfoUrl: https://www.fugue.co/blog/automated-remediation-scripts-vs.-self-healing-infrastructure-two-approaches-to-cloud-security +# +# +# CONSOLIDATED WITH "SELF-SERVICE APPLICATION INSTALLATION" +# # ╦╔╗╔╔═╗╔╦╗╔═╗╦ ╦ ╔═╗╦═╗╔═╗ +# # ║║║║╚═╗ ║ ╠═╣║ ║ ║╣ ╠╦╝╚═╗ +# # ╩╝╚╝╚═╝ ╩ ╩ ╩╩═╝╩═╝╚═╝╩╚═╚═╝ +# - industryName: Installers (self-service) +# tier: Free +# jamfProHasFeature: yes +# jamfProtectHasFeature: no +# productCategories: [Endpoint operations] +# pricingTableCategories: [Devices] +# usualDepartment: IT +# documentationUrl: https://fleetdm.com/docs/using-fleet/enroll-hosts +# waysToUse: +# CONSOLIDATED WITH "SELF-SERVICE APPLICATION INSTALLATION" +# +# +# CONSOLIDATED WITH "POLICIES" # ╔╦╗╦═╗╦╔═╗╔═╗╔═╗╦═╗ ╔═╗ ╦ ╦╔═╗╦═╗╦╔═╔═╗╦ ╔═╗╦ ╦ ╔╗ ╔═╗╔═╗╔═╗╔╦╗ ╔═╗╔╗╔ ╔═╗ # ║ ╠╦╝║║ ╦║ ╦║╣ ╠╦╝ ╠═╣ ║║║║ ║╠╦╝╠╩╗╠╣ ║ ║ ║║║║ ╠╩╗╠═╣╚═╗║╣ ║║ ║ ║║║║ ╠═╣ # ╩ ╩╚═╩╚═╝╚═╝╚═╝╩╚═ ╩ ╩ ╚╩╝╚═╝╩╚═╩ ╩╚ ╩═╝╚═╝╚╩╝ ╚═╝╩ ╩╚═╝╚═╝═╩╝ ╚═╝╝╚╝ ╩ ╩ # ╔═╗╔═╗╦╦ ╦╔╗╔╔═╗ ╔═╗╔═╗╦ ╦╔═╗╦ ╦ # ╠╣ ╠═╣║║ ║║║║║ ╦ ╠═╝║ ║║ ║║ ╚╦╝ # ╚ ╩ ╩╩╩═╝╩╝╚╝╚═╝ ╩ ╚═╝╩═╝╩╚═╝ ╩ -- industryName: Trigger a workflow based on a failing policy - documentationUrl: https://fleetdm.com/docs/using-fleet/automations#policy-automations - productCategories: [Endpoint operations,Device management] - pricingTableCategories: [Integrations] - usualDepartment: IT - tier: Free - jamfProHasFeature: yes - jamfProtectHasFeature: no +# - industryName: Trigger a workflow based on a failing policy +# documentationUrl: https://fleetdm.com/docs/using-fleet/automations#policy-automations +# productCategories: [Endpoint operations,Device management] +# pricingTableCategories: [Integrations] +# usualDepartment: IT +# tier: Free +# jamfProHasFeature: yes +# jamfProtectHasFeature: no +# +# +# CONSOLIDATED WITH "DEVICE INVENTORY" +# # ╦ ╦╔═╗╦═╗╔╦╗╦ ╦╔═╗╦═╗╔═╗ ╦╔╗╔╦ ╦╔═╗╔╗╔╔╦╗╔═╗╦═╗╦ ╦ +# # ╠═╣╠═╣╠╦╝ ║║║║║╠═╣╠╦╝║╣ ║║║║╚╗╔╝║╣ ║║║ ║ ║ ║╠╦╝╚╦╝ +# # ╩ ╩╩ ╩╩╚══╩╝╚╩╝╩ ╩╩╚═╚═╝ ╩╝╚╝ ╚╝ ╚═╝╝╚╝ ╩ ╚═╝╩╚═ ╩ +# - industryName: Hardware inventory +# documentationUrl: https://fleetdm.com/tables/system_info +# productCategories: [Endpoint operations,Device management,Vulnerability management] +# pricingTableCategories: [Devices] +# tier: Free +# jamfProHasFeature: yes +# jamfProtectHasFeature: no +# waysToUse: +# - description: Implement hardware and infrastructure inventory recommendations from the SANS 20 / CIS 18. +# moreInfoUrl: