Open device management
Find a file
Michal Nicpon 9ad1721efd
fix issue with duplicate vulns detected using nvd (#8613)
The OVAL analyzer falsely assumes that any vulnerabilities detected on a
host only come from OVAL. However, it is possible that NVD detects
vulnerabilities on these hosts even though it excludes software from
deb_packages and rpm_packages. For example, a python package twisted
v22.20 has a vulnerability CVE-2022-39348 detected by NVD. The OVAL
analyzer would delete this vulnerability, and it would be re-inserted by
the NVD scanner on the next run. This creates a loop.

The fix is to only delete vulnerabilities that are actually detected
using OVAL. We already store this in the source column in the
software_cve table.
2022-11-10 10:28:00 -07:00
.github Update Go to 1.19.3 (#8525) (#8614) 2022-11-08 13:03:23 -03:00
.storybook Added components to Storybook library (#2768) 2021-11-06 23:41:09 -07:00
.vscode Implement dropdown for label filters on manage hosts page (#7300) 2022-08-24 13:38:43 +01:00
articles Drew bakerfdm remove email mentions (#8641) 2022-11-10 11:59:08 -05:00
assets Add premium-specific preview screenshots for integrations' vulnerability tickets (#8423) 2022-10-25 08:09:27 -04:00
changes fix issue with duplicate vulns detected using nvd (#8613) 2022-11-10 10:28:00 -07:00
charts/fleet cherry-pick changes from fleet-v4.22.1 (#8481) 2022-10-28 12:24:30 -03:00
cmd fix issue with duplicate vulns detected using nvd (#8613) 2022-11-10 10:28:00 -07:00
cypress Remove cypress dashboard (#8518) 2022-11-01 10:32:30 -05:00
docs Adding a query for default handlers (#7924) 2022-11-09 15:01:04 -05:00
ee Fix bug with fleetctl apply for teams, clear agent options only if key is present (#8508) 2022-11-01 15:22:45 -04:00
frontend Fleet UI: Various dropdown fixes (#8645) 2022-11-10 11:55:43 -05:00
handbook handbook: security policies section for people ops (#8617) 2022-11-08 09:16:55 -07:00
infrastructure Update Go to 1.19.3 (#8525) (#8614) 2022-11-08 13:03:23 -03:00
orbit Dump pprof when orbit is given a SIGUSR1. Fixes #8456 (#8485) 2022-10-28 16:39:47 -04:00
pkg fix RunWithNetRetry (#8590) 2022-11-07 16:31:10 +01:00
proposals add proposal for token rotation (#7737) 2022-09-19 19:55:08 -03:00
schema Add link to augeas table docs (#8650) 2022-11-10 11:36:08 -05:00
scripts add on-call script (#4781) 2022-03-28 10:00:33 -06:00
server fix issue with duplicate vulns detected using nvd (#8613) 2022-11-10 10:28:00 -07:00
test/upgrade Fleet 4.18.0 changelog (#6951) 2022-08-01 13:39:13 -07:00
tools Drew bakerfdm remove email mentions (#8641) 2022-11-10 11:59:08 -05:00
website Website: Fix alignment of links in text on logos page (#8633) 2022-11-08 19:02:23 -06:00
.dockerignore Added support to read jwt and mysql password from a file (#141) 2021-01-04 07:58:43 -08:00
.eslintrc.js add linting for react hooks to warn missing deps (#7551) 2022-09-06 15:02:10 +01:00
.gitattributes Windows friendly changes after walking through getting started guide (#1441) 2021-07-21 20:49:44 -04:00
.gitignore Fix teams context on manage hosts and manage teams pages (#8605) 2022-11-07 11:14:40 -06:00
.gitpod.yml Add gitpod yml (#2915) 2021-11-19 10:03:56 -03:00
.golangci.yml Fix deprecated virtual runner and golangci-lint deprecated checkers (#7716) 2022-09-13 10:48:21 -03:00
.goreleaser-snapshot.yml use image containing installer deps for fleetdm/fleetctl (#7040) 2022-08-24 12:10:16 +00:00
.goreleaser.yml use image containing installer deps for fleetdm/fleetctl (#7040) 2022-08-24 12:10:16 +00:00
.npmignore Move fleetdm.com into main Fleet repo (#83) 2020-12-02 14:48:03 -06:00
.prettierignore move policies to own constants and allow escaping on DEFAULT_POLICIES (#8121) 2022-10-07 14:31:57 +01:00
.prettierrc.json add prettier and have it format all fleet application code (#625) 2021-04-12 14:32:25 +01:00
.trivyignore 8241 trivy ignore file action (#8345) 2022-10-31 10:50:29 -04:00
CHANGELOG.md cherry-pick changes from fleet-v4.22.1 (#8481) 2022-10-28 12:24:30 -03:00
CODE_OF_CONDUCT.md Remove @fleetdm.com emails from fleetdm/fleet repo (#882) 2021-05-27 17:19:14 -04:00
CODEOWNERS CODEOWNERS: offboarding (#8511) 2022-10-31 23:08:29 -05:00
docker-compose.yml Add Apple MDM functionality (#7940) 2022-10-05 19:53:54 -03:00
Dockerfile Drew bakerfdm remove email mentions (#8641) 2022-11-10 11:59:08 -05:00
Dockerfile-desktop-linux Drew bakerfdm remove email mentions (#8641) 2022-11-10 11:59:08 -05:00
Dockerfile.osquery-perf Bump golang from 1.19.1-bullseye to 1.19.2-bullseye (#8091) 2022-10-10 18:45:01 -03:00
go.mod Add orbit version and osquery version usage statistics (#8229) 2022-10-24 11:12:56 -05:00
go.sum Add orbit version and osquery version usage statistics (#8229) 2022-10-24 11:12:56 -05:00
LICENSE Update LICENSE (#10) 2020-11-04 19:57:51 -06:00
Makefile Add sandbox fleet serve config (#6619) 2022-07-12 18:21:15 -03:00
manifest.yml.cloudgov.example cloud.gov deployment (#7611) 2022-09-07 13:30:06 -05:00
package.json integration test device user page with mock and custom renderer (#8475) 2022-11-01 18:59:40 +00:00
postcss.config.js Upgrade Bourbon to 5.1.0 and fix deprecation warnings (#1973) 2019-01-03 12:46:55 -08:00
README.md Move CONTRIBUTING.md into docs/contributing (#7283) 2022-08-26 12:14:43 -05:00
SECURITY.md Editing security policy (#5333) 2022-05-05 20:29:06 -05:00
tools.go Update notarization to use notarytool (#7962) 2022-09-27 08:25:42 -07:00
tsconfig.json Feat/update query doc sidepanel (#8214) 2022-10-14 17:45:57 +01:00
webpack.config.js add google analytics to sandbox instances (#6941) 2022-08-01 11:27:12 +01:00
yarn.lock integration test device user page with mock and custom renderer (#8475) 2022-11-01 18:59:40 +00:00

