fleetdm / fleet

Open-source platform for IT, security, and infrastructure teams. (Linux, macOS, Chrome, Windows, cloud, data center)
https://fleetdm.com
Other
3.05k stars 422 forks source link

Edit configuration profile's labels #22694

Open allenhouchins opened 1 week ago

allenhouchins commented 1 week ago
noahtalerman commented 2 days ago

Problem

A number of CIS benchmarks can only be resolved via MDM and the delivery of configuration profiles. Also, as the number of Teams grow in my instance, I need to quickly see if I missed the scoping of a specific setting and be able to quickly resolve it.

What have you tried?

4.58 introduces script execution for policy failure automation which can be used as an alternative, though not as easily or straightforward.

Potential solutions

Allow for the selection of a configuration profile as part of the policy failure automation workflow.

What is the expected workflow as a result of your proposal?

An admin would upload the CIS benchmarks to Fleet, observe a policy failure that can only be addressed via MDM, select that policy through the Manage Automations interface and link it to a configuration profile which results in hosts failing that policy automatically installing the profile.