Commit Graph
16191 Commits
Author SHA1 Message Date
Luke Heath 6b5f2bfe04 Fix typos and adjust layout of offsites documentation (#27796) 2025-04-02 14:55:34 -05:00
Drew Baker b18387f061 Update prevent-tampering-login-items.md (#27805)
Updating for sentence case
2025-04-02 15:33:00 -04:00
github-actions[bot]andiansltx d71c12f5a5 Update Fleet-maintained apps (#27807)
Automated ingestion of latest Fleet-maintained app data.

Co-authored-by: iansltx <472804+iansltx@users.noreply.github.com>
2025-04-02 14:17:17 -05:00
Ian Littman d2c6360edf Drop 1pw, Docker, Zoom from Windows FMA (#27806)
For #27787.
2025-04-02 14:12:57 -05:00
Luke Heath 883339889e Link to offsite process documentation (#27793) 2025-04-02 13:30:27 -05:00
Victor Lyuboslavsky 15c84b67f7 Added contributing docs for end user authentication. (#27690)
For #23236
2025-04-02 13:03:52 -05:00
RachelElysia 8957b66c55 Fleet UI: Add premium tooltip (#27794) 2025-04-02 14:00:29 -04:00
Josh Roskos 1c3ab0ca49 Update go-to-market-groups.md (#27785)
Added Github username and link.
2025-04-02 12:56:08 -05:00
Luke Heath 48962fcc9f Fix broken link (#27782) 2025-04-02 12:54:36 -05:00
Sam Pfluger 0239ae4870 Update CODEOWNERS (#27789) 2025-04-02 12:33:13 -05:00
Lucas Manuel Rodriguez e2e8c32797 Increase sleep time in verify-fleetd-base.yml (#27763)
https://github.com/fleetdm/fleet/actions/runs/14211929711
2025-04-02 14:30:04 -03:00
Jordan Montgomery a8e68dd5a9 Add JordanMontgomery to MDM Product Group (#27736) 2025-04-02 12:21:27 -05:00
Dante Catalfamo 37932e0f97 Custom targets for policies - backend (#27575)
#27277
2025-04-02 12:36:03 -04:00
Victor Lyuboslavsky 2801eab201 Tweaks to high level Fleet diagram. (#27749) 2025-04-02 11:34:51 -05:00
Noah Talerman a896ec3a8e macOS setup experience guide (#27780)
- Currently, Fleet only supports email
2025-04-02 17:53:02 +02:00
Rachael Shaw 85332ef519 Update README.md (#27751)
Accidentally exported the previous dark-mode-compatible logo without
padding; this one has the appropriate spacing.
2025-04-02 10:23:40 -05:00
Robert Fairburn 45bfbb7db7 Allow container UID/GID to be specified in helm values.yaml (#27778) 2025-04-02 10:17:52 -05:00
Allen Houchins 90e500ff1b Update minimum os versions for macOS, iOS, and iPadOS (#27777)
macOS: 15.4
  Deadline: April 26, 2025

iOS: 18.4
  Deadline: April 26, 2025

iPadOS: 18.4
  Deadline: April 26, 2025
2025-04-02 09:59:31 -05:00
github-actions[bot]andjahzielv 4db3efae50 Update Fleet-maintained apps (#27774)
Automated ingestion of latest Fleet-maintained app data.

Co-authored-by: jahzielv <19838370+jahzielv@users.noreply.github.com>
2025-04-02 09:09:18 -05:00
Noah Talerman ba605beb05 Update guide: install Windows executables (aka EXE, .exe packages) (#27286)
Plan is to link to this guide from the UI:
https://github.com/fleetdm/fleet/pull/27268
2025-04-02 09:49:22 -04:00
RachelElysia f2872c4dab Fleet UI: Disable Next when items on the page match exact page size (#27743) 2025-04-02 09:10:08 -04:00
Jordan Montgomery b487805e51 Fix several broken links (#27768)
I noticed several broken links at the stubs on the bottom of this page.
Fixed them
2025-04-02 09:00:09 -04:00
Isabell Reedy b356071d46 Small grammar change to invoicing template (#27761) 2025-04-02 07:56:58 -05:00
Mike Thomas 62dc32454f Update GitOps text on homepage (#27748)
Trying to connect website visitors to the benefits of using Fleet. This
change focuses on GitOps capabilities.
2025-04-02 07:43:23 +09:00
Lucas Manuel Rodriguez 5ddeb317dd Added dconf_read table and documentation to enable fleet desktop on Fedora and Debian (#27684)
For #20675 and #25977.

