Service Itsm Agentic Setup Cmdb Bundle Deploy

forcedotcom/sf-skills/skills/service-itsm-agentic-setup-cmdb-bundle-deploy

作者 forcedotcome5164d94d751無授權條款1K 個星標收錄於 2026年10月8日更新於 2026年10月8日儲存庫昨天更新

Deploy (install) the CMDB Foundation base content bundle in Service Cloud ITSM against a production or sandbox org, after the CMDB feature is enabled. Use when the user asks to install the CMDB bundle, deploy CMDB Foundation, set up the CMDB base content, install CMDB out-of-the-box content, or finish CMDB setup with the base bundle. Triggers on: install CMDB bundle, deploy CMDB Foundation, CMDB base content, CMDB content bundle, bundleInstallation, finish CMDB setup. DO NOT TRIGGER when: the user wants to enable the CMDB feature for the org (that is the CMDB feature-enable skill), assign CMDB permission sets to a user (that is the CMDB access-assign skill), install optional non-base add-on bundles, deploy general (non-CMDB) metadata or packages, or work with CMDB records directly.

僅含說明DevOps & Cloud
AI 產生的概覽

在啟用 CMDB 功能後,將 CMDB Foundation 基礎內容套件安裝到 Service Cloud ITSM 組織中。

功能
引導代理透過 headless-360 MCP 伺服器,將 CMDB Foundation(基礎)內容套件部署到 Salesforce Service Cloud ITSM 組織。它會確認 CMDB 已啟用、讀取即時內容套件目錄、解析準確的最新基礎版本、執行安裝並驗證已安裝版本。當功能未開啟或使用者缺少 CMDB 存取權限時,也會引導使用者使用相關設定技能。
適用情境
適用於使用者要求安裝 CMDB 內容套件、部署 CMDB Foundation、設定 CMDB 基礎內容,或使用基礎內容套件完成 CMDB 設定的情境。應在 CMDB 功能啟用之後、安裝選用附加內容套件或處理資料之前使用。
執行需求
需要 headless-360 MCP 伺服器及其 discover、describe、dispatch 和 dispatch_readonly 工具,以及綁定到目標組織的已驗證 OAuth 工作階段。組織必須已啟用 CMDB 功能,且目前使用者需具備 CMDB 權限,包括用於內容套件管理的 Type Manager。不包含指令碼;附帶一個說明呼叫形式的參考檔案。

Deploy the CMDB Foundation Bundle (Service Cloud ITSM)

Installs the CMDB Foundation (base) content bundle — the out-of-the-box configuration-item types, schema, and content that make CMDB usable. This is Layer 4, the final layer of the CMDB setup stack, and it requires the CMDB feature to already be enabled (Layer 2). Every call runs through the Salesforce-hosted Headless-360 MCP server (server key headless-360) via its four meta-tools (discover, describe, dispatch_readonly, dispatch). The org is derived from the OAuth JWT bound to the current MCP session — the skill never handles an org id, alias, or credentials — so this works identically against production and sandbox with no per-user MCP install.

Scope

  • In scope: confirming CMDB is enabled, reading the live bundle catalog, resolving the exact version of the base bundle, installing the base (CMDB Foundation) bundle, and verifying.
  • Out of scope: enabling the CMDB feature / provisioning the CMDB tenant (Layers 0–2 — service-itsm-agentic-setup-cmdb-configure), assigning permission sets (Layer 3 — service-itsm-agentic-setup-cmdb-access-assign), installing optional add-on bundles (e.g. Component Identification Rules), CMDB record CRUD, or Discovery.

This skill installs the base bundle only. Optional add-ons are intentionally out of scope.

Why order matters

The bundle Connect APIs (bundleListView, bundles/details, bundleInstallation) are gated by orgHasCMDBEnabled. Until the CMDB feature is enabled they return 403 FUNCTIONALITY_NOT_ENABLED, so this skill must run after the CMDB feature-enable skill has turned the feature on.

On top of the org gate, these reads also enforce the running user's own CMDB access, so a 403 FUNCTIONALITY_NOT_ENABLED here has two distinct causes — feature-off or user-has-no-access. Step 1 disambiguates them via the feature status before sending the user anywhere; never assume a 403 means the feature is off.

