This release is applicable for on-premises installations. Trellix Data Loss Prevention extension release 11.13.0 includes new and enhanced features and resolved issues.
Every update release is cumulative and includes all features and fixes from the previous release. We recommend that you always upgrade to the most current update.
Rating for 11.13.0 extension
The rating defines the urgency for installing this update.
Recommended
This release is recommended for all environments. Apply this update at the earliest convenience.
For more information, see KB51560.
Release Details
Release date: December 9, 2025
Release build:
Trellix Data Loss Prevention extension 11.13.0.45
Note
Trellix Data Loss Prevention extension 11.13.0.45 is compatible with ePO - On-prem 5.10 CU15 only for the purpose of ePO - On-prem upgrade. After the upgrade to CU16, it is highly recommended to install ePO - On-prem 5.10 SP1 Update 1 (CU17) or SP1 Update 2 (CU18) or SP1 Update 3 (CU19) or SP1 Update 4 (CU20) or SP1 Update 5 (CU21) or SP1 Update 6 (CU22) or SP1 Update 7 (CU23) immediately without modifying the Trellix DLP policies.
Appliance Management extension— build 1.4.0.42
DLP Appliance Management extension — build 11.11.0.83
New or enhanced features
This release adds support for the following features:
AI Data Risk Dashboard - This release introduces the Trellix AI Data Risk Dashboard to monitor, identify, and mitigate the risks associated with the unmanaged use of Generative AI platforms (Shadow AI) within your organization.
Leveraging your existing DLP Endpoint policies, this dashboard provides actionable, real-time insights into sensitive data being shared across key exfiltration vectors, including file uploads, copy/paste operations, and clipboard sharing with web-based AI prompts.
For more information on the key features and configuration, see Managing Incidents using AI Data Risk Dashboard in the Trellix DLP Product Guide.
Microsoft Entra ID Integration for DLP Policies - This release enhances our Data Loss Prevention capabilities by introducing native support for Microsoft Entra ID (formerly Azure AD). This integration allows IT administrators to configure DLP policies with user conditions and exceptions based on users and groups defined within Microsoft EntraID.
This feature provides a seamless and consistent policy enforcement experience. You can now extend your existing data protection, application control, and device control rules to all endpoints, whether they are synced to an on-premises Active Directory or directly to Microsoft Entra ID.
For more information on the configuration steps, see Set up Entra server and add Entra users in the Trellix DLP Product Guide.
Note
For seamless operation of Microsoft Entra ID it is recommended to install ePO - On-prem 5.10 SP1 Update 6 (CU22)
Improved Performance - Improved the performance and responsiveness of Policy Assignment page in DLP Policy Manager when managing a large amount of information.
UI Terminology Updates - We have standardized and updated several labels and field names across the user interface for improved clarity and consistency. The following table refers to the complete list of all new labels and their previous labels.
Previous labels | New labels |
|---|---|
Azure Server | Microsoft Purview Information Protection |
Microsoft RM Service | AD RMS |
Azure authentication settings | Authentication settings |
Azure RMS | Microsoft Purview Rights Management |
Azure labels | Labels |
Azure Information Protection | Microsoft Purview Information Protection |
Azure Label Name | Label Name |
Azure Label ID | Label ID |
Azure Information Protection window | Microsoft Purview Information Protection |
Microsoft Rights Management Encryption | Microsoft Purview Rights Management |
Microsoft RM server | Microsoft Purview RMS Server |
Microsoft Information Protection (MIP) Decryption Service | Microsoft Purview Decryption Service |
Microsoft AD-RMS Rights Management | AD RMS Rights Management |
Microsoft Azure RMS Rights Management | Microsoft Purview Rights Management |
This release also adds support for the following features:
Features | Trellix DLP Endpoint for Windows 11.14.0 | Trellix DLP Endpoint for Mac 11.13.0 | Trellix DLP Network Prevent and Network Monitor 11.11.100 | Trellix DLP Discover 11.11.0 |
|---|---|---|---|---|
AI Data Risk Dashboard | Yes | Yes | Yes | No |
IPv6 Support | Yes | Yes | No | Yes |
Seamless Web Browser Content Inspection API | Yes | No | No | No |
Microsoft Entra ID Integration | Yes | Yes | No | No |
Advanced Visual Labeling | Yes | No | No | No |
Environment Variable Support for NSPR | Yes | No | No | No |
Block Reaction for NSPR | Yes | Yes | No | No |
For more information on the new or changed features, see the DLP Endpoint for Windows, DLP Endpoint for Mac, DLP Network, and DLP Discover Release Notes
Removed feature
Seclore RMS integration with Trellix Data Loss Prevention has been removed as Seclore no longer supports the SDK used for integration. For more information, see KB96499.
Resolved issues
For the DLP Endpoint for Windows related resolved issues, see the Trellix Data Loss Prevention Endpoint for Windows 11.14.x Release Notes.
For the DLP Endpoint for Mac related resolved issues, see the Trellix Data Loss Prevention Endpoint for Mac 11.13.x Release Notes.
For the DLP Discover related resolved issues, see the Trellix Data Loss Prevention Discover 11.11.x Release Notes.
For the DLP Network Prevent related resolved issues, see the Trellix Data Loss Prevention Prevent 11.11.x Release Notes.
For the DLP Network Monitor related resolved issues, see the Trellix Data Loss Prevention Monitor 11.11.x Release Notes.
Resolved extension issues
Reference | Resolution |
|---|---|
DLPO-18609 | Fixed an issue where the DLP Incident Manager page failed to retrieve and display incidents associated with rulesets containing accented characters in their name. |
DLPO-18876 | Fixed an issue where the DLP evidence purge task finished with a successful status but failed to process or mark unassociated evidence files for deletion. |
DLPO-22330 | Fixed an issue in the DLP Incident Manager search functionality that caused the ePO session to break when special characters, specifically the backslash character (\) were used in the search field. |
DLPO-23145 | Fixed an issue where filtering incidents by Rule Name failed if the name contained special characters. |
Known issues
For a list of current known issues, see: Trellix Data Loss Prevention 11.x.x Known Issues Article Number: 000013476.