Trellix Data Loss Prevention Network Prevent – SaaS 11.11.0 Release Notes

Prev Next

Trellix Data Loss Prevention Network Prevent – SaaS 11.11.0 includes feature enhancements, minor fixes, and resolved issues.

Trellix Data Loss Prevention Network Prevent – SaaS release information

Release Date - July 11, 2025

Trellix DLP – SaaS is a unified solution that includes other DLP products. This release includes only Trellix Data Loss Prevention Network Prevent – SaaS and is identified as version 11.11.0. Trellix Data Loss Prevention Network Prevent – SaaS 11.11.0 release includes minor enhancements and resolved issues.

Every update release is cumulative and includes all features and fixes from the previous release. For the previous release information, see here.

For more information about using Trellix Data Loss Prevention Network Prevent – SaaS, see the Trellix DLP – SaaS Product Guide.

Trellix DLP Network Prevent installation images:

  • For VMware vSphere virtual system — Trellix-PS-11.11.0-3686.100.ps.hw10.hdd.ova

  • For Windows Hyper-V — Trellix-PS-11.11.0-3686.100.HyperV_ps.zip

  • For Nutanix Acropolis Hypervisor (AHV) — Trellix-PS-11.11.0-3686.100.iso

  • For Amazon Web Services — Trellix-PS-11.11.0-3686.100.AWS_ps.zip and Trellix DLP Network Prevent AMI

Updated platform, environment, or operating system support

You can get the latest information about supported platforms, environments, and operating systems from 000010052.

New or changed features

Setting the password complexity for local appliance administrator account — To strengthen appliance security, you can now set the password complexity for the local appliance administrator user account using the DLP Appliance Management settings. By default, the complexity is set to a minimum length of 8 characters and a maximum length of 70 characters.

Note

The password must be changed only from the appliance console or SSH menu. Setting it through the command line does not synchronize the password for all DLP services. If changed through the command line, the password must be updated from the SSH menu.

Set the password complexity in your default policy before changing the password in the SSH menu. For more information, see Setting the password complexity for local appliance administrator account.

Including Active Directory users as appliance administrators — You can now include AD users as administrators and allow more users to manage the appliances. You can add a maximum of 5 users with the administrator privileges. It is possible to assign users as appliance administrators from only one external AD server.

To include appliance administrators, see Including Active Directory users as appliance administrators.

Operating System changes — Trellix DLP Network Prevent software was developed based on CentOS Linux 7 OS, which reached its end of life on June 30, 2024. Trellix DLP Network Prevent has now been migrated to AlmaLinux-based operating system to enhance security and optimal support. This new OS is specifically designed and hardened to meet the requirements of Trellix DLP Network, making the appliances more resilient to attacks. It is recommended to upgrade the appliances as soon as possible.

As a result of this upgrade, the structure of the disk partitions is changed, due to which the older appliance statistics and log files will no longer be available. However, the appliance statistics can't be preserved. Accessing system configuration settings, DLP Capture data, and Trellix ePO details will still be possible. For more information, see article 000014352.

Scanning service API tokens — Integration with third-party cloud gateways for content inspection over API now requires authorization using API tokens. The scanning service API tokens are pushed to DLP Network Prevent for authorizing API requests. It looks for the authorization header and verifies the API token. This can be configured using the DLP Appliance Management policy.

For more information about how to generate and manage the API tokens, see Authorizing API requests using the Scanning Service API token.

New built-in custom validators: Additional built-in custom validators are introduced to accurately validate Personally Identifiable Information (PII) and Financial Account Information. These validators are designed to streamline data validation processes, ensuring compliance with regional regulatory standards and improving the accuracy of sensitive data identification.

The newly added validators include:

  • Argentina CUIT

  • Indonesia ID

  • Japan National ID

  • Malaysia ID

  • Mexico Bank Account Numbers

  • Mexico SSN

  • Turkish ID

  • UAE ID

  • UY ID

See Classification Definition Reference Guide for detailed information on the regex pattern used in these validators.

Resolved issues

This release resolves known issues and customer-reported issues.

Reference

Resolution

DLPN-17426

This release resolves an issue where a unique match string keyword match for the Vietnamese language caused false positive detections.

DLPN-17446

This release fixes an issue where ePO appliance management console displayed an error message for the SMTP or ICAP proxy even when the proxy was disabled on DLP Network Prevent.

Known issues

For a list of current known issues, see: Trellix Data Loss Prevention - SaaS Known Issues.

Comparison of Trellix DLP – SaaS with Trellix DLP on-premises

Trellix is working toward feature parity with the on-premises Trellix DLP product. To know more about the options not available in this release, see article 000012803.