- [X] Changes file added for user-visible changes in `changes/`,
`orbit/changes/` or `ee/fleetd-chrome/changes`.
See [Changes
files](https://github.com/fleetdm/fleet/blob/main/docs/Contributing/Committing-Changes.md#changes-files)
for more information.
- [x] A detailed QA plan exists on the associated ticket (if it isn't
there, work with the product group's QA engineer to add it)
- [X] Manual QA for all new/changed functionality
- For Orbit and Fleet Desktop changes:
- [X] Make sure fleetd is compatible with the latest released version of
Fleet (see [Must
rule](https://github.com/fleetdm/fleet/blob/main/docs/Contributing/fleetd-development-and-release-strategy.md)).
- [X] Orbit runs on macOS, Linux and Windows. Check if the orbit
feature/bugfix should only apply to one platform (`runtime.GOOS`).
- [X] Manual QA must be performed in the three main OSs, macOS, Windows
and Linux.
- [x] Auto-update manual QA, from released version of component to new
version (see [tools/tuf/test](../tools/tuf/test/README.md)).
2025-04-01 18:54:22 -03:00
Eric 8a05cb6e8a Website: bump dependencies (#27742)
Closes: #27617

Changes:
- bumped `sails` `1.5.11` » `1.5.14`
- bumped `sails-hook-sockets` `3.0.0` » `3.0.2`
2025-04-01 16:43:18 -05:00
github-actions[bot]andiansltx b0d0b2217f Update Fleet-maintained apps (#27746)
Automated ingestion of latest Fleet-maintained app data.

Co-authored-by: iansltx <472804+iansltx@users.noreply.github.com>
2025-04-01 16:22:56 -05:00
Drew Baker 34d2de6c8e Introducing BYOD android (#27711) 2025-04-01 17:19:25 -04:00
Ian Littman 6be5cf55cb Fix path for go-version-file in FMA ingest job (#27744)
When Go version switched from being hardcoded to being based off of the
deps file, Fleet being checked out into a subdir wasn't taken into
account, so FMA ingest jobs started failing. This adds the (hopefully)
correct dir to fix the issue and get FMA ingest working again.
2025-04-01 16:19:21 -05:00
Rachael Shaw e6337b09c5 README: Use dark-mode-compatible logo (#27663)
### Before:
![Screenshot 2025-03-28 at 4 38
41 PM](https://github.com/user-attachments/assets/dd334bfd-5fc3-4005-a6e3-243ce07c3bf0)


### After:
![Screenshot 2025-03-28 at 4 37
51 PM](https://github.com/user-attachments/assets/2fc58754-b52d-4816-96f4-4fd82318f1bc)
2025-04-01 15:55:04 -05:00
Allen Houchinsandallenhouchins 3255caba40 Update 1Password macOS version number to 8.10.70 (#27740)
Co-authored-by: allenhouchins <allen@fleetdm.com>
2025-04-01 15:47:47 -05:00
Eric a7a6106ccd Website: Remove CTA banner (#27734)
Context:
https://fleetdm.slack.com/archives/C058S8PFSK0/p1743449393480089

