Enter your own Checkmk ideas or vote for existing ones
In order to continually improve Checkmk, we're looking for your ideas. They provide valuable input to our roadmap discussions and allow us to contact you directly for more in-depth discussions or during development. A few tips:
- Concisely describing the problem rather than the solution will help other users understand and relate to your idea.
- An idea should be easy to understand. This will increase your chances of getting votes.
- Be as specific as possible. Knowing exactly what to expect when voting on an idea makes it a much better experience for all of us when it is adapted later in Checkmk.
Further information can be found in this guide. If you have any questions, please send an email to ideas@checkmk.com.
allow the Relay to act as a Gateway for Web checks, Agent and automatic Agent Updater
it would be nice to be able to use use the new Relay as a Gateway like system that is able to forward automatic Agent updates for Agents and eg. Webchecks inside a ...
Checkmk Agent Push Mode - Allow a failover destination
Allow agent to send data to a failover destination when the original destination is not reachable. The idea is to be able to easily switch the monitoring destination ...
customised location for remote alert handlers
when customising the location of (Linux) agent, the path a console looks to trigger a remote alert handler is not, also, customised. either within the agent setting ...
Show the execution time of plugins / local scripts
Hey,
it would be useful to have a field/parameter that shows the execution time of each plugin (or show it within the "check_mk" Service).
[agent] Success, ...
Self-Registration and Agent Updater Site Simplified URL Fulfillment
When creating the rules from Self-Registration and Agent Updater allow the retrieval of URLs from Distributed Monitoring page. This will allow the setup of those ...
Checkmk agent support for immutable container hosts
Add support for deploying, running, and updating the Checkmk agent on immutable container host operating systems, such as Micro SLE. Immutable OS environments present ...
Make the agent's listen network interface configurable
It should be possible to configure the agent's listen network Interface / IP in addition to the listen port.
There are often cases where it would be better for ...
Agent Buffering
Whenever there is maintenance on a central Checkmk site, metrics from the agents are not collected and after the maintenance
there are gaps in the graphs because the ...
Allow agent acces via DNS-Name
At the moment, it is not possible to use a DNS name in the agent access rule. This would be useful, for example, if you change the IP address of the CMK server (new ...
Bakery: details why agents need to be baked/signed
At the moment, when you edit a rule, you sometimes have to bake and sign the agents because the rule affects the binaries. If there are multiple administrators or ...
Linux Agent: Remove cache files on host reboot
On host bootup the agent's cache directory should be emptied (configurable).
This would trigger all cached agent plugins to run again, including e.g. mk_apt, which ...
Agent Bakery: Hide rule details option
The Agent Bakery Home Page is to messy when you have different agent packages. Include an option to easily hide all rule details in Agent Bakery page.
Deploy Local Checks via Bakery Rule
Right now, you can deploy via a local check via the agent bakery only by using Deploy custom files with agent. In Order to do that, it is necesary to upload the file ...
Bakery: Deploy custom files with agent: Show entire folder tree
Bakery: Show custom folders and files
Show the whole folder tree and the files.
Currently we've no information about it which causes problems and wrong alarms.
Agent Rules in Bakery separated according to the operating system
Currently in Agent rules inside Agent Bakery we have a section called "Agent Plugins" this section contains rules for Windows and Linux Operating Systems but right ...
Agent Bakery - Use password store for agent sign key
Each time when new agents need to be signed, the passphrase for the sign certificate must be entered manually in the GUI (Setup>Agents>Windows, Linux, Solaris, AIX). ...
Auto-registration doesn’t populate the new host’s IP Address field
Currently when using the auto-registration feature it does not populate the IP Address field of the new host. This is a problem because we use the traditional method ...
Simplified Agent with TLS- and Updater-Registration in EE
There are several possibilities to add a host to the monitoring system, including the host creation, the tls- and the updater-registration - actually only for the ...
Feature request: possibility to define a hook when backing agents
Hello,
I would like to be able to run a script using a hook when agents are baked.
That could allow for example to upload automatically to a private registry ...
Enable a secure distributed agent bakery in Managed Service setups
Currently we are not able to use the distributed agent bakery in our MSP setups, as the needed https connection from the satellite to the central site is a major ...
Support Hardware Security Modules (HSMs) for Agent Bakery Keys (PKCS#11)
The agent bakery "sign key" (private) keys are dangerous. Access to the private keys will enable an attacker to install software on each host with agent updates ...
Allow Agent Bakery to work with non-root
Today many organisations are enforced to implement zero-trust security measurements. Running the check mk agent as a non privileges account is a hard requirement for ...
Agent bakery: define and verify custom files
Defining only one directory is very risky, someone can change the files and no one will detect it, not even the admin who distributes the files via bakery
So we need ...
Agent bakery: show all changes why agents has to be bake
Show all changes which leads the bakery to say that the agents has to be bake. As well the changes for custom files, just show all changes.
Reason: Security: To have ...
Include customizations of the plugin files into the agent hash
The main reason for this request is the need to re-roll all agents after you changed a plugin or config file, but the agent bakery doesn't realize, that there are new ...
Integrated & automatic Agent Failover from one site to another (backup-) site
Hello,
in a distributed setting it is currently the case that if a site fails, all the agents attached to it simply disappear in the master gui. There is no built-in ...
Agent Bakery: Allow more complex folder structure for custom files
In my installation, I have many custom files. The current flat folder structure makes the management of them complex. Please allow a more complex folder structure for ...
Agent updater as non-root
Today it's possible to have the agent bakery create an agent that is not running as root. However this does not allow the agent to update itselves.
It would be ...
Distribute new agent via push method
Currently, the agent needs to talk via 80 or 443 to the remote site which then talks to central site for updates. In our eyes, it would be great, if the central site ...
Security: Move agent-to-server communication (agent registration and updates) to separate port
At the moment, all agents that utilize Automatic Agent Updates need access to the regular IP address and port of their Checkmk instance in order to register for and ...
Sort the list of custom files in the agent bakery rule set "Deploy custom files with agent"
When providing custom files to be deployed via the agent bakery, the files are read and displayed as checkbox items in the mentioned rule set.
This list is ...
AgentUpdater: Ability to update agents on specific hosts
In our enviroment we use update waves, to decide if an update is good.
Solaris Agent: Enable rule "Allowed agent access via IP address"
Enable the rule "Allowed agent access via IP address" for Solaris to restrict the IP address which is allowed to access cmk agent.
Currently every system is able to ...
Agent Bakery: Configuration Preview
Allow the admins to see the configuration files in the agent (e.g. YML or CFG) to verify the configuration without deployment
Make 'pending baking' more visible
'Pending changes' ist quite good visible, pending baking and signing is not, thus can easily be forgotten.