---
sourceDocument: Australia IT Service Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/it-service-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia IT Service Management

ft:clusterId :

    - itsm

bundleId :

    - itsm

workflow :

    - Technology


---

# Sudo banner validation

# Sudo banner validation {#ariaid-title1}

Release version: Australia  
Updated March 30, 2026  
![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read  
Sudo banner validation flags missing sudo permissions on managed devices so you know when the DEX agent's capabilities are limited.

The DEX agent requires specific sudo permissions to perform actions such as restarting services (restart_service) or removing files (rm). The agent flags
missing required permissions.

As a DEX administrator, you can control the sudo banner configuration for macOS. For example, if your organization does not use Jamf, add that command to the exclusion list. in this case, the banner does not appear on the device page for excluded commands.  
Note:  
Updating exclusion list doesn't change configured sudo permissions on the end-user device.
* **[Configure sudo banner exclusion list](https://servicenow-prod.fluidtopics.net/7oiv7pKYFwlceoIobI5TUA)**   
  Add the appropriate commands to the sudo banner exclusion list so the system doesn't flag it.