Changes:
- Removed the CTA banner on the homepage.
2025-04-01 15:39:58 -05:00
Eric b0e53028d6 Website: update height of platform icons on policy pages. (#27718)
Changes:
- Removed extra whitespace from the platform icons on the policy details
page that was caused by the wrapped `<h1>` tag.
2025-04-01 15:34:12 -05:00
Noah Talerman a25afdf7b2 Fleet UI breakpoints: Drafting and implementing (#27733)
- Update story template as a reminder for Product Designers to consider
Fleet's breakpoints: 480, 768, 1024, 1280, and 1440px
- Only need wireframes when there are substantial changes (ex. dropping
columns or wrapping elements)
- Update Product Groups handbook to clarify that Engineers are
responsible for filling in gaps for smaller changes. Engineers bring
proposed changes to their product group's design review meeting.
2025-04-01 16:24:48 -04:00
Martin Angers 69fcda9686 Cancel upcoming activities: DB schema and backend (#27710) 2025-04-01 14:08:56 -04:00
Sam Pfluger 6063939d9d Add callout to request an app be added to Fleet Slack (#27737) 2025-04-01 13:07:19 -05:00
Robert Fairburn aa45c256c4 Add Jorge to codeowners (#27727) 2025-04-01 12:38:27 -05:00
Victor Lyuboslavsky 2198fd8d65 Add SCIM Users (#27551)
For #27287

Video explaining the PR: https://www.youtube.com/watch?v=ZHgFUAvrPEI

This PR adds SCIM Users support for Okta. The goal is to first add
Users/Groups support so that the remaining backend SCIM work can be done
in parallel.

This PR does not include the following, which will be added in later PRs
- Changes file
- Groups support for Okta
- Full support for Entra ID
- Integration tests

# Checklist for submitter

- [x] If database migrations are included, checked table schema to
confirm autoupdate
- For database migrations:
- [x] Checked schema for all modified table for columns that will
auto-update timestamps during migration.
- [x] Confirmed that updating the timestamps is acceptable, and will not
cause unwanted side effects.
- [x] Ensured the correct collation is explicitly set for character
columns (`COLLATE utf8mb4_unicode_ci`).
- [x] Added/updated automated tests
- [x] A detailed QA plan exists on the associated ticket (if it isn't
there, work with the product group's QA engineer to add it)
- [x] Manual QA for all new/changed functionality
2025-04-01 11:02:24 -05:00
Gabriel Hernandez 94037e5e56 fix not sending upn correctly to api when editing cert authority (#27726)
For #27570

fixes issue where upn was not sent back correctly when editing digicert
cert authority
2025-04-01 15:59:36 +01:00
Marko LisicaandNoah Talerman 2ced8f710f [Feature guide] Deploy certificates from DigiCert and custom SCEP certificate authority on macOS (#27439)
Related to:

- #25822

Updating existing guide for NDES. Adding instructions on how to connect
and issue certificates from DigiCert and custom SCEP certificate
authorities.

---------

Co-authored-by: Noah Talerman <47070608+noahtalerman@users.noreply.github.com>
2025-04-01 09:40:03 -04:00
Noah Talerman 718e1bed1f Bootstrap package guide (#27699)
It's easy to miss "distribution package" requirement
2025-04-01 09:16:46 -04:00
Jahziel Villasana-Espinoza 25f81d3882 Drop descoped-from-4.66 Windows FMAs (#27714)
> No ticket, decided in a call with Noah, Tim, and the rest of
g-software

# Checklist for submitter

If some of the following don't apply, delete the relevant line.

<!-- Note that API documentation changes are now addressed by the
product design team. -->

- [x] Manual QA for all new/changed functionality
2025-03-31 22:16:06 -04:00
Allen Houchinsandallenhouchins a375069a6c Update macOS version number to 15.4 (#27721)
Co-authored-by: allenhouchins <allen@fleetdm.com>
2025-03-31 20:04:30 -05:00
Eric 646cfbfce1 Website: Update /better page for secureframe users (#27719)
Closes #27717

Changes:
- Updated the /better page to provide more information for Secureframe
users who recently had Fleet desktop installed on their device.
2025-03-31 19:32:18 -05:00
Dan Tsekhanskiy 521ecfffa7 fix: Detect file starting with comment in mdm.go as well (#27673)
Addresses
https://github.com/fleetdm/fleet/issues/26443#issuecomment-2749360869
after https://github.com/fleetdm/fleet/pull/27176 was merged. Reading
XML as a string in this way feels wrong, but I don't want to avoid a
refactor, so I'm checking for a "comment" string in this PR.

