Trellix Data Loss Prevention – SaaS 2306 Release Notes

Prev Next

Trellix DLP – SaaS 2306 includes minor enhancements to the existing features and resolved issues. It also addresses product rebranding changes.

Product rebranding changes

This note is solely for your information. There is no action required. You can continue to secure your organization with Trellix DLP Endpoint - SaaS as usual. You will notice the following changes in the software:

  • Product name - McAfee MVISION Data Loss Prevention Endpoint is renamed as Trellix Data Loss Prevention Endpoint – SaaS. All features and options prefixed with product name are renamed with the new product name.

  • Brand logo and name - McAfee logo and name are replaced with logo and name.

  • User interface - Color and typeface are updated and provide better user experience.

  • End-User License Agreement and Copyright - The End-User License Agreement and Copyright are updated according to legal requirements. Please read the agreement for details.

Certificate update changes

As part of rebranding, the certificates used to sign our software have been updated. If your enterprise automatically updates root certificates, the software update or installation does not require any additional effort. However, if your enterprise manages root certificate updates manually, you need to install the new intermediate and root certificates.

For information about downloading and installing the certificates, see KB91697.

Trellix DLP – SaaS release information

Release Date - July 11, 2023 (Repost)

This release of Trellix DLP – SaaS is identified as version 2306, where the version identifier follows a yymm convention. The Trellix DLP – SaaS 2306 - June release is updated for Trellix DLP Endpoint - SaaS for Mac.

Important

After upgrading macOS endpoints to the latest versions of products, recommends checking the installed product versions. If any products are missing or have not been upgraded to the latest version, it is necessary to manually upgrade them. For details, see KB96552

Trellix DLP – SaaS is a unified solution and includes the products mentioned here:

  • Trellix Device Control - SaaS

  • Trellix DLP Discover – SaaS

  • Trellix DLP Endpoint - SaaS for Windows

  • Trellix DLP Endpoint - SaaS for Mac

  • Trellix DLP Network Monitor – SaaS

  • Trellix DLP Network Prevent – SaaS

Trellix DLP – SaaS provides support for the following versions of Trellix DLP

Product

Supported versions

Trellix DLP Discover

11.7.200

Trellix DLP Endpoint for Mac

11.6.4.73

Trellix DLP Endpoint for Windows

11.6.701.4

Trellix DLP Network Monitor appliance installation images

11.10.201

  • For VMware vSphere virtual appliance — Trellix-MS-11.10.201-3649.100.ms.hw10.hdd.ova

  • For hardware appliance — Trellix-MS-11.10.201-3649.100.iso

Trellix DLP Network Prevent appliance installation images

11.10.201

  • For VMware vSphere virtual appliance — Trellix-PS-11.10.201-3649.100.ps.hw10.hdd.ova

  • For Windows Hyper-V — Trellix-PS-11.10.201-3649.100.HyperV_ps.zip

  • For hardware appliance — Trellix-PS-11.10.201-3649.100.iso



Every update release is cumulative and includes all features and fixes from the previous release. For the previous release information, see:

For more information about using Trellix DLP – SaaS, see the Trellix DLP – SaaS Product Guide.

Enhanced or changed features

This release improves or changes the existing features:

PDF tagging — PDF tagging is supported for PDF versions greater than 1.4. For more information, see KB96409

Tag this file... option — The Tag this file... option is only available for Office 365 and PDF files.

Native Apple Silicon supportTrellix DLP Endpoint - SaaS for Mac can now run on both Intel and Apple Silicon processors without the need for Rosetta translators.

View Trellix DLP Endpoint - SaaS logs in console — You can now use Mac Console to view log messages collected by Trellix DLP Endpoint - SaaS.

New Outlook support — With the new Microsoft Outlook, Trellix DLP Endpoint - SaaS for Mac extends support to monitor sent emails using custom add-in.

Note

Trellix DLP Outlook add-in deployed from Office 365 Admin Center prevents Windows users from sending emails from Windows Outlook. For more information, see KB96417

Dataloss Finder Integration — This release doesn't support Dataloss Finder Integration option under System Preference > Extensions > Finder Extensions.

Regex case sensitivity — To apply case sensitivity with any regular expression, the regex pattern must begin with ?i. To make an existing regex pattern case sensitive, append ?i at the beginning of the pattern. To enable regex case sensitivity, select the Use default agent behavior for regex checkbox in MenuPolicyPolicy CatalogData Loss Prevention <version>Mac OS X Client ConfigurationDefault Mac OS X Client ConfigurationEditAdvanced Configuration Advanced Pattern Settings.

Classification grouping — Classification grouping enables you to construct multiple conditions based on your needs by using AND or OR operations. The previous version only enabled creating homogeneous rules, which resulted in creation of complicated and repeated rules. The current approach helps you establish a simpler and more diverse collection of Boolean rule sets. For example, you can write a custom rule that looks like ((1 AND 2) or (1 AND 3)), 1 AND (2 or 3) AND 4, and many more.

Web protection support — Using web protection rules, Trellix DLP Endpoint - SaaS for Mac monitors text and file uploads to Google Chrome and Microsoft Edge browsers.

Updated platform, environment, or operating system support

You can get the latest information about supported platforms, environments, and operating systems from these KB articles:

  • For Trellix DLP Discover – SaaS: KB94670

  • For Trellix DLP Endpoint - SaaS: KB92445

  • For Trellix DLP Network Monitor – SaaS: KB93790

  • For Trellix DLP Network Prevent – SaaS: KB93790

Resolved issues

This release includes resolved issues. For a list of issues fixed in earlier releases, see the Release Notes of the specific release.

Trellix Data Loss Prevention Endpoint – SaaS for Mac resolved issues

Resolved issues

Reference

Resolution

DLPX-1369, DLPX-1416

Fixed an issue where the Microsoft OneDrive options disappeared from the finder window after installing Trellix DLP Endpoint - SaaS for Mac .

DLPX-1679

Fixed an issue where DLP Incident Manager couldn't display the evidence name and the file size, even after the Removable Storage Protection Rules (RSPR) were triggered.

DLPX-1791

Fixed an issue where the Email Protection rule failed to trigger incidents.

DLPX-1792

Fixed an issue where the discovery scan was getting restarted due to datalossd process crash on macOS.

DLPX-1833

Fixed an issue where the Cloud Protection Rule (CPR) prevented file uploads from Microsoft OneDrive for Business even if the cloud protection rule (CPR) was not enabled.

DLPX-2194

Fixed an issue where the Removal Storage Protection Rule (RSPR) failed to report an incident when a removal storage devices was plugged into the system.

DLPX-2256

Fixed an issue where Trellix DLP Endpoint - SaaS for Mac reset the bypass mode even if exemptions were set.

DLPX-2268

Fixed an issue where the Removal Storage Protection Rule (RSPR) prevented file transfer to a removal storage devices even if the file was not encrypted.

DLPX-2469

This release prevents Trellix DLP Endpoint - SaaS for Mac from consuming high memory.

DLPX-2855

Fixed an issue where Mac files could be copied to a removal storage devices by running sudo mount -u -w /Volumes/your_USB_name.



For a list of current known issues, see: Trellix Data Loss Prevention - SaaS Known Issues.

Comparison of Trellix DLP – SaaS with Trellix DLP on-premises

is working toward feature parity with the on-premises Trellix DLP product. To know more about the options not available in this release, see KB94965.