# Fleet v4.67.0 - Product: Fleet (https://whatsnew.fyi/product/fleet) - Vendor: Fleet Device Management - Date: 2025-04-24 - Version: v4.67.0 - Original notes: https://github.com/fleetdm/fleet/releases/tag/fleet-v4.67.0 - Permalink: https://whatsnew.fyi/product/fleet/releases/v4.67.0 What's New is an index, not a publisher: every entry below links to the vendor's own release notes, which are the authoritative source. Entries are labelled where they are hand-curated sample data, pre-releases, or drawn from a secondary source such as a developer blog. Reuse: the summaries, labels and curation here are © What's New. Quote freely with attribution and a link back; wholesale republication of the corpus is not permitted — terms: https://whatsnew.fyi/terms. The vendors' own release notes remain their publishers'. --- - **added** — Set labels on policies via GitOps - **added** — Backend support for labels on policies - **added** — Ability to cancel upcoming host activities in the UI - **added** — DELETE /api/latest/fleet/hosts/:id/activities/upcoming/:activity_id endpoint to cancel an upcoming activity for a host - **added** — Support for native Windows ARM64 in fleetd - **added** — SCIM integration for IdP email, full name, and groups visibility in host vitals, currently supporting Okta IdP only - **added** — New IDP section to the integrations page to see SCIM connection status - **added** — New users card on host details and my device page showing host end user and IDP information - **added** — Support for vmodule hidden osquery flag to assist with debugging - **added** — Additional statistic item to count ABM pending hosts - **added** — Timeout for desktop app to retry if not displayed after 1 minute - **added** — Newly created host ids included in activities generated when hosts enroll in Fleet - **changed** — UI to allow adding labels when saving or editing policies - **changed** — UI tables to truncate with tooltips for software, query, and policy names and improved keyboard accessibility to those clickable elements - **changed** — Updated Go to v1.24.1 - **changed** — Moved view all host link onto host count of software, OS, and vulnerability details pages - **changed** — Accept any http:// or https:// prefixed URL to allow for easier testing - **changed** — Updated apmhttp package to fix upload of medium and big sized software packages in environments where APM tracing is enabled - **removed** — Apple MDM profile validation checks for com.apple.MCX keys (dontAllowFDEDisable and dontAllowFDEEnable) - **fixed** — Bug where BYOD iDevices deleted in Fleet but still enrolled in MDM were not re-created on the next MDM checkin - **fixed** — Issue with how names for macOS software titles were calculated and prevents duplicate entries being created if the software is renamed by end users - **fixed** — UI Gitops Mode getting cleared when other settings are modified - **fixed** — Invalid default serial numbers being displayed for some hosts - **fixed** — Pagination resetting the platform filter on the operating system UI table - **fixed** — Issue where fleetctl gitops --dry-run would sometimes fail when creating and using labels in the same run - **fixed** — Logging for invalid Windows MDM SOAP message and return 400 instead of 5XX to help debug Windows MDM issues ##### Fleet 4.67.0 (Apr 24, 2025) ###### WARNING: A critical bug has been identified in Fleet v4.67.0 causing significant database load when software inventory is enabled. Skip this version and upgrade directly to [fleet-v4.67.2](https://github.com/fleetdm/fleet/releases/tag/fleet-v4.67.2). ###### Security Engineers - Added ability to set labels on policies via GitOps. - Added backend support for labels on policies. - Added ability to cancel upcoming host activities in the UI. - Added the `DELETE /api/latest/fleet/hosts/:id/activities/upcoming/:activity_id` endpoint to cancel an upcoming activity for a host. - Added support for native Windows ARM64 in fleetd (`fleetctl package --arch=arm64 --type=msi`). ###### IT Admins - Added SCIM integration, which allows IdP email, full name, and groups to be visible in host vitals. SCIM data is also used for getting the end user's full name during end user authentication of macOS setup flow, if needed. Currently, only Okta IdP is supported. - Added a new IDP section to the integrations page where users can see their SCIM connection status. - Added new users card on host details and my device page that shows host end user and IDP information. - Added ability to set labels on policies via GitOps. - Added backend support for labels on policies. - Added ability to cancel upcoming host activities in the UI. - Added the `DELETE /api/latest/fleet/hosts/:id/activities/upcoming/:activity_id` endpoint to cancel an upcoming activity for a host. - Added support for native Windows ARM64 in fleetd (`fleetctl package --arch=arm64 --type=msi`). - Added logging for invalid Windows MDM SOAP message and return 400 instead of 5XX to help debug Windows MDM issues. - Removed Apple MDM profile validation checks for com.apple.MCX keys (dontAllowFDEDisable and dontAllowFDEEnable) due to customer feedback. - Fixed a bug where BYOD iDevices deleted in Fleet but still enrolled in MDM were not re-created on the next MDM checkin. - Fixed an issue with how names for macOS software titles were calculated and prevents duplicate entries being created if the software is renamed by end users. ###### Other improvements and bug fixes - Added support for `vmodule` hidden osquery flag to assist with debugging. - Added an additional statistic item to count ABM pending hosts. - Added a timeout so the desktop app retries if not displayed after 1 minute. - Updated UI to allow adding labels when saving or editing polices. - Included newly created host ids in activities generated when hosts enroll in fleet. - Moved view all host link onto host count of software, OS, and vulnerability details pages - Updated Go to v1.24.1. - Updated UI tables to truncate with tooltips for software, query, and policy names and improved keyboard accessibility to those clickable elements. - Updated to accept any "http://" or "https://" prefixed URL to allow for easier testing. - Updated apmhttp package to fix upload of medium/big sized software packages in environments where APM tracing is enabled. - Fixed UI Gitops Mode getting cleared when other settings are modified. - Fixed invalid default serial numbers being displayed for some hosts. - Fixed pagination resetting the platform filter on the operating system UI table. - Fixed issue where `fleetctl gitops --dry-run` would sometimes fail when creating and using labels in the same run. ###### Fleet's agent The following version of Fleet's agent (`fleetd`) support the latest changes to Fleet: 1. [orbit-v1.40.1](https://github.com/fleetdm/fleet/releases/tag/orbit-v1.41.0) 3. `fleet-desktop-v1.41.0` (included with Orbit) 4. [fleetd-chrome-v1.3.1](https://github.com/fleetdm/fleet/releases/tag/fleetd-chrome-v1.3.1) > While newer versions of `fleetd` still function with older versions of the Fleet server (and vice versa), Fleet does not actively test these scenarios and some newer features won't be available. ###### Upgrading Please visit our [upda _[Truncated at 4000 characters — full notes: https://github.com/fleetdm/fleet/releases/tag/fleet-v4.67.0]_