Skip to content

Elevate 1.6.4

Choose a tag to compare

@github-actions github-actions released this 12 Sep 16:24
· 194 commits to main since this release

Added

  • macOS and Windows: the run and deactivate reviews for a profile show a checkbox next to each
    role, checked by default. Unchecking a role omits it from that one run or deactivation pass;
    nothing is remembered onto the profile, and an omitted role stays available to a later pass.

Fixed

  • macOS, Windows and CLI: deactivating a role no longer fails with "Revoked". Microsoft Graph and
    Azure Resource Manager report a completed self-deactivation with that status, and the
    confirmation check added for profile deactivation only accepted "Provisioned".

macOS

Signed with Developer ID and notarized.

Install with Homebrew (the fully qualified cask name is required: this tap is not a homebrew- named repository):

brew tap FrodeHus/elevate https://github.com/FrodeHus/elevate
brew trust frodehus/elevate
brew install --cask frodehus/elevate/elevate

The cask installs the pkg (Homebrew asks for your password), which also puts the elevate CLI on your PATH.

Or download Elevate-1.6.4.dmg below and drag Elevate to Applications. SHA-256: b3cc548ed91cdccb48a89797f290f8caf398c61366a49c9c10ba1f1adb792c1e The DMG is the app alone.

Windows

Download the MSI for your architecture below and run it. It installs for the current user (no admin rights) into %LOCALAPPDATA%\Programs\Elevate and needs the .NET 10 runtime: winget install Microsoft.DotNet.Runtime.10.

This build is not code-signed. Windows SmartScreen shows "Windows protected your PC" the first time you run the installer: choose More info, then Run anyway. Verify the download against the SHA-256 first with (Get-FileHash .\Elevate-1.6.4-x64.msi).Hash.

SHA-256:

  • x64: 28f2b408dba5d2dcd8a3dca6ea8c2fc9fbe34b25b29cd56a2c7ea78be97bcd5c
  • arm64: 8e64f430ea231ed1e0bd6c13256a380c8f598b5db7eb5905aafc14c1d41b2fb1

CLI (Linux, macOS, Windows)

One self-contained elevate binary per platform, no runtime to install.

macOS (Apple Silicon): the CLI is installed with the app by the Homebrew cask above or by Elevate-1.6.4.pkg, as /usr/local/bin/elevate. The elevate-cli formula is deprecated and will be removed in a later release; it still installs on Linux and Intel Macs:

brew install frodehus/elevate/elevate-cli

Windows: Elevate-1.6.4-x64.msi (or -arm64.msi) installs elevate.exe in a cli folder under the app and adds that folder to your PATH. Standalone: winget install Reothor.Elevate.CLI once the manifest is submitted; until then download elevate-cli-1.6.4-win-x64.zip (or -win-arm64.zip) below and put elevate.exe on your PATH.

Or download the archive for your platform below and unpack it anywhere on your PATH. Verify with sha256sum -c elevate-cli-1.6.4-checksums.txt. See cli/README.md.

Enterprise

Elevate-1.6.4.pkg is a macOS installer package, and installs the elevate CLI (/usr/local/bin/elevate, Apple Silicon), signed with Developer ID Installer and notarized, for Jamf, Intune and sudo installer -pkg Elevate-1.6.4.pkg -target /. SHA-256: 4d94ef6c5e01d81795005f7a98f682433a081e9e67710f74f0837b39ffcd87af

Elevate-enterprise-kit-1.6.4.zip holds the managed configuration templates: the Elevate.admx/Elevate.adml policy definitions and a .reg file for Windows, a mobileconfig, an Intune preference file and a Jamf manifest for macOS, a managed.json template for the CLI, the worked example and keys.md, the key reference. SHA-256: c249029ae46957f5e659d15024f0c37ef37c38b7dd60b0f72e1a9a6c9300781c

Deploying Elevate to a fleet starts at docs/enterprise/README.md.