ePO - On-prem 5.10.0 Service pack 1 Update applies the Trellix rebranding changes to product interface and domain name.
We recommend that you always upgrade ePO 5.10.0 with the latest release as soon as possible.
Release Details
Trellix ePolicy Orchestrator - On-premises Cumulative Updater Tool epo_5.10.0_ServicePack1Update.
For release dates and build numbers, see Product release information in KB51569.
Rating
The rating defines the urgency for installing this update.
This release is mandatory for all environments. You must apply these updates to maintain a viable and supported product.
Important details about Service pack 1 Update
Before you update to ePO - On-prem 5.10.0 Service Pack 1 Update, ensure that you migrate from SHA-1 to SHA-2. For instructions on how to migrate, see KB87017.
For complete system requirements, see supported platforms for ePO - On-prem 5.10.0 (KB51569).
It is not advisable to restore a previous backup of ePO that had SP1 installed using the latest SP1 refresh build. Instead, to upgrade to the latest SP1 refresh build, it is recommended to perform a repair using the latest SP1 Update refresh build.
It is not recommended to perform a repair on an ePO installation that has the latest SP1 Update (build) using a old SP1 Update build.
ePO - On-prem 5.10.0 Service pack 1 includes these two packages:
Trellix ePO Package
Description
ePO 5.10 Service Pack 1 (ePO 5.10 SP1)
This package includes the changes from Cumulative Update 1 to Update 15. You can,
use this package to install ePO for the first time.
use this to upgrade from 5.3.x or 5.9.x and earlier to ePO 5.10 SP1.
ePO 5.10 Service Pack 1 Update (ePO 5.10 SP1 CU)
Use this package to upgrade from an existing ePO 5.10 server to service pack 1.
Note
Do not install this package if you've already installed ePO 5.10 Service Pack 1.
For more details on the supported upgrade paths, see KB96141.
New or changed
This release supports for these features:
Upgraded Open SSL Version to 1.0.2zg-fips
Upgraded Apache Version to 2.4.56
Upgraded BSAFE MES to 4.6.1
Rebranding changes
This is solely for informational purpose, there is no action required. You can continue to secure your organization with ePO 5.10.0 as usual.
You notice the following changes in the software:
Product name - McAfee ePolicy Orchestrator is renamed to Trellix ePolicy Orchestrator - On-premises.
All features and options prefixed with product name are renamed with the new product name.
End-User License Agreement and Copyright - The End-User License Agreement and Copyright are updated as per legal requirements. Please read the agreement for details.
Domain name - The domain name used in the ePO-on premises is updated to epo.trellix.com. For more information about the changes in URL, see KB95905.
Windows Task Manager and Control Panel now display Trellix ePolicy Orchestrator - On-premises.
Resolved issues
This update contains these resolved issues.
Functional Stability
Issue | Resolution |
|---|---|
EPO-10717 | Resolves an issue with not updating the tag notes after tag creation. |
EPO-10855 | In Queries and Reports, the Boolean Pie chart queries don't display the expected output after applying the Greater than or equal filter. |
EPO-10863 | Unable to access File reputation list from the Virus Total tab on the TIE Reputations page, after adding Virus Total key in Threat Intelligence Exchange Settings in the Sever Settings page. This release fixes this issue. |
EPO-10900 | Trellix Links under ePO Summary Dashboard navigates to pages that are not accessible. This release fixes this issue. |
EPU-533 | Database connection timeout issue that results in failing the cumulative update 15 deployments on ePO and Agent handler. This release fixes this issue. |
EPO-11151 | The failure of the Eventparser and Apache services to start on SP1 Update due to ccme_base.dll crash on "SHA-NI" enabled server has been resolved. |
Security Fixes
Known issues
For a list of known issues in this product release, see ePO - On-prem 5.10.0 Known Issues (KB90382).
Installation instructions
Disaster recovery
Make sure to perform repair using latest Service Pack1 Update refresh build. For more information see KB96141.
ePO - On-prem package ePO 5.10.0.4098.4 or later is the supported package for disaster recovery of ePO - On-prem 5.10.0 Service pack 1 Update refresh.
If Trellix ePO-On-prem 5.10.0 cumulativeUpdate1 to cumulative Update 15 was applied after taking the snapshot on the previous Trellix ePO-On-prem 5.10.0 server,
You must perform disaster recovery with Trellix ePO-On-prem 5.10.0.2428.68, then perform the repair function using the same cumulative Update that was applied and backup was taken on Trellix ePO-On-prem 5.10.0.
For example, if you have applied CU14 after taking the snapshot on the previous Trellix ePO-On-prem 5.10.0 server, you must perform the repair function using the same CU14 update.
We recommend performing the manual disaster recovery in the cluster environment for ePO - On-prem 5.10.0 cumulative Update 1 to Update 15.
Do not use the latest SP1 refresh build to restore a previous backup of ePO that had SP1 installed. Instead, to upgrade to the latest SP1 refresh build, it is recommended to perform a repair using the latest SP1 Update refresh build.
In a standalone environment
Disaster Recovery Snapshot
Install fresh ePO 5.10.0.4098.4 or later as mentioned in the Installation guide.
Important
Make sure that the new installation path matches with the previous installation path. For example,
Version
Installation Path
ePO 5.10.0.2428.68 + SP1 Update 1
C:\Program Files (x86)\McAfee\ePolicy Orchestrator\
ePO 5.10.0.4098.4 or later
C:\Program Files (x86)\Trellix\ePolicy Orchestrator\
For more information, see the Disaster Recovery section in Trellix ePolicy Orchestrator-On-prem 5.10.0 Product Guide.
Manual Disaster Recovery
Install fresh ePO 5.10.0.4098.4 or later as mentioned in the Installation guide.
Important
Make sure that the new installation path matches with the previous installation path. For example,
Version
Installation Path
ePO 5.10.0.2428.68 + SP1 Update 1
C:\Program Files (x86)\McAfee\ePolicy Orchestrator\
ePO 5.10.0.4098.4 or later
C:\Program Files (x86)\Trellix\ePolicy Orchestrator\
For more instructions on the manual disaster recovery, see KB66616.
For more information, see the Disaster Recovery section in Trellix ePolicy Orchestrator-On-prem 5.10.0 Product Guide.
In a cluster environment
Disaster Recovery Snapshot
Install fresh ePO 5.10.0.4098.4 or later in Primary Node with Restore DB option checked.
Important
Make sure that the new installation path matches with the previous installation path. For example,
Version
Installation Path
ePO 5.10.0.2428.68 + SP1 Update 1
S:\Program Files (x86)\McAfee\ePolicy Orchestrator\
ePO 5.10.0.4098.4 or later
S:\Program Files (x86)\Trellix\ePolicy Orchestrator\
Failover to secondary Node and complete the installation by deselecting the Restore DB checkbox.
In Cluster manager add all 3 services through Add generic services option and configure the dependencies of services as mentioned in the Installation guide.
For more information, see the Disaster Recovery section in Trellix ePolicy Orchestrator-On-prem 5.10.0 Product Guide.
Manual Disaster Recovery
Install fresh ePO 5.10.0.4098.4 or later in Primary node and Secondary node as mentioned in the Installation guide.
Important
Make sure that the new installation path matches with the previous installation path.
For more instructions on the manual disaster recovery, see KB75497.
For more information, see the Disaster Recovery section in Trellix ePolicy Orchestrator-On-prem 5.10.0 Product Guide.