Mechanism

All operations dispatch through headless-360 MCP tools. Reads go through mcp__headless-360__dispatch_readonly, writes through mcp__headless-360__dispatch — both take raw HTTP: {"url": "<path>", "method": "GET|POST", "body"?: {...}, "queryParams"?: {...}} — not {operation_id, arguments}. See references/mcp-invocation.md for the exact url / method / body of every call. The four tools:

  • mcp__headless-360__discover — semantic search over the indexed operation catalog (discovery / confirmation only).
  • mcp__headless-360__describe — pull the full input schema and canonical route before the install POST.
  • mcp__headless-360__dispatch_readonly — the dispatcher for every read (GET).
  • mcp__headless-360__dispatch — the dispatcher for every write (POST/PATCH).

The skill never handles credentials — the org is bound to the current OAuth session. If a dispatch* call returns an auth error, tell the user to re-authenticate the headless-360 MCP connection (and confirm the session points at the intended org), then stop.


Clarifying questions

Ask only what you cannot infer from conversation:

  • Which org? Confirm the target org and state plainly that content will be installed into this org (a write). For production, get explicit confirmation.

Do not re-ask for anything the user already provided; pre-populate and note "(from conversation)".


Workflow

Sequential. Always read before you write — read the catalog and resolve the exact version before installing. Never guess a version string.

Step 1 — Confirm CMDB is enabled (read, gate)

text
dispatch_readonly({ "url": "/services/data/v67.0/connect/cmdb/bundleListView", "method": "GET" })
  • 200 → CMDB is enabled; the response lists available bundles and their install status. Proceed.
  • 403 FUNCTIONALITY_NOT_ENABLED → ambiguous — disambiguate before telling the user CMDB is off. This read enforces both the org gate and the running user's own CMDB access, so a 403 has two possible causes. Check the feature status to tell them apart:
    text
    dispatch_readonly({ "url": "/services/data/v67.0/connect/setup/discovery/feature/service-cloud-itsm-cmdb-integration/status", "method": "GET" })
    • status != ENABLED → the CMDB feature isn't enabled. STOP and route the user to the CMDB feature-enable skill (service-itsm-agentic-setup-cmdb-configure) first.
    • status == ENABLED → the feature is enabled; the running user simply lacks CMDB permission sets. STOP and route the user to the CMDB access-assign skill (service-itsm-agentic-setup-cmdb-access-assign) to grant themselves CMDB access — at minimum the read set, plus Type Manager for bundle management — then retry. Do NOT send them to the feature-enable skill; CMDB is already enabled.

From the bundleListView response, identify the base bundle (CMDB Foundation) and note its currentInstalledVersion. If it is already installed at the latest version, tell the user there is nothing to do.

Step 2 — Resolve the exact base version (read)

Do NOT guess or hard-code the version. Read the authoritative version from bundle details:

text
dispatch_readonly({ "url": "/services/data/v67.0/connect/cmdb/bundles/details", "method": "GET", "queryParams": { "bundleIdentifier": "base" } })

Read latestVersion from the catalog and use that string verbatim for the install — do NOT strip, add, or reformat any characters (including a leading v). The install endpoint matches the version by exact string equality against the registry, and the registry stores versions exactly as the catalog reports them (e.g. "v3.0"), so the value must be passed through unchanged.

You may only install the latest version. The install endpoint rejects any non-latest version ("Target version <x> is not the latest available version") — it does not support installing or rolling back to an older version, so always resolve latestVersion and install exactly that. If installedVersion already equals latestVersion, stop — the base bundle is up to date.

If bundles/details returns 403 FUNCTIONALITY_NOT_ENABLED while bundleListView (Step 1) returned 200: the org gate is fine, but the running user lacks the bundle-management permission. bundles/details requires the Type Manager role — the Reader / Owner / Type Reader sets are not sufficient. Route the user to the CMDB access-assign skill to grant Type Manager, then retry. As a fallback, bundleListView already returns the base bundle's currentInstalledVersion and latestVersion, so you can resolve the version from Step 1's response if Type Manager cannot be assigned.

Step 3 — Confirm with the user (before the write)

Show the base bundle name, the version to be installed, and the target org. Get explicit confirmation before the write. State plainly that this installs out-of-the-box CMDB content into the org.

Step 4 — Install the base bundle (write)

Call discover(query="cmdb bundle installation") then describe(id=<bundleInstallation operation id>) to confirm the input schema, then install:

text
dispatch({ "url": "/services/data/v67.0/connect/cmdb/bundleInstallation", "method": "POST", "body": { "bundleIdentifier": "base", "version": "<latestVersion from Step 2, verbatim>" } })

Both bundleIdentifier and version are required, and version must be the catalog's latestVersion string passed through unchanged. A success: true response means the installation was initiated — it may complete asynchronously.

