Commit Graph
1463 Commits
Author SHA1 Message Date
Adam Baali 3df2660428 Fix French whitepaper: grammar, calques, and plural consistency (#44120) 2026-04-24 18:25:13 +01:00
Steven PalmesanoandMarko Lisica 54c7ae76ef Improve Android Wi-Fi docs (#44041)
- Add details on the Identity field, stating that it may not be
required, and that Fleet variables aren't supported yet.
- Clarify which cert to use for the X509 field.

---------

Co-authored-by: Marko Lisica <83164494+marko-lisica@users.noreply.github.com>
2026-04-24 09:01:12 -05:00
Noah Talerman 24e3283e5d Deploy certificates guide: Cleanup and add note about PayloadCertificateAnchorUUID (#43733) 2026-04-24 09:14:08 -04:00
Noah TalermanandMike Thomas ae76d743fe Revise APNs renewal steps for MDM integration (#43632)
Updated steps for renewing APNs certificate in MDM section to include
Apple Business Manager.

---------

Co-authored-by: Mike Thomas <78363703+mike-j-thomas@users.noreply.github.com>
2026-04-24 09:13:51 -04:00
Noah Talerman c0297c7e55 Update shell script interpreter instructions (#43361) 2026-04-24 09:13:20 -04:00
Noah Talerman e9f74a309e Update instructions for deleting hosts from Fleet (#43339)
Clarify the consequences of deleting a host from Fleet, emphasizing the
removal of labels and prevention of pending activity.

Story that will change this: 
- https://github.com/fleetdm/fleet/issues/28933
2026-04-24 09:07:27 -04:00
Noah Talerman 74579cc5f1 Update release notes for Fleet 4.83.0 (#43276)
Pull "YAML validation" section up to the top and warn users that they
might run into new errors on upgrade.
2026-04-24 09:05:02 -04:00
Steven Palmesano 6ea69851e3 Add missing guide descriptions (#44043) 2026-04-24 06:58:24 -05:00
Steven Palmesano 2c2cae5fc5 Update Recovery lock password documentation (#43503) 2026-04-24 06:58:10 -05:00
Steven Palmesano 148b220194 Update Okta conditional access documentation (#42758) 2026-04-24 06:57:48 -05:00
Steven Palmesano d87283f099 Fix English and formatting errors in Fleet 4.83.0 release notes (#43480) 2026-04-24 06:56:45 -05:00
Steven Palmesano 1f6158c0f3 Variable value updates trigger profile resends (#43421)
Also highlight this in a blockquote.
2026-04-24 06:56:22 -05:00
Steven Palmesano 6e04c5821a Add comma to characters that break SCEP challenges (#43413) 2026-04-24 06:55:51 -05:00
Steven Palmesano c63619dc6b Move the image out of the blockquote (#43392)
Hoping that this will work, as the image is currently placed inside the
blockquote, so it's super tiny.
2026-04-24 06:55:36 -05:00
Steven Palmesano f742a45577 Add How to manually sync an Android device guide (#43326)
I've included the developer options instructions here, because when I
started testing on Android I believe this was required. But while
testing on a device after a factory reset, I didn't need to enable
developer options.
2026-04-24 06:54:29 -05:00
Steven Palmesano 944b5d8cf2 Fix broken link to dual-boot instructions (#43109) 2026-04-24 06:53:48 -05:00
Steven PalmesanoandMarko Lisica bc125904a1 Mention need to have super admin for Android setup (#43020)
Co-authored-by: Marko Lisica <83164494+marko-lisica@users.noreply.github.com>
2026-04-24 06:53:18 -05:00
Adam Baali 8254453947 Updated the converter script (#43658)
Current script no longer works. @karmine05 provided an updated script
via slack


https://fleetdm.slack.com/archives/C062D0THVV1/p1776263811696539?thread_ts=1776176949.848689&cid=C062D0THVV1
2026-04-24 12:18:04 +02:00
Adam BaaliandMike Thomas dcc30a73c8 fix: correct SCEP renewal docs and broken SQL code fence in Okta Plat… (#43533)
…form SSO guide

Four fixes to the Deploying Platform SSO with Okta and Fleet guide:

1. Clarified that Fleet's automatic certificate renewal via
$FLEET_VAR_SCEP_RENEWAL_ID works for dynamic Okta SCEP (where Fleet acts
as a proxy) but not for static challenges, which require manual
redeployment before expiry.

