Trellix Data Loss Prevention – SaaS 2404 Release Notes

Prev Next

Trellix DLP – SaaS 2404 includes support for the new Trellix Data Loss Prevention – SaaS Incident APIs.

Trellix DLP – SaaS release information

Release Date - April 23, 2024

This release of Trellix DLP – SaaS is identified as version 2404, where the version identifier follows a YYMM convention. Trellix DLP – SaaS 2404 release, which includes minor enhancements and changes to Trellix ePO - SaaS Incident and Incident ID APIs.

Trellix DLP – SaaS is a unified solution and includes these products:

  • Trellix Device Control – SaaS

  • Trellix DLP Discover – SaaS

  • Trellix DLP Endpoint for Windows - SaaS

  • Trellix DLP Endpoint for macOS - SaaS

  • Trellix DLP Network Monitor – SaaS

  • Trellix DLP Network Prevent – SaaS

Trellix DLP – SaaS provides support for the following versions of Trellix DLP

Product

Supported versions

Trellix DLP Discover

11.10.500.112

Trellix DLP Endpoint for macOS

11.10.100.2010

Trellix DLP Endpoint for Windows

11.10.200.162

Trellix DLP Network Monitor appliance installation images

11.10.500

  • For VMware vSphere virtual appliance — Trellix-MS-11.10.500-3665.100.ms.hw10.hdd.ova

  • For hardware appliance — Trellix-MS-11.10.500-3665.100.iso

Trellix DLP Network Prevent appliance installation images

11.10.500

  • For VMware vSphere virtual appliance — Trellix-PS-11.10.500-3665.100.ps.hw10.hdd.ova

  • For Windows Hyper-V — Trellix-PS-11.10.500-3665.100.HyperV_ps.zip

  • For hardware appliance — Trellix-PS-11.10.500-3665.100.iso



Every update release is cumulative and includes all features and fixes from the previous release. For the previous release information, see:

For more information about using Trellix DLP – SaaS, see the Trellix DLP – SaaS Product Guide.

Updated platform, environment, or operating system support

You can get the latest information about supported platforms, environments, and operating systems from these KB articles:

  • For Trellix DLP Discover – SaaS: KB94670

  • For Trellix DLP Endpoint - SaaS: KB92445

  • For Trellix DLP Network Monitor – SaaS: KB93790

  • For Trellix DLP Network Prevent – SaaS: KB93790

New or changed features

DLP SaaS Incidents APITrellix ePO - SaaS Incidents API call allows you to export Trellix DLP – SaaS incidents to your long term storage over a secure Trellix API gateway. These APIs:

  • Conform to JSON API standards that offers a secure interface.

  • Provide visibility of DLP incidents in your existing third-party dashboard, reporting, or incident management tools.

  • Enrich your threat event data from other sources with Trellix DLP – SaaS Indicators of Compromise (IoC).

  • Help build automated workflows for case management.

  • Provide long term retention of Trellix DLP – SaaS incidents outside of Trellix database.

Important

The existing DLP Events API (/epo/v2/events) will be deprecated by the end of 2024, and we recommend that you migrate to the new API (DLP SaaS Incidents API) before the end of Q3 2024. The DLP SaaS Incidents API provides these additional features:

  • Increased retention period

  • Improved filter capabilities, utilizing JSON:API

  • Improved response body and additional attributes

For information about DLP SaaS Incident APIs, see DLP SaaS Incident API call to get incidents and for information about Trellix APIs, see Understanding Trellix API.

Known issues

For a list of current known issues, see: Trellix Data Loss Prevention - SaaS Known Issues.

Comparison of Trellix DLP – SaaS with Trellix DLP on-premises

Trellix is working toward feature parity with the on-premises Trellix DLP product. To know more about the options not available in this release, see KB94965.