The Trellix DLP Network Prevent 11.11.0 release includes feature enhancements and resolved issues.
Every update release is cumulative and includes all features and fixes from the previous release. We recommend that you always upgrade to the most current release.
Rating for 11.11.0
The rating defines the urgency for installing this update.
Recommended
This release is recommended for all environments. Apply this update at your earliest convenience.
For more information, see KB51560.
Release details
Release date: March 26, 2025
Release build:
Trellix DLP Network Prevent installation images:
For VMware vSphere virtual system — Trellix-PS-11.11.0-3686.100.ps.hw10.hdd.ova
For Windows Hyper-V — Trellix-PS-11.11.0-3686.100.HyperV_ps.zip
For Hardware appliance — Trellix-PS-11.11.0-3686.100.iso
For Nutanix Acropolis Hypervisor (AHV) — Trellix-PS-11.11.0-3686.100.iso
For Amazon Web Services — Trellix-PS-11.11.0-3686.100.AWS_ps.zip and Trellix DLP Network Prevent AMI
DLP Appliance Management extension — build 11.11.0.37
Data Loss Prevention extension — build 11.11.4.23
For all new features and resolved issues in DLP Extension, see the Trellix Data Loss Prevention Extension 11.11.x Release Notes.
This release updates components that depend on these extensions:
Proprietary Linux OS based on AlmaLinux 9
Trellix Agent — version 5.8.3
Note
Trellix Agent is built into the appliance software and can't be updated through ePO - On-prem.
Appliance Management extension — build 1.4.0.19
Common UI extension — build 1.3.0.258 or later
Updated platform, environment, or operating system support
For information on supported platforms, environments, and operating systems, see KB87112.
New or changed features
Setting the password complexity for local appliance administrator account — To strengthen the appliance security, you can now set the password complexity for the local appliance administrator user account using the DLP Appliance Management settings. By default, the complexity is set to a minimum length of 8 characters and a maximum length of 70 characters.
Note
The password must be changed only from the appliance console or SSH menu. Setting it through the command line does not synchronize the password for all DLP services. If changed through the command line, the password must be updated from the SSH menu.
Set the password complexity in your default policy before changing the password in the SSH menu. For more information, see Setting the password complexity for local appliance administrator account.
Including Active Directory users as appliance administrators — You can now include AD users as administrators and allow more users to manage the appliances. You can add a maximum of 5 users with the administrator privileges. It is possible to assign users as appliance administrators from only one external AD server.
To include appliance administrators, see Including Active Directory users as appliance administrators.
Operating System changes — Trellix DLP Network Prevent software was developed based on CentOS Linux 7 OS, which reached its end of life on June 30, 2024. Trellix DLP Network Prevent has now been migrated to AlmaLinux-based operating system to enhance security and optimal support. This new OS is specifically designed and hardened to meet the requirements of Trellix DLP Network, making the appliances more resilient to attacks. It is recommended to upgrade the appliances as soon as possible.
As a result of this upgrade, the structure of the disk partitions is changed, due to which the older appliance statistics and log files will no longer be available. However, the appliance statistics can't be preserved. Accessing system configuration settings, DLP Capture data, and Trellix ePO details will still be possible. For more information, see article 000014352.
Scanning service API tokens — Integration with third-party cloud gateways for content inspection over API now requires authorization using API tokens. The scanning service API tokens are pushed to DLP Network Prevent for authorizing API requests. It looks for the authorization header and verifies the API token. This can be configured using the DLP Appliance Management policy. For more information, see Authorizing API requests using the Scanning Service API token.
New built-in custom validators: Additional built-in custom validators are introduced to accurately validate Personally Identifiable Information (PII) and Financial Account Information. These validators are designed to streamline data validation processes, ensuring compliance with regional regulatory standards and improving the accuracy of sensitive data identification.
The newly added validators include:
Argentina CUIT
Indonesia ID
Japan National ID
Malaysia ID
Mexico Bank Account Numbers
Mexico SSN
Turkish ID
UAE ID
UY ID
See the Classification Definition Reference Guide for detailed information on the regex pattern used in these validators.
Installation information
This release upgrades PostgreSQL to version 16.4 for DLP Capture databases, which requires a database upgrade. Upgrading Trellix DLP Network Prevent with DLP Capture disks might take up to 3 hours. Allocate sufficient time for the upgrade process.
Resolved issues
This release resolves known issues.
For the DLP Extension related resolved issues, see the Trellix Data Loss Prevention Extension 11.11.x Release Notes.
Important
This release is cumulative and contains fixes from all previous releases.
DLP Network Appliance resolved issues
Reference | Resolution |
|---|---|
DLPN-17426 | This release resolves an issue where a unique match string keyword match for Vietnamese language caused false positive detections. |
DLPN-17446 | This release fixes an issue where Trellix ePO appliance management console displayed an error message for the SMTP or ICAP proxy even when the proxy was disabled on DLP Network Prevent. |
Known issues
For a list of current known issues, see: Data Loss Prevention Network 11.x.x Known Issues 000013475.