2. Updated the Option 1 Important note to reflect that renewal is
automatic when $FLEET_VAR_SCEP_RENEWAL_ID is in the OU field.

3. Updated the Option 1 osquery policy threshold from 14 to 30 days to
align with Fleet's automatic renewal window, so failed renewals are
caught immediately rather than 16 days late.

4. Fixed Option 2 SQL code block where the Important text was
accidentally placed inside the opening ```sql fence, breaking the
article layout. Also updated the Certificate Expiration Notification in
Option 1 from 14 to 30 days for consistency.

---------

Co-authored-by: Mike Thomas <78363703+mike-j-thomas@users.noreply.github.com>
2026-04-24 12:17:53 +02:00
Gray Williams 3fd6a46f55 Update deploying-crowdstrike-with-fleet.md (#43704)
Adds additional instructions for deploying via .exe.
2026-04-24 09:00:42 +01:00
Mike Thomas 62533484db Update a-lot-has-changed.md (#44103)
Light edits.
2026-04-24 16:05:42 +09:00
Irena Reedy bb54bb407b Create technology-company.md (#44027) 2026-04-22 22:36:00 -05:00
Irena Reedy d5268176b9 Create observability-software-company.md (#44029) 2026-04-22 22:35:34 -05:00
Irena Reedy 35a2044d8e Create commerce-company.md (#44030) 2026-04-22 22:35:02 -05:00
Irena Reedy c71ee3f9f5 Create digital-bank-1.md (#44031) 2026-04-22 22:34:33 -05:00
Dan Gordon d9b5502f25 Ak updateblog date (#44023) 2026-04-22 19:41:20 -05:00
Ashish Kuthiala 9fe189a5c9 Update links in blog (#44022)
Added links
2026-04-22 16:27:02 -07:00
Steven Palmesano f6b77045be Move SCIM info for automatic deprovisioning from end user doc to Fleet user doc (#44000)
We put the SCIM information for Fleet users in the wrong doc.
2026-04-22 17:59:00 -05:00
Steven Palmesano 2f95183c08 Update server_settings documentation (#43839)
We
[updated](https://github.com/fleetdm/fleet/commit/02af994bb2b28faaf233cdc30a292b6cb33e37ca)
some references when we renamed queries to reports, but didn't update
them all.
2026-04-22 17:53:34 -05:00
9c174f5cd7 Add blog post: Supercharging endpoint management with AI assistants and event-driven automation (#44017)
## Summary

- Adds Part 3 of the 3-part article series on modern endpoint management
by Ashish Kuthiala (CMO)
- Covers AI assistants for translating intent to code, and event-driven
automation for onboarding, offboarding, compliance drift, and CVE
remediation
- Follows the same format and conventions as the existing Part 1
(`the-confidence-gap.md`) and Part 2
(`rethinking-endpoint-management.md`) articles
- Publish date: 2025-07-22

Built for [Ashish
Kuthiala](https://fleetdm.slack.com/archives/D0AG9JQ53GA/p1776892978826289)
by [Kilo for Slack](https://kilo.ai/features/slack-integration)

---------

Co-authored-by: kiloconnect[bot] <240665456+kiloconnect[bot]@users.noreply.github.com>
Co-authored-by: Ashish Kuthiala <53918208+akuthiala@users.noreply.github.com>
2026-04-22 17:39:32 -05:00
Ashish Kuthiala b44897c292 update date on blog (#43988)
update blog date
2026-04-22 14:24:26 -05:00
Noah Talerman b960dc5179 Fleet Desktop guide: Link to configuration profile (#43961)
- Profile makes it so the app opens on every login/restart
2026-04-22 12:36:41 -05:00
40a97beee8 Add blog article: One console to rule them all: The case for unified endpoint management (#43919)
## Summary

- Adds a new blog article by Ashish Kuthiala: "One console to rule them
all: The case for unified endpoint management"
- The article makes the case for consolidated endpoint management over
fragmented point solutions, covering efficiency, cost, risk, and
security visibility arguments
- Published date set to 2025-07-21, categorized under "articles"

## Changes

-
`articles/one-console-to-rule-them-all-the-case-for-unified-endpoint-management.md`
- New blog article