https://docs.google.com/document/d/1E6EQMMqrsRc6Z3YsR6Q33OaF9eAa8zLNaz4K2YzFdyo/edit#heading=h.7en766pueek4 +# + +# CONSOLIDATED WITH "DEVICE INVENTORY" +# # ╔╦╗╔═╗╦ ╦╦╔═╗╔═╗ ╦╔╗╔╦ ╦╔═╗╔╗╔╔╦╗╔═╗╦═╗╦ ╦ ╔╦╗╔═╗╔═╗╦ ╦╔╗ ╔═╗╔═╗╦═╗╔╦╗ +# # ║║║╣ ╚╗╔╝║║ ║╣ ║║║║╚╗╔╝║╣ ║║║ ║ ║ ║╠╦╝╚╦╝ ║║╠═╣╚═╗╠═╣╠╩╗║ ║╠═╣╠╦╝ ║║ +# # ═╩╝╚═╝ ╚╝ ╩╚═╝╚═╝ ╩╝╚╝ ╚╝ ╚═╝╝╚╝ ╩ ╚═╝╩╚═ ╩ ═╩╝╩ ╩╚═╝╩ ╩╚═╝╚═╝╩ ╩╩╚══╩╝ +# - industryName: Device inventory dashboard +# documentationUrl: +# productCategories: [Endpoint operations,Device management] +# pricingTableCategories: [Devices] +# usualDepartment: IT +# tier: Free +# jamfProHasFeature: yes +# jamfProtectHasFeature: yes +# +# +# CONSOLIDATED WITH "DEVICE INVENTORY" +# # ╔═╗╔═╗╔═╗╔╦╗╦ ╦╔═╗╦═╗╔═╗ ╦╔╗╔╦ ╦╔═╗╔╗╔╔╦╗╔═╗╦═╗╦ ╦ +# # ╚═╗║ ║╠╣ ║ ║║║╠═╣╠╦╝║╣ ║║║║╚╗╔╝║╣ ║║║ ║ ║ ║╠╦╝╚╦╝ +# # ╚═╝╚═╝╚ ╩ ╚╩╝╩ ╩╩╚═╚═╝ ╩╝╚╝ ╚╝ ╚═╝╝╚╝ ╩ ╚═╝╩╚═ ╩ +# - industryName: Software inventory +# documentationUrl: https://fleetdm.com/docs/get-started/anatomy#software-library +# tier: Free +# jamfProHasFeature: yes +# jamfProtectHasFeature: no +# productCategories: [Endpoint operations,Device management,Vulnerability management] +# pricingTableCategories: [Devices] +# waysToUse: +# - description: Implement software inventory recommendations from the SANS 20 / CIS 18. +# moreInfoUrl: https://docs.google.com/document/d/1E6EQMMqrsRc6Z3YsR6Q33OaF9eAa8zLNaz4K2YzFdyo/edit#heading=h.7en766pueek4 +# - description: View a list of all software and their versions installed on all your hosts. +# - description: View a list of software rolled up by title. +# moreInfoUrl: https://github.com/fleetdm/fleet/issues/14674 +# # +# +# CONSOLIDATED WITH "DEVICE INVENTORY" +# # ╔╗ ╦═╗╔═╗╦ ╦╔═╗╔═╗ ╦╔╗╔╔═╗╔╦╗╔═╗╦ ╦ ╔═╗╔╦╗ ╔═╗╔═╗╔═╗╔╦╗╦ ╦╔═╗╦═╗╔═╗ ╔═╗╔═╗╔═╗╦╔═╔═╗╔═╗╔═╗╔═╗ +# # ╠╩╗╠╦╝║ ║║║║╚═╗║╣ ║║║║╚═╗ ║ ╠═╣║ ║ ║╣ ║║ ╚═╗║ ║╠╣ ║ ║║║╠═╣╠╦╝║╣ ╠═╝╠═╣║ ╠╩╗╠═╣║ ╦║╣ ╚═╗ +# # ╚═╝╩╚═╚═╝╚╩╝╚═╝╚═╝ ╩╝╚╝╚═╝ ╩ ╩ ╩╩═╝╩═╝╚═╝═╩╝ ╚═╝╚═╝╚ ╩ ╚╩╝╩ ╩╩╚═╚═╝ ╩ ╩ ╩╚═╝╩ ╩╩ ╩╚═╝╚═╝╚═╝ +# - industryName: Browse installed software packages +# documentationUrl: https://fleetdm.com/docs/rest-api/rest-api#software +# productCategories: [Endpoint operations,Device management,Vulnerability management] +# pricingTableCategories: [Devices] +# tier: Free +# jamfProHasFeature: yes +# jamfProtectHasFeature: no +# +# +# CONSOLIDATED WITH "SEARCH INVENTORY" +# # ╔═╗╔═╗╔═╗╦═╗╔═╗╦ ╦ ╔╦╗╔═╗╦ ╦╦╔═╗╔═╗╔═╗ ╔╗ ╦ ╦ ╦╔═╗ ╔═╗╔═╗╦═╗╦╔═╗╦ +# # ╚═╗║╣ ╠═╣╠╦╝║ ╠═╣ ║║║╣ ╚╗╔╝║║ ║╣ ╚═╗ ╠╩╗╚╦╝ ║╠═╝ ╚═╗║╣ ╠╦╝║╠═╣║ +# # ╚═╝╚═╝╩ ╩╩╚═╚═╝╩ ╩ ═╩╝╚═╝ ╚╝ ╩╚═╝╚═╝╚═╝ ╚═╝ ╩ ╩╩┘ ╚═╝╚═╝╩╚═╩╩ ╩╩═╝┘ +# # ╦ ╦╔═╗╔═╗╔╦╗╔╗╔╔═╗╔╦╗╔═╗ ╦ ╦╦ ╦╦╔╦╗ +# # ╠═╣║ ║╚═╗ ║ ║║║╠═╣║║║║╣ ║ ║║ ║║ ║║ +# # ╩ ╩╚═╝╚═╝ ╩ ╝╚╝╩ ╩╩ ╩╚═╝┘ ╚═╝╚═╝╩═╩╝ +# - industryName: Search devices by IP, serial, hostname, UUID +# documentationUrl: https://fleetdm.com/docs/rest-api/rest-api#hosts +# productCategories: [Endpoint operations,Device management] +# pricingTableCategories: [Devices] +# tier: Free +# jamfProHasFeature: yes +# jamfProtectHasFeature: yes +# \ No newline at end of file diff --git a/website/api/controllers/view-pricing.js b/website/api/controllers/view-pricing.js index 7d07b6b770..5cef7739c3 100644 --- a/website/api/controllers/view-pricing.js +++ b/website/api/controllers/view-pricing.js @@ -29,7 +29,7 @@ module.exports = { let pricingTable = []; - let pricingTableCategories = ['Deployment', 'Device management', 'Endpoint operations', 'Vulnerability management', 'Integrations', 'Support']; + let pricingTableCategories = ['Deployment', 'Configuration', 'Devices', 'Integrations', 'Support']; for(let category of pricingTableCategories) { // Get all the features in that have a pricingTableFeatures array that contains this category. let featuresInThisCategory = _.filter(pricingTableFeatures, (feature)=>{ @@ -45,7 +45,7 @@ module.exports = { } let pricingTableForSecurity = []; - let categoryOrderForSecurityPricingTable = ['Support', 'Deployment', 'Integrations', 'Endpoint operations', 'Vulnerability management']; + let categoryOrderForSecurityPricingTable = ['Deployment', 'Configuration', 'Devices', 'Integrations', 'Support']; for(let category of categoryOrderForSecurityPricingTable) { // Get all the features in that have a pricingTableFeatures array that contains this category. let featuresInThisCategory = _.filter(pricingTableFeatures, (feature)=>{ @@ -61,7 +61,7 @@ module.exports = { } - let categoryOrderForITPricingTable = [ 'Deployment','Device management', 'Endpoint operations', 'Integrations', 'Support']; + let categoryOrderForITPricingTable = ['Deployment', 'Configuration', 'Devices', 'Integrations', 'Support']; let pricingTableForIt = []; // Sort the IT-focused pricing table from the order of the elements in the categoryOrderForITPricingTable array. for(let category of categoryOrderForITPricingTable) { diff --git a/website/scripts/build-static-content.js