Fleet logo, landscape, dark text, transparent background

Website   News   Report a bug

Run Tests   Go Report Card   CII Best Practices   Twitter Follow  

Fleet is the lightweight, open source telemetry platform for servers and workstations. Deploy osquery with Fleet to get comprehensive, customizable data from all your devices and operating systems without the downtime risk.

Try Fleet

Head to fleetdm.com/try-fleet to fire up a one-off cloud instance for quickly trying out Fleet.

Now what?

Check out the Learn how to use Fleet doc to learn how to add your device to Fleet and how to ask questions about your devices by running queries.

Team

Fleet is independently backed and actively maintained with the help of many amazing contributors.

📖 In keeping with our value of openness, Fleet Device Management's company handbook is public and open source. You can read about the history of Fleet and osquery and our commitment to improving the product. To upgrade from Fleet ≤3.2.0, just follow the upgrading steps for the latest release from this repository (it'll work out of the box).

Documentation

Documentation for Fleet can be found here.

Community

Chat

Please join us in the #fleet channel on osquery Slack.

Contributing

Contributions are welcome, whether you answer questions on Slack/GitHub/StackOverflow/Twitter, improve the documentation or website, write a tutorial, give a talk, start a local osquery meetup, troubleshoot reported issues, or submit a patch. The Fleet code of conduct is on GitHub.

Banner featuring a futuristic cloud city with the Fleet logo