---

Built for [Ashish
Kuthiala](https://fleetdm.slack.com/archives/D0AG9JQ53GA/p1776806237491349)
by [Kilo for Slack](https://kilo.ai/features/slack-integration)

Co-authored-by: kiloconnect[bot] <240665456+kiloconnect[bot]@users.noreply.github.com>
Co-authored-by: Ashish Kuthiala <53918208+akuthiala@users.noreply.github.com>
Co-authored-by: Dan Gordon <daniel@fleetdm.com>
2026-04-22 12:13:30 -05:00
Dan Gordon d457b69b99 Create IT-leaders-guide-to-Linux-device-management LP in French (#43946)
Create French version of the landing page for IT Leaders Guide to Linux
Device Management.

Currently points to English version of asset.

Some parts of pages are hard-coded in the page generation scripts as
English so still show as English.
2026-04-22 10:06:53 -05:00
johnjeremiah 73a046b9ba Blog post- A Lot Has changed (#43710)
Blog post supports the Closed Lost campaign.
2026-04-22 07:41:32 -04:00
Eric 28473e7c5f Website: add webinar article, update embedded webinar styles (#43902)
Closes: https://github.com/fleetdm/confidential/issues/15353

Changes:
- Added a new webinar article
- Updated the styling of embedded webinar videos

<!-- This is an auto-generated comment: release notes by coderabbit.ai
-->

## Summary by CodeRabbit

* **Style**
* Improved embedded video display with updated aspect ratio handling and
refined positioning for better visual presentation on webinar pages.

<!-- end of auto-generated comment: release notes by coderabbit.ai -->
2026-04-21 17:37:02 -05:00
johnjeremiahandAshish Kuthiala 3ea751c300 Fixing Sentence Case Typos (#43725)
Co-authored-by: Ashish Kuthiala <53918208+akuthiala@users.noreply.github.com>
2026-04-21 13:18:15 -05:00
Noah Talerman b5183aad8e Roadmap blogpost: Add links to issues (#43720)
- @danbgordon: Add issues links could encourage community involvement
and collaboration.
2026-04-21 10:38:52 -07:00
Dan Gordon 33f0d8454a Post whitepaper IT leader's guide to Linux device management AND fix whitepaper form hardcode. (#43780)
<!-- Add the related story/sub-task/bug number, like Resolves #123, or
remove if NA -->
**Related issue:** Resolves
#https://github.com/fleetdm/confidential/issues/14837
**Related issue:** Resolves
#https://github.com/fleetdm/confidential/issues/14839


Commit 1 - fixes the basic-whitepaper.ejs page so that the LP form
headline is not hard coded to GitOps anymore.
Commit 2 - posts the whitepaper and sets up the LP page 


<!-- This is an auto-generated comment: release notes by coderabbit.ai
-->

## Summary by CodeRabbit

* **Updates**
  * Form headline on whitepaper download page is now customizable.
  * Enhanced email submission feedback handling during download process.

<!-- end of auto-generated comment: release notes by coderabbit.ai -->
2026-04-20 12:07:06 -05:00
Dan Gordon ce3fd02b77 Post Linux business case article (#43701)
Post Linux series article on the business case for Linux device
management. This is another chapter written for the eBook that I'm
extracting to a blog post.
2026-04-17 09:43:21 -05:00
Dan Gordon 9bbd929b09 Post Linux DM article: How to define your Linux device management needs (#43694)
Post Linux DM article: "How to define your Linux device management
needs".
Added as early chapter in IT Leader's Guide to Linux Device Management
eBook.
2026-04-17 09:33:21 -05:00
Dan Gordon 0c26021d29 Fix title capitalization in second place (#43706)
Fix the title capitalization in the meta information too. Oops.
2026-04-17 09:32:36 -05:00
Dan Gordon b815310740 Fix capitalization in article title (#43703)
Fix capitalization in article title
2026-04-17 08:51:06 -05:00
Dan Gordon 378fc322cb Add Kitzy AI+GitOps article from her blog (#43693)
Post Kitzy article from her blog on AI+GitOps for device management.