I tested by building fleetctl locally and running:

```sh
$ make fleetctl; ./build/fleetctl gitops -f it-and-security/teams/test.yml --dry-run
...
Client Version:   tf-mod-addon-monitoring-v1.5.1-1091-g8eb9111c6-dirty
Server Version:  0.0.0-SNAPSHOT-85f4f65
[+] applying MDM profiles for team TEST
Error: applying custom settings for team "TEST": POST /api/latest/fleet/mdm/profiles/batch received status 422 Validation Failed: disable-onedrive is not a valid macOS or Windows configuration profile. macOS profiles must be valid .mobileconfig or .json files. Windows configuration profiles can only have <Replace> or <Add> top level elements.
```

I'm not sure if the error above
([code](https://github.com/fleetdm/fleet/blob/8eb9111c67c017d3a7b6e448b7e333c8e43f2f6a/server/service/mdm.go#L2160))
is caused by my test environment not yet having the updated server code.
The `--dry-run` passed in my test, as seen by the `[+] applying MDM
profiles for team TEST` line. I can't get any test code to be reflected
in the server response, so my hunch is that the issue should be fixed
after this PR.

# Checklist for submitter

If some of the following don't apply, delete the relevant line.

<!-- Note that API documentation changes are now addressed by the
product design team. -->

- [x] Changes file added for user-visible changes in `changes/`,
`orbit/changes/` or `ee/fleetd-chrome/changes`.
See [Changes
files](https://github.com/fleetdm/fleet/blob/main/docs/Contributing/Committing-Changes.md#changes-files)
for more information.
- I did this in https://github.com/fleetdm/fleet/pull/27176, same change
message.
- [x] Added/updated automated tests
- [x] Manual QA for all new/changed functionality
2025-03-31 19:16:13 -05:00
Drew Baker 00e288afa8 Create becoming-an-adr-at-fleet.md (#27713) 2025-03-31 15:53:56 -05:00
Ian Littman 5ee8af62e0 Add Secureframe partnership override env var for transparency URL (#27388)
For #27309.

- [x] Manual QA for all new/changed functionality
- [x] Added automated tests
2025-03-31 14:43:17 -05:00
Luke Heath b58430dd55 Update product-groups.md (#27703) 2025-03-31 14:36:22 -05:00
0293d99800 Remove default EXE install/uninstall scripts, require entering install/uninstall scripts on EXE upload (#27268)
For #27267.

Below is what's shown immediately after selecting an EXE:

<img width="1254" alt="image"
src="https://github.com/user-attachments/assets/a28d8565-de88-448a-bdbc-92aefc34ad55"
/>


TODO:

* Tests
* GitOps requirements changes
* Disabling add button/adding errors when required scripts aren't
specified

# Checklist for submitter

If some of the following don't apply, delete the relevant line.

- [x] Changes file added for user-visible changes in `changes/`,
`orbit/changes/` or `ee/fleetd-chrome/changes`.
See [Changes
files](https://github.com/fleetdm/fleet/blob/main/docs/Contributing/Committing-Changes.md#changes-files)
for more information.
- [x] Input data is properly validated, `SELECT *` is avoided, SQL
injection is prevented (using placeholders for values in statements)
- [x] Added/updated automated tests
- [x] A detailed QA plan exists on the associated ticket (if it isn't
there, work with the product group's QA engineer to add it)
- [x] Manual QA for all new/changed functionality

---------

Co-authored-by: Luke Heath <luke@fleetdm.com>
Co-authored-by: Noah Talerman <47070608+noahtalerman@users.noreply.github.com>
Co-authored-by: RachelElysia <rachel@fleetdm.com>
2025-03-31 13:52:06 -05:00
Victor Lyuboslavsky ea8b81993e Updating DigiCert/SCEP contributor docs. (#27625) 2025-03-31 13:50:05 -05:00