b/website/scripts/build-static-content.js index abb1276359..eaa40900b3 100644 --- a/website/scripts/build-static-content.js +++ b/website/scripts/build-static-content.js @@ -845,7 +845,7 @@ module.exports = { let yaml = await sails.helpers.fs.read(path.join(topLvlRepoPath, RELATIVE_PATH_TO_PRICING_TABLE_YML_IN_FLEET_REPO)).intercept('doesNotExist', (err)=>new Error(`Could not find pricing table features YAML file at "${RELATIVE_PATH_TO_PRICING_TABLE_YML_IN_FLEET_REPO}". Was it accidentally moved? Raw error: `+err.message)); let pricingTableFeatures = YAML.parse(yaml, {prettyErrors: true}); let VALID_PRODUCT_CATEGORIES = ['Endpoint operations', 'Device management', 'Vulnerability management']; - let VALID_PRICING_TABLE_CATEGORIES = ['Support', 'Deployment', 'Integrations', 'Endpoint operations', 'Device management', 'Vulnerability management']; + let VALID_PRICING_TABLE_CATEGORIES = ['Support', 'Deployment', 'Integrations', 'Configuration', 'Devices', 'Vulnerability management']; let VALID_PRICING_TABLE_KEYS = ['industryName', 'description', 'documentationUrl', 'tier', 'jamfProHasFeature', 'jamfProtectHasFeature', 'usualDepartment', 'productCategories', 'pricingTableCategories', 'waysToUse', 'buzzwords', 'demos', 'dri', 'friendlyName', 'moreInfoUrl', 'comingSoonOn', 'screenshotSrc', 'isExperimental']; for(let feature of pricingTableFeatures){ // Throw an error if a feature contains an unrecognized key. diff --git a/website/views/pages/pricing.ejs b/website/views/pages/pricing.ejs index 99f35ad993..fe63075707 100644 --- a/website/views/pages/pricing.ejs +++ b/website/views/pages/pricing.ejs @@ -80,7 +80,7 @@ - + <%if(pricingTable.indexOf(category) === 0) {%>

<%- category.categoryName %>

<%- category.categoryName %>
Free @@ -122,7 +122,7 @@ <%// Mobile features tables %>
-

{{category.categoryName}}

+
{{category.categoryName}}
@@ -152,7 +152,7 @@ - + <%if(pricingTableForIt.indexOf(category) === 0) {%>

<%- category.categoryName %>

<%- category.categoryName %>
Free @@ -194,7 +194,7 @@ <%// Mobile features tables %>
-

{{category.categoryName}}

+
{{category.categoryName}}
@@ -223,7 +223,7 @@ - + <%if(pricingTableForSecurity.indexOf(category) === 0) {%>

<%- category.categoryName %>

<%- category.categoryName %>
Free @@ -265,7 +265,7 @@ <%// Mobile features tables %>
-

{{category.categoryName}}

+
{{category.categoryName}}