fleet/changes
Josh Brower 4f2daf2368
CIS Update: Q4 2024 (#24224)
All edited YAML files were ran through a YAML syntax check before before
committed.

**macOS-13**

- UPDATED: "3.5 - Ensure Access to Audit Records Is Controlled"
Description and Resolution. Query did not change.

- ADDED: "5.10 - Ensure XProtect Is Running and Updated" Checking for
updated is actually handled via a different query.

**macOS-14**

- UPDATED: "3.5 - Ensure Access to Audit Records Is Controlled"
Description and Resolution. Query did not change.

- ADDED: "5.10 - Ensure XProtect Is Running and Updated" Checking for
updated is actually handled via a different query.

 
**macOS-15**

Initial version duplicated from macOS-14 queries, then the following
changes were applied:

- REMOVED:  "3.6 - Ensure Firewall Logging Is Enabled and Configured"

The following controls were not added, further research on how to check
them with osquery is required:
- 2.6.3.1 - 2.6.3.5 and 2.7.2: I am not sure how we can accomplish this.
- "5.11 - Ensure Logging Is Enabled For Sudo" I believe this one can be
accomplished through the file_lines table

---------

Co-authored-by: Sharon Katz <121527325+sharon-fdm@users.noreply.github.com>
Co-authored-by: Sharon Katz <sharon@fleetdm.com>
2024-12-05 13:35:40 -05:00
..
.keep Issue 1009 calculate diff software (#1305) 2021-07-08 13:57:43 -03:00
18539-font-bug Fleet UI: Fix VMs bold letter bug (#23903) 2024-11-25 08:56:38 -05:00
19696-missing-instrumentation Adding missing instrumentation for APM. (#23882) 2024-11-18 09:58:24 -06:00
21340-improve-nano-enrollments-last-seen-at-update Bugfix: improve performance of updating nano_enrollments.last_seen_at under load (#23957) 2024-11-20 14:08:27 -05:00
21795-resend-config-profile-api Fleet API: Update resending configuration profiles API URL (#24211) 2024-11-27 15:39:55 -05:00
21908-replace-mozilla-pkcs7 Replace deprecated pkcs7 package with a maintained fork (#24313) 2024-12-03 11:01:22 -05:00
21986-fix-to-abm-token-table-responsive Fix abm table overflow issue (#23722) 2024-11-19 11:46:41 +00:00
22527-policy-automation-ui-improvements UI - Update help text for Policy automations (scripts & software) (#24138) 2024-11-26 12:30:30 -08:00
22819-delete-modal Fleet UI: Add more description to delete host modal (#24089) 2024-11-25 08:57:27 -05:00
22896-ui-windows-automatic-migration add UI for new windows mdm page and automatic migration (#24068) 2024-11-22 16:52:03 +00:00
22897-add-windows-migration-enabled-setting Windows MDM Migration: API, CLI and activities (#24141) 2024-11-26 11:52:56 -05:00
23020-automation-software-install-zip-dmg Fix zip and dmg automation showing null platform (#24346) 2024-12-04 11:00:28 -05:00
23027-settings-empty-states UI - Improve side nav empty state UI under /settings (#24145) 2024-11-26 12:29:50 -08:00
23158-turn-off-windows-mdm-err fix: return a better error when attempting to turn off MDM for a Windows host (#24044) 2024-11-22 19:54:06 -05:00
23234-bug-fix Add VPP app: fix confusing empty states (#24243) 2024-12-04 19:38:30 +01:00
23458-additional-stats Added statistics for number of saved queries. (#24043) 2024-11-22 11:24:29 -05:00
23462-show-windows-mdm-wstep-options Stop hiding Windows MDM WSTEP config flags (#24289) 2024-12-03 10:04:49 -05:00
23611-Update-CIS CIS Update: Q4 2024 (#24224) 2024-12-05 13:35:40 -05:00
23621-unlock-text fix: use the correct copy for a macos host (#24292) 2024-12-02 17:30:18 -05:00
23686-update-zoom fix: replace Zoom FMA with Zoom for IT (#24311) 2024-12-03 13:08:54 -05:00
23733-apple-app-store-icons Fleet UI: Fix app store icons with awkward borders (#24126) 2024-11-26 16:30:22 -05:00
23749-fix-learn-more-link Fleet UI: Fix learn more about JIT provisioning link (#24092) 2024-11-25 08:57:51 -05:00
23758-use-fleethttp-client-for-apns-push-notifications Bugfix: use an HTTP client that supports proxies for APNS push notifications (#23988) 2024-11-25 09:45:38 -05:00
23787-script-name fix: show script name in activity for setup experience script (#23944) 2024-11-19 17:38:09 -05:00
23832-select-nano_enrollment_queue Improvements for select next Apple MDM command query. (#24128) 2024-12-05 12:02:48 -06:00
23834-improve-label-flag-validation Improved label(s) validation when running queries (#23834) 2024-11-21 16:13:30 -06:00
23893-fix-docker-fleetctl Check opt.NativeTooling before creating build directory (#23894) 2024-11-18 11:32:55 -03:00
23905-update-nanomdm Update nanomdm dependency with latest bug fixes and improvements. (#23906) 2024-11-20 11:47:11 -06:00
23942-wrong-link fix: use correct link (#23998) 2024-11-20 18:25:19 -05:00
23967-doc-firefox_preferences-linux-windows doc: firefox_preferences works on linux and windows (#23967) 2024-11-20 16:46:07 -06:00
24009-gh-translation github cli false negative vulnerability (#24100) 2024-11-25 12:32:10 -06:00
24024-bypass-setup-experience-if-empty Proposal fix/plan for 24024 (#24207) 2024-11-27 12:11:08 -05:00
24093-clear-policy-automation Fleet UI: Ability to clear webhook address and still disable policy automation (#24163) 2024-12-02 16:18:42 -05:00
24109-drop-duplicate-indexes Drop duplicate MySQL indexes. (#24107) 2024-11-25 10:03:19 -06:00
24186-fix-missing-spinner-for-delete-modal Add missing loading states in delete modal (#24245) 2024-12-04 19:35:09 +01:00
24248-host-details-encryption-banner UI - Only show 'follow instructions on My device' banner for encrypted and non-escrowed Linux hosts (#24277) 2024-12-02 16:28:28 -08:00
24288-mdm-gitops-role Fixed gitops issue with gitops role. (#24297) 2024-12-03 10:12:07 -06:00
feat-ui-creat-policies-fleet-apps-title-details Feat UI creat policies fleet apps title details (#23972) 2024-11-26 17:21:00 -05:00
jve-fix-typo fix: small typo (#24149) 2024-11-25 18:00:07 -05:00