This release is applicable for on-premises installations.
The Trellix DLP Network Prevent 11.11.100 release includes new and enhanced features, and resolved issues.
Every update release is cumulative and includes all features and fixes from the previous release. We recommend that you always upgrade to the most current release.
Rating for 11.11.100
The rating defines the urgency for installing this update.
Recommended
This release is recommended for all environments. Apply this update at your earliest convenience.
For more information, see KB51560.
Release details
Release date: December 9, 2025
Release build:
Trellix DLP Network Prevent installation images:
For VMware vSphere virtual system — Trellix-PS-11.11.100-3689.100.ps.hw10.hdd.ova
For Windows Hyper-V — Trellix-PS-11.11.100-3689.100.HyperV_ps.zip
For Hardware appliance — Trellix-PS-11.11.100-3689.100.iso
For Nutanix Acropolis Hypervisor (AHV) — Trellix-PS-11.11.100-3689.100.iso
For Amazon Web Services — Trellix-PS-11.11.100-3689.100.AWS_ps.zip and Trellix DLP Network Prevent AMI
DLP Appliance Management extension — build 11.11.0.37
Data Loss Prevention extension — build 11.13.0.45
For all new features and resolved issues in DLP Extension, see the Trellix Data Loss Prevention Extension 11.13.x Release Notes.
This release updates components that depend on these extensions:
Proprietary Linux OS based on AlmaLinux 9
Trellix Agent — version 5.8.5
Note
Trellix Agent is built into the appliance software and can't be updated through ePO - On-prem.
Appliance Management extension — build 1.4.0.19
Common UI extension — build 1.3.0.258 or later
Updated platform, environment, or operating system support
For information on supported platforms, environments, and operating systems, see KB87112.
New or changed features
AI Data Risk Dashboard — This release introduces the Trellix AI Data Risk Dashboard to monitor, identify, and mitigate the risks associated with the unmanaged use of Generative AI platforms (Shadow AI) within your organization.
Leveraging your existing DLP policies, this dashboard provides actionable, real-time insights into sensitive data being shared across key exfiltration vectors, including file uploads, copy/paste operations, and clipboard sharing with web-based AI prompts.
For more information on the key features and configuration, see Managing Incidents using AI Data Risk Dashboard in the Trellix DLP Product Guide.
Support for Fiber Small Form-Factor Pluggable (SFP) Network Interface Card (NIC) — Trellix DLP Network Prevent appliances now support Fiber SFP-10G-SR (Short Range) and LR (Long Range) transceivers, which enable high-speed data transmission. This hot-pluggable module can be inserted into or removed from a port without having to power down the appliance (hot-swappable) and connect using fiber optic cable.
For information about installing the SFP - NIC hardware, see the Trellix DLP Network Prevent Hardware Guide.
Support for MIP through proxy settings — Microsoft Information Protection (MIP) SDK integration with Trellix DLP Network Prevent now supports communication with Azure services through a network proxy, which has to be updated in the MIP configuration settings. For information about updating the MIP proxy settings, see the article 000015028.
Installation information
Trellix Network Appliance upgrade requirement — Trellix DLP Extension 11.13.0.45 is incompatible with previous versions of the Trellix DLP Network Appliance. To ensure successful installation and proper functionality of the new extension, upgrade the Trellix DLP Network Appliance to the latest supported version.
PostgreSQL is upgraded to version 16.4 for DLP Capture databases, which requires a database upgrade. Upgrading Trellix DLP Network Prevent from version 11.0.x to version 11.11.100 with DLP Capture disks might take up to 3 hours. Allocate sufficient time for the upgrade process.
Resolved issues
This release resolves known issues.
For the DLP Extension related resolved issues, see the Trellix Data Loss Prevention Extension 11.13.x Release Notes.
Important
This release is cumulative and contains fixes from all previous releases.
DLP Network Appliance resolved issues
Reference | Resolution |
|---|---|
DLPN-18414 | This release resolves an issue in Trellix DLP Network Appliances version 11.11.0 where policies were not enforced and a "Corrupt Policy Alert" was displayed. |
DLPN-18649 | Resolves an issue where the User Principal Name and User Primary Email fields were not displayed in the endpoint details. |
DLPN-18650 | This release fixes an issue where image and media files classified with third party (Titus) tags were not detected by Trellix DLP Network Prevent . |
DLPN-18658 | Fixes an issue where incidents logged short and unique match strings, even when the DLP server policy was configured not to report these fields within the incident details. |
DLPN-18736 | This release fixes the sshd configuration error when only specific hosts were allowed ssh access. |
Known issues
For a list of current known issues, see: Data Loss Prevention Network 11.x.x Known Issues 000013475.