Trellix DLP Network Prevent 11.11.100 On-premises Release Notes

Prev Next

This release is applicable for on-premises installations.

The Trellix DLP Network Prevent 11.11.100 release includes new and enhanced features, and resolved issues.

Every update release is cumulative and includes all features and fixes from the previous release. We recommend that you always upgrade to the most current release.

Rating for 11.11.100

The rating defines the urgency for installing this update.

Recommended

This release is recommended for all environments. Apply this update at your earliest convenience.

For more information, see KB51560.

Release details

Release date: December 9, 2025

Release build:

  • Trellix DLP Network Prevent installation images:

    • For VMware vSphere virtual system — Trellix-PS-11.11.100-3689.100.ps.hw10.hdd.ova

    • For Windows Hyper-V — Trellix-PS-11.11.100-3689.100.HyperV_ps.zip

    • For Hardware appliance — Trellix-PS-11.11.100-3689.100.iso

    • For Nutanix Acropolis Hypervisor (AHV) — Trellix-PS-11.11.100-3689.100.iso

    • For Amazon Web Services — Trellix-PS-11.11.100-3689.100.AWS_ps.zip and Trellix DLP Network Prevent AMI

  • DLP Appliance Management extension — build 11.11.0.37

  • Data Loss Prevention extension — build 11.13.0.45

    For all new features and resolved issues in DLP Extension, see the Trellix Data Loss Prevention Extension 11.13.x Release Notes.

This release updates components that depend on these extensions:

  • Proprietary Linux OS based on AlmaLinux 9

  • Trellix Agent — version 5.8.5

    Note

    Trellix Agent is built into the appliance software and can't be updated through ePO - On-prem.

  • Appliance Management extension — build 1.4.0.19

  • Common UI extension — build 1.3.0.258 or later

Updated platform, environment, or operating system support

For information on supported platforms, environments, and operating systems, see KB87112.

New or changed features

AI Data Risk Dashboard — This release introduces the Trellix AI Data Risk Dashboard to monitor, identify, and mitigate the risks associated with the unmanaged use of Generative AI platforms (Shadow AI) within your organization.

Leveraging your existing DLP policies, this dashboard provides actionable, real-time insights into sensitive data being shared across key exfiltration vectors, including file uploads, copy/paste operations, and clipboard sharing with web-based AI prompts.

For more information on the key features and configuration, see Managing Incidents using AI Data Risk Dashboard in the Trellix DLP Product Guide.

Support for Fiber Small Form-Factor Pluggable (SFP) Network Interface Card (NIC)Trellix DLP Network Prevent appliances now support Fiber SFP-10G-SR (Short Range) and LR (Long Range) transceivers, which enable high-speed data transmission. This hot-pluggable module can be inserted into or removed from a port without having to power down the appliance (hot-swappable) and connect using fiber optic cable.

For information about installing the SFP - NIC hardware, see the Trellix DLP Network Prevent Hardware Guide.

Support for MIP through proxy settings — Microsoft Information Protection (MIP) SDK integration with Trellix DLP Network Prevent now supports communication with Azure services through a network proxy, which has to be updated in the MIP configuration settings. For information about updating the MIP proxy settings, see the article 000015028.

Installation information

Trellix Network Appliance upgrade requirement — Trellix DLP Extension 11.13.0.45 is incompatible with previous versions of the Trellix DLP Network Appliance. To ensure successful installation and proper functionality of the new extension, upgrade the Trellix DLP Network Appliance to the latest supported version.

PostgreSQL is upgraded to version 16.4 for DLP Capture databases, which requires a database upgrade. Upgrading Trellix DLP Network Prevent from version 11.0.x to version 11.11.100 with DLP Capture disks might take up to 3 hours. Allocate sufficient time for the upgrade process.

Resolved issues

This release resolves known issues.

For the DLP Extension related resolved issues, see the Trellix Data Loss Prevention Extension 11.13.x Release Notes.

Important

This release is cumulative and contains fixes from all previous releases.

DLP Network Appliance resolved issues

Reference

Resolution

DLPN-18414

This release resolves an issue in Trellix DLP Network Appliances version 11.11.0 where policies were not enforced and a "Corrupt Policy Alert" was displayed.

DLPN-18649

Resolves an issue where the User Principal Name and User Primary Email fields were not displayed in the endpoint details.

DLPN-18650

This release fixes an issue where image and media files classified with third party (Titus) tags were not detected by Trellix DLP Network Prevent .

DLPN-18658

Fixes an issue where incidents logged short and unique match strings, even when the DLP server policy was configured not to report these fields within the incident details.

DLPN-18736

This release fixes the sshd configuration error when only specific hosts were allowed ssh access.

Known issues

For a list of current known issues, see: Data Loss Prevention Network 11.x.x Known Issues 000013475.