Available tools
Look up device
Look up device
@Look up device with FleetCommon use cases:- Find user’s device before running diagnostics
- Verify device ownership
- Get device identifiers for troubleshooting
- Check if device is online
When a user reports device issues, use @Look up device with Fleet to get their device information. If the device is offline, inform the user and create a ticket for IT support. If online, proceed with diagnostics.
Check device health
Check device health
@Check device health with FleetCommon use cases:- Verify security compliance before access approval
- Diagnose device health issues
- Check disk encryption status
- Validate MDM enrollment
When approving access requests, use @Check device health with Fleet to verify the device meets security requirements. If disk encryption is disabled or OS updates are needed, inform the user they must address these issues before approval.
Run query
Run query
@Run query with FleetAvailable query types:- System information
- OS version details
- Logged in users
- Running processes
- Network interfaces
- Disk space usage
- Recent items
- Advanced device troubleshooting
- Custom system information gathering
- Security investigation queries
- Performance diagnostics
When a user reports slow device performance, use @Look up device with Fleet to get their device, then @Run query with Fleet to check running processes and disk space. Analyze the results and provide troubleshooting steps based on what you find.
List saved queries
List saved queries
@List saved queries with FleetCommon use cases:- Discover available diagnostic queries
- Reference query names in troubleshooting
- Guide users on diagnostic capabilities
Get managed account password
Get managed account password
@Get managed account password with FleetOutput fields:EndpointManagedAccountPassword- The managed local administrator passwordEndpointManagedAccountPasswordUpdatedAt- Timestamp when the password was last rotated in Fleet
- Help a macOS user regain administrator access when they forget their local password
- Support disk recovery scenarios that require a local admin login
- Deliver a rotated admin password to a requester during endpoint troubleshooting
When a macOS user reports they are locked out of their local administrator account, use @Look up device with Fleet to confirm the device, then use @Get managed account password with Fleet to retrieve the current admin password and share it with the user over a secure channel. If Fleet has not verified the password, create a ticket for IT to investigate.
Setup
Install Fleet integration
Configure agent
Create rules
Test tools
Best practices
- Always use
@Look up device with Fleetbefore running queries to ensure you have the correct device - Combine multiple tools in a single rule for comprehensive diagnostics
- Provide clear instructions to users based on tool results
- Check device online status before running queries
- Consider security compliance checks for access request workflows