Step 5 — Verify (read — do NOT trust the install response alone)

Re-read bundle details and confirm the base bundle now reports the installed version:

text
dispatch_readonly({ "url": "/services/data/v67.0/connect/cmdb/bundles/details", "method": "GET", "queryParams": { "bundleIdentifier": "base" } })

installedVersion should equal the version you installed. If installation is async and it has not updated yet, tell the user it is in progress and how to re-check.


Rules / Constraints

ConstraintRationale
Read bundleListView first as the enablement gateA 403 here means either CMDB isn't enabled or the user lacks CMDB access — disambiguate via feature status before acting
Resolve the version from bundles/details; never guess; pass latestVersion verbatimThe install endpoint matches the version by exact string equality against the registry, which stores it exactly as the catalog reports (e.g. "v3.0") — do not strip or reformat any characters
Install only the latest versionThe endpoint rejects any non-latest version ("Target version <x> is not the latest available version"); it cannot install or roll back to an older version
Install base onlyThis skill is scoped to the CMDB Foundation base bundle; optional add-ons are out of scope
Confirm the target org and the install with the userInstalling content is a real, hard-to-reverse write on a live org
Skip if already installed at latestAvoid redundant installs; report "already up to date"
Treat success: true as "initiated"; verify separatelyInstallation can be asynchronous
Never expose internal jargon to the userKeep record IDs, HTTP status codes (403/400/500), API error codes (FUNCTIONALITY_NOT_ENABLED, …), endpoint names (bundleListView, bundles/details, bundleInstallation), developer names, and tooling internals (dispatch, headless-360) out of user-facing output. Use bundle names and versions and plain language

Verification checklist

  • bundleListView returned 200 (CMDB is enabled and the user has access)?
  • Resolved latestVersion for base from bundles/details (not guessed)?
  • Skipped if already at the latest version?
  • Confirmed the target org + install with the user before writing?
  • bundleInstallation returned success: true?
  • Verified installedVersion matches (or reported async in-progress)?

Output expectations

text
CMDB Bundle Deploy — Complete (via service-itsm-agentic-setup-cmdb-bundle-deploy)
Target org: <org>
  Bundle:   CMDB Foundation (base)  Version:  <version>  Status:   Installation initiated — success
CMDB now has its base content installed. Combined with the enabled feature and assigned useraccess, CMDB is ready end-to-end.

Keep internal jargon out of user-facing output (no record IDs, HTTP status codes, error codes, or endpoint names). If any step fails, stop and tell the user — in plain language — what didn't succeed and what it means for them (e.g. "CMDB isn't turned on for this org yet, so the content can't be installed" rather than echoing a 403 code), then point to the fix.


Common failures (surface these in plain language)

SymptomLikely causeWhat to tell the user
403 on the catalog read and feature not enabledCMDB feature not enabled for the orgCMDB must be turned on for the org first; that's a separate setup step — point to the feature-enable skill
403 on the catalog read but feature is enabledFeature is on; the running user lacks CMDB access (this read enforces user-level access too)Grant the user CMDB access first (a separate setup step), then try again — the feature itself is already on
403 on the version read but the catalog read succeededThe user lacks the CMDB bundle-management role (Type Manager)Grant the user the CMDB Type Manager role (a separate access step), then retry; the org itself is set up correctly
Install rejected — bundle/version doesn't existWrong version stringRe-read the catalog and use the exact latest version it reports
Install reported success but the version hasn't changedInstallation is running in the backgroundIt's in progress; check again shortly to confirm it finished
Downstream error on installTemporary platform dependency issueTry again; if it keeps failing, this needs Salesforce support
Connection/authentication errorThe org connection isn't set up or has expiredRe-authenticate the org connection and confirm it points at the intended org, then retry

Cross-skill integration

WhenSkill
The org CMDB feature is not enabled yet (org gate still closed)service-itsm-agentic-setup-cmdb-configure (Layers 0–2 — enable the feature first, then return here)
The running user lacks CMDB access, or lacks Type Manager for bundle managementservice-itsm-agentic-setup-cmdb-access-assign (Layer 3 — grant the user CMDB access, including Type Manager, then return here)

Reference file index

FileWhen to read
references/mcp-invocation.mdExact mcp__headless-360__* call shapes for the bundle catalog + install calls, response envelopes, the install schema lookup, and the error table

