ePO - On-prem 5.10.0 Service pack 1 Update

Prev Next

ePO - On-prem 5.10.0 Service pack 1 Update applies the Trellix rebranding changes to product interface and domain name.

We recommend that you always upgrade ePO 5.10.0 with the latest release as soon as possible.

Release Details

Trellix ePolicy Orchestrator - On-premises Cumulative Updater Tool epo_5.10.0_ServicePack1Update.

For release dates and build numbers, see Product release information in KB51569.

Rating

The rating defines the urgency for installing this update.

This release is mandatory for all environments. You must apply these updates to maintain a viable and supported product.

Important details about Service pack 1 Update

  • Before you update to ePO - On-prem 5.10.0 Service Pack 1 Update, ensure that you migrate from SHA-1 to SHA-2. For instructions on how to migrate, see KB87017.

  • For complete system requirements, see supported platforms for ePO - On-prem 5.10.0 (KB51569).

  • It is not advisable to restore a previous backup of ePO that had SP1 installed using the latest SP1 refresh build. Instead, to upgrade to the latest SP1 refresh build, it is recommended to perform a repair using the latest SP1 Update refresh build.

  • It is not recommended to perform a repair on an ePO installation that has the latest SP1 Update (build) using a old SP1 Update build.

  • ePO - On-prem 5.10.0 Service pack 1 includes these two packages:

    Trellix ePO Package

    Description

    ePO 5.10 Service Pack 1 (ePO 5.10 SP1)

    This package includes the changes from Cumulative Update 1 to Update 15. You can,

    • use this package to install ePO for the first time.

    • use this to upgrade from 5.3.x or 5.9.x and earlier to ePO 5.10 SP1.

    ePO 5.10 Service Pack 1 Update (ePO 5.10 SP1 CU)

    Use this package to upgrade from an existing ePO 5.10 server to service pack 1.

    Note

    Do not install this package if you've already installed ePO 5.10 Service Pack 1.

    For more details on the supported upgrade paths, see KB96141.

New or changed

This release supports for these features:

  • Upgraded Open SSL Version to 1.0.2zg-fips

  • Upgraded Apache Version to 2.4.56

  • Upgraded BSAFE MES to 4.6.1

Rebranding changes

This is solely for informational purpose, there is no action required. You can continue to secure your organization with ePO 5.10.0 as usual.

You notice the following changes in the software:

  • Product name - McAfee ePolicy Orchestrator is renamed to Trellix ePolicy Orchestrator - On-premises.

    All features and options prefixed with product name are renamed with the new product name.

  • End-User License Agreement and Copyright - The End-User License Agreement and Copyright are updated as per legal requirements. Please read the agreement for details.

  • Domain name - The domain name used in the ePO-on premises is updated to epo.trellix.com. For more information about the changes in URL, see KB95905.

  • Windows Task Manager and Control Panel now display Trellix ePolicy Orchestrator - On-premises.

Resolved issues

This update contains these resolved issues.

Functional Stability

Issue

Resolution

EPO-10717

Resolves an issue with not updating the tag notes after tag creation.

EPO-10855

In Queries and Reports, the Boolean Pie chart queries don't display the expected output after applying the Greater than or equal filter.

EPO-10863

Unable to access File reputation list from the Virus Total tab on the TIE Reputations page, after adding Virus Total key in Threat Intelligence Exchange Settings in the Sever Settings page. This release fixes this issue.

EPO-10900

Trellix Links under ePO Summary Dashboard navigates to pages that are not accessible. This release fixes this issue.

EPU-533

Database connection timeout issue that results in failing the cumulative update 15 deployments on ePO and Agent handler. This release fixes this issue.

EPO-11151

The failure of the Eventparser and Apache services to start on SP1 Update due to ccme_base.dll crash on "SHA-NI" enabled server has been resolved.



Security Fixes

Issue

Resolution

SAGEPO-1000

Resolves the OpenSSL vulnerability issue (CVE-2022-4304) in 1.0.2.zf. See SB10395 for more details.

