Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

DEX policies for Windows devices

Policy reference for DEX monitoring on Windows devices. Use this reference to understand available check instances, frequencies, and parameters for application, network, and device monitoring.

To fetch the complete playbook data for a Windows device, the Agent Client Collector (ACC) must run as a local system account. For more details on how to set up the ACC service as a local system account, see Run ACC as a local system account user.

Policies for Windows — Application

DEX provides the following policies for applications.

Check instanceDescriptionFrequencyHistorical or latestCheck instance parameters\*
os.win.check-app-historicalCollects the application metrics in the Windows device and sends the metric data to Metric Base.5 minsHistoricalcpu\_usage, memory\_usage, uptime, last\_access\_time, crashes, io\_usage\_read, io\_usage\_write, is\_running, freezes,zscaler\_service\_status
os.win.check-app-sccm-latestCollect application-specific metrics for the Microsoft System Center Configuration Manager app on theWindows device.24 hoursLatestNot applicable
Important: * DEX Windows Apps Metrics with the uptime check instance parameter only runs with the Local System account.

Policies for Windows — Application Network Experience

Before configuring the following policies, make sure that the Agent Client Collector is version 4.2 or higher to display the network path for applications. Additionally, the DEX browser extension plugin must be installed and should be version 2.5.0 or higher to fetch network metrics for web applications.

Note: These policies have the following limitations:

  • A tracert command is used to get the network path.
  • ANE doesn't work for path in the domain URL. Example: <domain>/<path>

DEX provides the following policies for applications.

Check instanceDescriptionFrequencyHistorical or latestCheck instance parameters
os.win.check-app-dom-network-historicalCollects Windows installed apps network monitoring metrics like latency, packet loss, and jitter and sends monitoring data to Metric Base and the ServiceNow® instance.10 minsHistoricaldomain_network_details
os.win.check-web-app-dom-net-historicalCollects Windows Web apps network monitoring metrics like latency, packet loss, and jitter and sends monitoring data to Metric Base and the ServiceNow instance.10 minsHistoricaldomain_network_details
os.win.check-app-dom-network-latestCollects Windows Web apps network monitoring metrics like latency, packet loss, and jitter and sends monitoring data to Metric Base and the ServiceNow instance.30 minsLatestsource_details, domain_network_route_details

Policies for Windows — Device

DEX provides the following policies for devices.

Check instanceDescriptionFrequencyHistorical or latestCheck instance parameters\*
os.win.check-system-metrics-latestCollects Windows device metrics and sends the metric data to the ServiceNow instance.24 hoursLatestuptime, logged\_in, antivirus\_enabled, firewall\_enabled, disk\_details, device\_details, battery\_details, bsod\_details, cpu\_details, os\_details, power\_plan, stability\_index, pending\_updates, network\_details, bitlocker\_details, user\_profiles, antimalware\_details, hard\_drive\_status, peripheral\_devices\_details, cpu\_usage, memory\_details, device\_events, last\_access\_time, os\_setup\_details,bios\_details, network\_connection\_profiles, network\_adapter\_details,gpu\_usage, gpu\_vram\_usage,boot\_details
Important: * DEX Windows Device Metrics with the following check instance parameters runs only with a Local System account: energy_consumption, bitlocker_details, last_access_time, pending_updates, user_profiles.
os.win.check-system-metrics-historicalCollects Windows device metrics and sends the metric data to MetricBase.30 minsHistoricalnetwork\_connection\_profiles
os.win.check-system-metrics-historicalCollects Windows device metrics and sends the metric data to MetricBase.5 minsHistoricaldisk\_usage, io\_usage\_write, io\_usage\_read,cpu\_usage, battery\_charge\_percentage, energy\_consumption, memory\_details,uptime, disk\_details, cpu\_performance\_details, crashes, power\_consumption, wifi\_transmit\_rate, wifi\_receive\_rate, wifi\_signal\_strength
os.win.check-process-dataCollects data for running Windows processes and sends the data to the ServiceNow instance.24 hoursNot applicableNot applicable
os.win.check-sys-compliance-historicalCollects Windows device metrics and sends the metric data to the ServiceNow instance.5 minsHistoricalNot applicable
os.win.check-sys-compliance-latestCollects Windows device metrics and sends the metric data to the ServiceNow instance.24 hoursLatestNot applicable
os.win.check-system-executables-latestCollects all the executables present on all volumes of a Windows device.24 hoursLatestconfig\_file\_read
os.win.check-system-registry-latestGets registry data on Windows device.24 hoursLatestconfig\_file\_read
Check instanceDescriptionFrequencyHistorical or latestCheck instance parameters
os.win.check-system-custom-query-on-chanGets a logged-in user's data on a Windows device whenever there’s a change.60 secsLatestquery,query_sys_id, query_type
Check instanceDescriptionFrequencyHistorical or latestCheck instance parameters
os.all.check.internal.get-device-configuGets a logged-in user's device configuration whenever there’s a change.60 secsLatestNot applicable

Note: If you upgrade the DEX Content Playbook plugin on an instance and encounter unexpected policy update issues, see the Troubleshooting: Policy update issues post DEX plugin upgrade [KB1586917] article in the Now Support knowledge base.

Parent Topic:DEX Content Playbook reference