來源與署名

來源:forcedotcom/sf-skills位於skills/service-itsm-agentic-setup-cmdb-bundle-deploy提交e5164d9

授權條款: 無授權條款

內容歸原作者所有。SourceWeft 從公開儲存庫中收錄這些內容。

檢舉或申請下架

更多來自 forcedotcom/sf-skills 的技能

Service Itsm Teams Itservice Configure

forcedotcom

Configure the "Set Up Salesforce IT Service" checklist for Microsoft Teams Employee Service (ITSM) — the employee side, covering app enablement, marketplace install guidance, user access assignment, and Digital Experience Site selection. Use this for: 'turn on Salesforce IT Service', 'set up IT Service on Teams', 'assign Teams for Employee permission set', 'give employees access to Teams for Employee Service', 'manage user access for Teams ITSM', 'grant users the permission sets needed for Teams Employee Service', 'select a digital experience site for Teams', 'install Salesforce IT Service app on Teams', or any request to complete the IT Service half of the Teams ITSM Go page checklist (including the Manage User Access step). DO NOT TRIGGER for the base Teams Salesforce Go page toggle or Azure/Entra app setup (service-itsm-teams-configure) or for the IT Desk/fulfiller half of the checklist (service-itsm-teams-itdesk-configure).

待分類1K昨天更新

Service Itsm Teams Coordinate

forcedotcom

End-to-end autopilot orchestrator for setting up Microsoft Teams integration in Salesforce Service Cloud ITSM — runs the whole flow (enable the Teams for Employee Service Go feature, register the Microsoft Entra app, populate Named Credentials, configure the IT Desk and IT Service checklists, turn on Swarming, and optionally embed the Agentforce agent) in one continuous pass, stopping only at the points a human must act. Use when the user asks to set up Microsoft Teams for ITSM end to end, 'set up teams for it service', 'do the whole teams itsm setup', 'configure microsoft teams for employee service', or wants a guided Teams ITSM walkthrough. Delegates each stage to a specialized child skill while driving the sequence itself. DO NOT TRIGGER when the user asks to enable Teams alone, configure just the IT Desk or IT Service checklist alone, or enable Swarming alone — delegate directly to the specific child skill in those cases.

待分類1K昨天更新

Service Itsm Teams Itdesk Configure

forcedotcom

Configure the "Set Up Salesforce IT Desk" checklist for Microsoft Teams Employee Service (ITSM) — the fulfiller/agent side, covering app enablement, marketplace install guidance, user access assignment, and Swarming collaboration-tool setup. Use this for: 'turn on Salesforce IT Desk', 'set up IT Desk on Teams', 'assign Teams for IT Desk permission set', 'set Teams as collaboration tool for swarming', 'install Salesforce IT Desk app on Teams', or any request to complete the IT Desk half of the Teams ITSM Go page checklist. DO NOT TRIGGER for the base Teams Salesforce Go page toggle or Azure/Entra app setup (service-itsm-teams-configure) or for the IT Service/employee half of the checklist (service-itsm-teams-itservice-configure).

待分類1K昨天更新

Service Itsm Teams Debug

forcedotcom

透過對 Salesforce 組織執行通過/失敗設定檢查清單,診斷 Microsoft Teams 員工服務(ITSM)設定失敗問題。

DevOps & Cloud1K昨天更新

Service Itsm Teams Employee Agent Configure

forcedotcom

Configure the embedded Agentforce Employee Agent so it replies inside the Microsoft Teams ITSM custom client ('Salesforce Employee Assist' / 'Ask AI Agent'). Use this for: 'set up employee agent in Teams', 'embed Agentforce agent in Teams', 'make the IT Service Employee Agent reply in Teams', 'Teams Ask AI Agent not responding', 'agent joins then leaves without replying', 'configure MIAW deployment for Teams employee agent', 'Teams embedded messaging agent setup'. Builds the whole stack headlessly (zero Setup-UI clicks): the Web messaging channel with User Verification ON, the Enhanced Chat User Verification Key Set (JWKS_URL) it requires, the Teams_AgentForce custom-client deployment, the routing flow to the agent, and the Agent Access permission set that lets the portal user reach the agent. DO NOT TRIGGER for enabling the Teams feature Salesforce Go page toggle (service-itsm-teams-configure) or for configuring notification preferences.

待分類1K昨天更新

Service Itsm Swarming Configure

forcedotcom

透過 Connect API 呼叫啟用 Salesforce Swarming ITSM 功能,並將協作工具設為 Teams。

DevOps & Cloud1K昨天更新