SAG-30

Resolves Apache Portable Runtime Utility vulnerability (CVE-2022-25147). See SB10399 for more details.



Known issues

For a list of known issues in this product release, see ePO - On-prem 5.10.0 Known Issues (KB90382).

Installation instructions

Disaster recovery

  • Make sure to perform repair using latest Service Pack1 Update refresh build. For more information see KB96141.

  • ePO - On-prem package ePO 5.10.0.4098.4 or later is the supported package for disaster recovery of ePO - On-prem 5.10.0 Service pack 1 Update refresh.

  • If Trellix ePO-On-prem 5.10.0 cumulativeUpdate1 to cumulative Update 15 was applied after taking the snapshot on the previous Trellix ePO-On-prem 5.10.0 server,

    • You must perform disaster recovery with Trellix ePO-On-prem 5.10.0.2428.68, then perform the repair function using the same cumulative Update that was applied and backup was taken on Trellix ePO-On-prem 5.10.0.

    • For example, if you have applied CU14 after taking the snapshot on the previous Trellix ePO-On-prem 5.10.0 server, you must perform the repair function using the same CU14 update.

  • We recommend performing the manual disaster recovery in the cluster environment for ePO - On-prem 5.10.0 cumulative Update 1 to Update 15.

  • Do not use the latest SP1 refresh build to restore a previous backup of ePO that had SP1 installed. Instead, to upgrade to the latest SP1 refresh build, it is recommended to perform a repair using the latest SP1 Update refresh build.

In a standalone environment

  • Disaster Recovery Snapshot

    1. Install fresh ePO 5.10.0.4098.4 or later as mentioned in the Installation guide.

    Important

    Make sure that the new installation path matches with the previous installation path. For example,

    Version

    Installation Path

    ePO 5.10.0.2428.68 + SP1 Update 1

    C:\Program Files (x86)\McAfee\ePolicy Orchestrator\

    ePO 5.10.0.4098.4 or later

    C:\Program Files (x86)\Trellix\ePolicy Orchestrator\

    For more information, see the Disaster Recovery section in Trellix ePolicy Orchestrator-On-prem 5.10.0 Product Guide.

  • Manual Disaster Recovery

    1. Install fresh ePO 5.10.0.4098.4 or later as mentioned in the Installation guide.

      Important

      Make sure that the new installation path matches with the previous installation path. For example,

      Version

      Installation Path

      ePO 5.10.0.2428.68 + SP1 Update 1

      C:\Program Files (x86)\McAfee\ePolicy Orchestrator\

      ePO 5.10.0.4098.4 or later

      C:\Program Files (x86)\Trellix\ePolicy Orchestrator\

    2. For more instructions on the manual disaster recovery, see KB66616.

    For more information, see the Disaster Recovery section in Trellix ePolicy Orchestrator-On-prem 5.10.0 Product Guide.

In a cluster environment

  • Disaster Recovery Snapshot

    1. Install fresh ePO 5.10.0.4098.4 or later in Primary Node with Restore DB option checked.

      Important

      Make sure that the new installation path matches with the previous installation path. For example,

      Version

      Installation Path

      ePO 5.10.0.2428.68 + SP1 Update 1

      S:\Program Files (x86)\McAfee\ePolicy Orchestrator\

      ePO 5.10.0.4098.4 or later

      S:\Program Files (x86)\Trellix\ePolicy Orchestrator\

    2. Failover to secondary Node and complete the installation by deselecting the Restore DB checkbox.

    3. In Cluster manager add all 3 services through Add generic services option and configure the dependencies of services as mentioned in the Installation guide.

    For more information, see the Disaster Recovery section in Trellix ePolicy Orchestrator-On-prem 5.10.0 Product Guide.

  • Manual Disaster Recovery

    1. Install fresh ePO 5.10.0.4098.4 or later in Primary node and Secondary node as mentioned in the Installation guide.

      Important

      Make sure that the new installation path matches with the previous installation path.

    2. For more instructions on the manual disaster recovery, see KB75497.

    For more information, see the Disaster Recovery section in Trellix ePolicy Orchestrator-On-prem 5.10.0 Product Guide.