Trellix Data Loss Prevention Extension - SaaS 11.11.2501 Release Notes

Prev Next

Trellix DLP extension and services - SaaS 11.11.2501 includes feature enhancements, minor fixes, and resolved issues.

Trellix DLP extension and services - SaaS 11.11.2501 release information

Release Date - January 29, 2025

Trellix DLP extension and services - SaaS 11.11.2501 release includes minor enhancements and resolved issues.

Every update release is cumulative and includes all features and fixes from the previous release. For the previous release information, see here.

For more information about using Trellix Data Loss Prevention – SaaS, see the Trellix DLP – SaaS Product Guide.

Updated platform, environment, or operating system support

You can get the latest information about supported platforms, environments, and operating systems from KB92445.

Minor update or fixes

This release improves existing features:

Minor UI change - The label Export to CSV is renamed to Download Sample CSV in DLP Policy ManagerDefinitionsDevice TemplatesAction dropdown. Additionally, you can now download the .csv file in all supported non-English languages.

Respect Cell Boundaries in Spreadsheets - The Respect Cell Boundaries in Spreadsheets feature ensures the DLP scanner evaluates each cell individually and avoids merging content from adjacent rows or columns. This prevents the false identification of sensitive data, such as credit card numbers or SSNs, which improves detection accuracy and significantly reduces false positives.

To enable this feature, check the Respect Cell Boundaries in Spreadsheets option in Windows Client ConfigurationContent TrackingText Extractor. By default, this option is unchecked.

Regex update - This release updates the regular expression (regex) pattern for validating Canadian passport numbers. This enhancement ensures better accuracy in identifying and processing Canadian passport numbers, aligning with the latest format and validation requirements.

New built-in custom validators - Trellix Data Loss Prevention – SaaS has introduced 8 built-in custom validators to accurately validate Personally Identifiable Information (PII) and Financial Account Information. These validators are designed to streamline data validation processes, ensuring compliance with regional regulatory standards and improving the accuracy of sensitive data identification.

The newly added validators include:

  1. Argentina CUIT

  2. Indonesia ID

  3. Japan National ID

  4. Malaysia ID

  5. Mexico Bank Account Numbers

  6. Mexico SSN

  7. Turkish ID

  8. UAE ID

See Classification Definitions Reference Guide for detailed information on the regex patterns used for these validators.

Addition to Ignored Processes - The list of ignored processes and file paths related to Trellix products is updated in Windows Client ConfigurationContent TrackingIgnored Processes. These changes are designed to prevent race conditions and enhance overall performance.

Note

Customized policies and rules do not update automatically. You must manually copy the new entries from the Trellix Default policy and incorporate them into your customized policies. For more information on the list of added processes, see article 000013942

Column resizing in Incident Management table - You can now manually resize table columns in the Incident Management page by dragging the column edges. Default column width is set to 150 pixels, which can be adjusted as needed. A scrollbar is introduced for tables with numerous columns to enable horizontal scrolling.

Customizable table views - Create custom table views on the Incident Management page and select them from an available list. To create a custom view, click the + button, enter a View name, select the required columns, and click Save.

You can rearrange columns within a custom view by moving or removing them as needed.

Note

The Trellix Default view remains static and cannot be edited, while users can fully edit and delete custom views.

Updates in DLP Data In-use/motion incidents event type - Trellix Data Loss Prevention – SaaS now includes additional incident properties for DLP Data In-use/Motion incidents event type. The new properties include:

  • Action Taken

  • Connectivity State

  • Evidence Count

  • Expected Action

  • Incident ID

  • Justification Selected Action

  • Product Version

  • Rules

  • Justification User Text

These properties are now available across all query functionalities, including chart and table reports, enabling DLP administrators and analysts to enhance reporting and customize dashboards effectively.

Enhanced security - Trellix Data Loss Prevention – SaaS has improved security by allowing users to update the default shared password. To enhance system integrity, the platform enforces a policy where users cannot apply policies unless the default shared password is changed. You can change the password in DLP SettingsGeneralShared Password.

S3 Bucket Configuration: To ensure seamless device control only deployments, this setting is now made optional.

Resolved issues

This release resolves known issues and customer reported issues.

Reference

Resolution

DLPO-16739

Fixed an issue that caused discrepancies in the Unique Match Count.

DLPO-19148

Fixed an issue that caused an error when downloading evidence after migrating Trellix Data Loss Prevention from On-prem to SaaS.

Known issues

For a list of current known issues, see: Trellix Data Loss Prevention - SaaS Known Issues.

Comparison of Trellix DLP – SaaS with Trellix DLP on-premises

Trellix is working toward feature parity with the on-premises Trellix DLP product. To know more about the options not available in this release, see article 000012803.