Original discussion at
https://fleetdm.slack.com/archives/C01ALP02RB5/p1776348729370599?thread_ts=1776347066.248069&cid=C01ALP02RB5
2026-04-17 07:50:33 -05:00
Dan Gordon e55ad5a044 Add 9 problems article (#43690) 2026-04-16 19:47:34 -05:00
Noah TalermanandIrena Reedy 1e969d460c Roadmap preview: April 2026 (#43472)
DONE: @noahtalerman:
- ~~Record video~~
- ~~Video is here:
https://drive.google.com/file/d/1AM3zExMHOE3-xCkAbYKUxsViI8vBeyX1/view?usp=sharing~~
- ~~Once video is posted to YouTube, embed the video. Filed a
`:help-marketing` request to get help putting the video on YouTube:
https://github.com/fleetdm/confidential/issues/13908~~

@noahtalerman: For the following issues:
- https://github.com/fleetdm/fleet/issues/43023

---------

Co-authored-by: Irena Reedy <irena@fleetdm.com>
2026-04-16 17:37:02 -04:00
Rachael Shaw c783ac75b5 Simplify explanation of fleet-level user permissions (#43676) 2026-04-16 11:53:56 -05:00
Rachael Shaw b51cd89ecd Permissions: Fix stray reference to "queries" (#43674) 2026-04-16 11:14:46 -05:00
5a660613db Add and document fallback script for wiping Windows devices (#42230)
Add fallback wipe script for Windows hosts (#34994)

When Fleet's built-in Windows wipe action fails (MDM command returns
status 500, device not wiped), there is no documented fallback. This PR
adds a script that can be run via Fleet to wipe the device when the
native wipe fails.

## Changes

- `docs/solutions/windows/scripts/wipe-windows-device.ps1` - Fallback
wipe script
- `articles/lock-wipe-hosts.md` - Reference to fallback script added
under Windows wipe section

## What the script does

1. Validates and repairs WinRE if disabled (confirmed root cause of wipe
failures in #34994)
2. Checks Component Store integrity via DISM
3. Suspends BitLocker for one reboot cycle
4. Triggers wipe via WMI-to-CSP bridge (`doWipeProtected`, falls back to
`doWipe`), bypassing the MDM command queue

Fully unattended. No user interaction required. Exits 0 on success, 1 on
failure.

## Context

Every fully unattended Windows wipe method uses the same RemoteWipe CSP.
There is no alternative Windows API. This script adds value by fixing
the root causes before calling the wipe, and by bypassing the MDM
command queue where server-side failures (DB timeouts, auth errors) can
occur.

Closes #34994

<!-- This is an auto-generated comment: release notes by coderabbit.ai
-->
## Summary by CodeRabbit

* **New Features**
* Added an administrator-only Windows device wipe utility that performs
staged system checks (recovery environment, system health, and disk
protection), attempts to suspend drive protection for a reboot, invokes
multiple local wipe triggers with fallbacks, creates a timestamped audit
log of actions, and provides clear success/failure summaries with likely
causes and suggested next steps.
<!-- end of auto-generated comment: release notes by coderabbit.ai -->

---------

Co-authored-by: Marko Lisica <83164494+marko-lisica@users.noreply.github.com>
Co-authored-by: coderabbitai[bot] <136622811+coderabbitai[bot]@users.noreply.github.com>
Co-authored-by: CodeRabbit <noreply@coderabbit.ai>
2026-04-16 11:49:53 -04:00
EricandCopilot be14f7c10d Website: Add webinar article template page. (#43627)
Changes:
- Added support for a new article category: `webinar`.
- Added a template page for webinar articles.
- Added an additional route for webinar articles that users are taken to
to watch the webinar recording.
- Added `deliver-webinar-access-request`, an action that updates CRM
records when users fill out the form on the webinar template page.
- Updated the accepted `intentSignal` values in the
create-historical-event helper.
- Added an article for the "Beyond the hype, practical AI for device
management" webinar.

<!-- This is an auto-generated comment: release notes by coderabbit.ai
-->
## Summary by CodeRabbit

* **New Features**
* Public webinar pages (/webinars/:slug and /watch) with optional
embedded video and a new page template, script, and styles.
* Sidebar signup form (first name, last name, work email) with prefill
for signed-in users and improved scroll behavior.
* POST API to request webinar access: validates email domain, records a
webinar-request event, triggers background CRM sync, and returns a watch
view on success.
* Static-site build now recognizes webinar articles and enforces
embedded-video URL validation.
<!-- end of auto-generated comment: release notes by coderabbit.ai -->

---------

Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
2026-04-16 09:14:28 -05:00