The new docs.trellix.com offers a modernized UI and AI-powered features like conversational searches. Content is currently available only in English. Other languages will be available in mid-October 2026. We hope you enjoy the new experience.

Deploy custom packages generated with Endpoint Upgrade Assistant Package Creator

Prev Next

Use Endpoint Upgrade Assistant Package Creator to generate a custom Trellix ENS 26.x installation package for upgrades that you manage with Endpoint Upgrade Assistant. The custom package includes the Endpoint Upgrade Automation client software, which manages the upgrade on the endpoints, and you can deploy it to your endpoints using ePO - On-prem 5.10.x, 5.9.x, or a third-party deployment tool.

Why use Endpoint Upgrade Assistant Package Creator

Endpoint Upgrade Assistant Package Creator lets you create custom installation packages when you need to:

  • Meet specific requirements — For example, preconfigure port exclusions to ensure that vital communications are not blocked when Firewall is installed, or preconfigure settings required for compliance with security regulations.

  • Replace the default settings with custom settings

  • Install Trellix ENS with settings in place — Settings take effect as soon as installation is complete, rather than waiting for the first policy enforcement.

  • Reduce the size of the installation package.

  • Remove unneeded files.

Use Endpoint Upgrade Assistant to create custom installation packages that contain the product installation packages for:

  • Trellix Agent — You can specify whether to upgrade Trellix Agent when a compatible version is installed on an endpoint.

  • Required Trellix products.

  • The latest Trellix ENS update — You can specify whether to include the update.

  • Upgrade Automation client software — Manages the upgrade of multiple products on the endpoint.

Endpoint Upgrade Assistant Package Creator generates a single installation package that contains everything needed to upgrade multiple products on your endpoints. No additional downloads are required during the upgrade process. Package Creator lets you select some of the files to include and options for deploying them.

Best Practice: Because it contains the installer for Trellix Agent, use Endpoint Upgrade Assistant Package Creator to generate a deployment package when you plan to move endpoints to a new ePO - On-prem server during the upgrade.

Supported deployment methods

Choose the type of installation package to save based on your deployment method:

If you plan to deploy with...

Save the file as...

Then check in the file to the...

A third-party deployment tool

An executable application

Repository for your third-party tool

This is a self-extracting .exe file that extracts the installers, then runs Upgrade Automation to automatically upgrade endpoints with the selected options.

ePO - On-prem

A package .zip file

ePO - On-prem server

Endpoint Upgrade Assistant Package Creator validates the package while creating it.

Best practice: If you plan to generate more than one custom package, assign a unique label to each one, then save them for future use. You must enable Advanced mode to use this feature.

Before you begin

In addition to prerequisites for deploying a standard installation package, you need to meet these prerequisites for creating and deploying a custom installation package.

  • Download the latest version of Endpoint Upgrade Assistant Package Creator from the Software Catalog (Software Manager on ePO - On-prem 5.9.x) or the Trellix Product Downloads site.

  • Download the latest version of SysPrep from the Trellix Product Downloads site, if one is available, and check it in to the ePO - On-prem branch you plan to deploy upgrades from. Endpoint Upgrade Assistant runs SysPrep during upgrades to detect and allow trusted third-party software injectors.

  • On the endpoints where you plan to deploy the custom package, make sure you have system permissions.

  • Identify a location for saving the custom package — Select a location that ePO - On-prem or your third-party deployment tool can access.

  • On the endpoint where you plan to run Endpoint Upgrade Assistant Package Creator:

    • Make sure that you have administrator credentials.

    • Install the Microsoft .NET 4.5 Framework class library.

    • Configure screen resolution no lower than 1280 x 720.

    • Install Trellix ENS 26.x and configure settings as needed.

    • Install Endpoint Upgrade Assistant Package Creator.

  • Check and increase the package size limit, if needed, in ePO - On-prem before uploading large packages.