Trellix Data Loss Prevention Extension 11.11 Update 4 (11.11.4) Release Notes

Prev Next

Trellix Data Loss Prevention extension release 11.11 Update 4 (11.11.4) includes resolved issues.

Every update release is cumulative and includes all features and fixes from the previous release. We recommend that you always upgrade to the most current update.

Rating for 11.11 Update 4 (11.11.4) extension

The rating defines the urgency for installing this update.

Recommended

This release is recommended for all environments. Apply this update at the earliest convenience.

For more information, see KB51560.

Release Details

Release date: March 26, 2025 (Repost)

Release build:

  • Trellix Data Loss Prevention extension 11.11.4.23

Note

Trellix Data Loss Prevention extension 11.11.4.23 is compatible with ePO - On-prem 5.10 CU15 only for the purpose of ePO - On-prem upgrade. However, it is highly recommended to install ePO - On-prem 5.10 SP1 Update 1 (CU17) or SP1 Update 2 (CU18) or SP1 Update 3 (CU19) or SP1 Update 4 (CU20) immediately without modifying the Trellix DLP policies.

  • Appliance Management extension— build 1.4.0.19

  • DLP Appliance Management extension — build 11.11.0.37

The latest Appliance Management and DLP Appliance Management extensions support the following features:

  • Setting the password complexity for local appliance administrator account

  • Including Active Directory users as appliance administrators

  • Scanning service API tokens

For more information, see the Trellix DLP Network Monitor and Trellix DLP Network Prevent Release Notes.

Minor update or fixes

This release improves existing features:

Minor UI change - The label Export to CSV in the Definitions page under DLP Policy Manager is updated to Download Sample CSV. To view this change, go to the Definitions page, select device template, and click the Action dropdown.

Spreadsheet cell delimiter for macOS - The Respect Cell Boundaries in Spreadsheets checkbox in Content TrackingText Extractor prevents the incorrect identification of random 16-digit numbers. By default, this checkbox remains unchecked.

This feature addresses issues with false positive matches during regex testing for sensitive data. It allows users to configure the delimiter between cell values by checking the Respect Cell Boundaries in Spreadsheets checkbox, preventing unintended regex matches. As a result, data accuracy improves, and false positives are significantly reduced.

Regex Update - This release updates the regular expression (regex) pattern for validating Canadian passport numbers. This enhancement ensures better accuracy in identifying and processing Canadian passport numbers, aligning with the latest format and validation requirements.

New built-in custom validators - Trellix Data Loss Prevention has introduced 13 built-in custom validators to accurately validate Personally Identifiable Information (PII) and Financial Account Information. These validators are designed to streamline data validation processes, ensuring compliance with regional regulatory standards and improving the accuracy of sensitive data identification.

The newly added validators include:

  1. Argentina CUIT

  2. Indonesia ID

  3. Japan National ID

  4. Malaysia ID

  5. Mexico Bank Account Numbers

  6. Mexico SSN

  7. Turkish ID

  8. UAE ID

See Classification Definitions Reference Guide for detailed information on the regex patterns used for these validators.

Resolved issues

For the DLP Endpoint for Windows related resolved issues, see the Trellix Data Loss Prevention Endpoint for Windows 11.11.x Release Notes.

For the DLP Endpoint for Mac related resolved issues, see the Trellix Data Loss Prevention Endpoint for Mac 11.10.x Release Notes.

For the DLP Discover related resolved issues, see the Trellix Data Loss Prevention Discover 11.10.x Release Notes.

For the DLP Network Prevent related resolved issues, see the Trellix Data Loss Prevention Prevent 11.10.x Release Notes.

For the DLP Network Monitor related resolved issues, see the Trellix Data Loss Prevention Monitor 11.10.x Release Notes.

Resolved vulnerability Issues

Reference

Resolution

CVE-2024-9678 and CVE-2024-9679

SB000013964

Fixed an SQL injection vulnerability and hard-coded cryptography key vulnerability. For more information about vulnerability and remediation, see SB000013964



Resolved extension issues

Reference

Resolution

DLPO-13243

Fixed an issue where the purged event count exceeded the matched criteria events count when running the DLP Purge History of Operational Events and Incidents server task.

DLPO-13712

Fixed an issue preventing serial numbers with more than 100 characters from being added under DefinitionsPlug and Play Devices.

DLPO-15879

Fixed an issue that caused the Queries & Reports page to display an error when running custom or built-in queries.

DLPO-16885

Fixed an issue where the Exception added in the Email protection rule gets deleted automatically when you save the updated rule.

Note

When modifying rules, ensure you disable the last exception to successfully clear all configured exceptions instead of removing it.

DLPO-17057

Fixed an issue where updating permission sets multiple times caused them to become empty.

DLPO-17255

Fixed an issue where importing rules changes the Device Template type from Removable Storage Device or Plug and Play Device to Group.

DLPO-17859

Fixed an issue where the Queries & Reports page displayed incorrect count of selected items.

DLPO-18199

Fixed an issue where the Run missed task option could not be selected or deselected on the DefinitionsScheduler.page.

Known issues

For a list of current known issues, see: Trellix Data Loss Prevention 11.x.x Known Issues Article Number: 000013476.