The Trellix DLP Endpoint for Windows 11.12.0 release includes new and enhanced features, and resolved issues.
Release details
Note
Existing 11.12.0 x64 clients do not require an upgrade to 11.12.1.21
This 11.12.1 release focuses on extending 11.12.0 capabilities to ARM-compatible systems through a unified installer. It does not introduce new features or resolve issues specifically for x64 systems. Therefore, an upgrade to 11.12.1.21 is only necessary if you plan to deploy on ARM systems or need the unified installer for simplified operations.
Release date - June 4, 2025
Release builds:
Trellix Data Loss Prevention Endpoint client build 11.12.0.808
Note
Trellix DLP Endpoint 11.12.0.808 requires Trellix DLP 11.12.0.60 extension. Trellix DLP Endpoint client software is not compatible with earlier versions of Trellix DLP extensions.
For the specific build numbers, see Product release information in KB68147.
Supported upgrade path
Upgrade from... | To |
|---|---|
11.10.200 | 11.12.0 |
11.10.300 | 11.12.0 |
11.11.0 | 11.12.0 |
11.11.1 | 11.12.0 |
11.11.2 | 11.12.0 |
Updated platform, environment, or operating system support
For additional information on supported platforms, environments, and operating systems, see KB68147.
As part of our ongoing efforts to enhance security, we have upgraded the following third-party libraries:
Libraries | Versions |
|---|---|
zlib | 1.3.1 |
KeyView | 25.1 |
Microsoft Information Protection (MIP) | 1.14.146 |
OpenSSL | 3.3.1 |
Berkeley DB | 5.3.28 |
7-Zip | 23.01 |
libde265 | 1.0.15 |
libxml2 | 2.12.5 |
New or changed features
This release introduces new features or improves existing features:
Optical Character Recognition - Trellix DLP Endpoint for Windows now supports Optical Character Recognition (OCR) to scan and extract text from image files across supported data loss prevention channels, such as file transfers, email attachments, web uploads, and image printing. This enhancement extends Trellix DLP capabilities to content embedded within images, enabling more accurate detection and protection of sensitive information.
For installation instructions, see the Trellix DLP Installation Guide.
For more information on Optical Character Recognition (OCR), see the Trellix DLP Product Guide.
Note
OCR is not supported for Clipboard Protection or Screen Capture Protection rules.
OCR support for Trellix DLP Endpoint for Windows requires a separate installer and an add-on license. To learn more or to purchase a license, contact your account management team—Sales or Customer Success.
Manual Classification and Visual Labeling Enhancements:
You can now configure manual classification to allow users to add both metadata and a visual label to Microsoft Office files and emails with a single-click option within Microsoft Office applications. By default, separate tabs are available for you to add metadata and visual labels to maintain consistency with existing workflows. To enable single-classification selection, go to Windows Client Configuration → User Interface Components and uncheck the option Allow end users to choose one or more classifications to be added to the document metadata.
Note
The single-click classification setting and visual labeling are not supported using the Windows right-click context menu.
You can add a custom prefix before the classification label to provide additional context in Microsoft Outlook.
You can now color-code classification names in document headers and footers to enhance visual identification.
Enhanced UAS Drive Handling in Removable Storage Rules - Trellix DLP Endpoint for Windows now extends UAS (USB Attached SCSI) drive support to these rules:
Removable Storage Device Rule
Removable Storage File Access Rule
To improve detection accuracy, the classification logic for UAS (USB Attached SCSI) drives is enhanced by treating them as removable devices. This refinement allows better differentiation between UAS and SATA drives, reducing false identification and minimizing the need for multiple checks.
Resolved issues
This update resolves the following issues.
For the DLP Extension related resolved issues, see the Trellix Data Loss Prevention Extension 11.12.x Release Notes.
Resolved Endpoint issues
Reference | Resolution |
|---|---|
DLPW-10066 | Fixed an issue where duplicate evidence entries were generated for a single file upload in Zoom meetings when an Application File Access Protection rule was triggered. |
DLPW-10124 | Fixed an issue where Trellix DLP Endpoint client installation failed during OS imaging using Microsoft Configuration Manager. |
DLPW-10823 | Fixed an issue where Trellix DLP failed to block screen captures using the Snipping Tool or Snip & Sketch app on Windows 11 23H2 systems. |
DLPW-12352 | Fixed an issue where the files were unintentionally downloaded from the OneDrive local sync folder during DLP processing. |
DLPW-12520 | Fixed an issue where the Classification Tester incorrectly identified .txt files as encrypted. |
DLPW-14468 | Fixed an issue where the Evidence Path field in the Diagnostic Tool was not displayed when Direct-to-Cloud (D2C) evidence upload was configured through the extension. |
DLPW-14643 | Fixed an issue where emails forwarded from Outlook with the DLP add-in enabled and containing user signatures were encrypted, preventing recipients from viewing them in the Gmail mobile app. |
DLPW-14788 | Fixed an issue in Trellix DLP Endpoint where drag-and-drop actions on complex web forms in Google Chrome incorrectly triggered file handling logic, resulting in JavaScript runtime errors. |
DLPW-14813 | Fixed an issue where enabling Application File Access Protection Rules (AFAPR) caused Notepad to freeze when opening text files from a network share. |
DLPW-14829 | Fixed an issue where unchecking the Manage and protect Chromium Incognito and guest mode settings option in Windows Client Configuration did not update the registry key, causing Incognito mode to remain disabled in Google Chrome and Microsoft Edge browsers. |
DLPW-14852 | Fixed an issue where Microsoft Edge (msedge.exe) was crashing due to conflicts between Trellix DLP and other Trellix products. |
DLPW-15764 | Fixed an issue where launching Microsoft PowerPoint on Windows endpoints triggered Bad Image errors due to DLP Printer and ENS Handlers' interactions with |
DLPW-16235 | Fixed a security vulnerability (CVE-2024-43590) by upgrading the Microsoft Visual C++ Redistributable bundled with the Trellix DLP for Windows installer to version 14.42.34438. |
DLPW-16240 | Fixed an issue where web protection rules for specific URLs did not trigger after upgrading to DLP Agent 11.11.2 or 11.10.300. |
DLPW-16254 | Fixed an issue where the Printer Protection rules failed to block printing of sensitive information in Outlook when using the Aptos font. This issue occurred due to improper rendering of specific character combinations such as 'ff', 'ffi', 'ffl', 'fi', and 'fl'. |
DLPW-16635 | Trellix DLP now supports integration with Titus SDK on Microsoft .NET 6.0 and later versions |
Known issues
For a list of current known issues, see: Trellix Data Loss Prevention 11.x.x Known Issues (KB89301).