ePO - On-prem 5.10.0 Service pack 1 Update 1

Prev Next

ePO - On-prem 5.10.0 Service pack 1 Update supports new features and addresses the known issues, including security fixes and performance.

We recommend that you always upgrade ePO 5.10.0 with the latest release as soon as possible.

Release Details

Trellix ePolicy Orchestrator - On-premises Cumulative Updater Tool epo_5.10.0_servicepack1update1.

Release Date: July 25, 2023

For the complete list of release dates and build numbers, see Product release information in KB51569.

Rating

The rating defines the urgency for installing this update.

This release is mandatory for all environments. You must apply these updates to maintain a viable and supported product. For more information, see KB51560.

Important details about Service pack 1 Update 1

  • Ensure to back up the existing ePO - On-prem 5.10.0 setup.

  • For complete system requirements, see supported platforms for ePO - On-prem 5.10.0 (KB51569).

  • Before you update to ePO - On-prem 5.10.0 Service Pack 1 Update, ensure that you migrate from SHA-1 to SHA-2. For instructions on how to migrate, see KB87017.

  • Minimum supported version for Upgrade to ePO 5.10.0 Service Pack 1 Update 1 is ePO 5.10.0 Service Pack 1. No upgrade is possible from older versions, i.e, ePO 5.10.0 Cumulative Update1- Cumulative Update15.

  • The minimum supported version of Agent Handler for ePO 5.10.0 Service Pack 1 Update 1 is ePO 5.10.0 Service Pack 1 Update 1 and/or new installation of ePO 5.10.0 Service Pack 1 ( ePO5.10.0.4098.4). All previous versions like ePO 5.10.0.2428.68 are not supported.

  • System tree - wake up agent: Options : Retrieve all properties even if they haven't changed since the last time they were collected. If deselected, only the changed properties are retrieved. - Unchecked by default

New or changed

This release supports for these features:

  • Includes support for Microsoft JDBC database driver, enabling multi-subnet failover. Before you switch the driver, check if the extensions are compatible (KB96549).

  • Upgraded Open SSL Version to 1.0.2zh-fips

  • Upgraded Apache Version to 2.4.57

  • Upgraded JRE to 1.8.0_371

  • Upgraded Tomcat version to 9.0.76

Removed Features

Trellix ePO 5.10.0 and Agent Handler no longer supports Microsoft Visual C++ 2010 Redistributable.

Note

Before removing the redistributable package from the system, refer KB94079 to check if it impacts the associated product extensions.

Resolved issues

This update contains these resolved issues.

Functional Stability

Issue

Resolution

EPO-11190

Resolves the unsigned binaries in ePO Updater.

EPO-11145

Resolves an issue where ENS On-Access Scan events are not being sent to the Syslog server via AWS Load Balancer.

EPO-10890

Logon Protection now blocks IP addresses as per the defined IP addresses.

EPO-10871

Queries on Product Version (Fast) with filter value 0 runs without any error.

EPO-10780

SSO Extension now supports SAML multiple attributes and populates the valid details for the auto-created user.

EPO-10759

Resolves an issue where the "Assigned Client Tasks" shows data from another branch in the "System Tree".

EPO-10757

Email to TLS-enabled mail server fails unless certificate is available in the ePO cacerts store. This issue is resolved with this release.

EPO-10716

Improved Audit Log message for the Active Directory User Login failure.

EPO-10656

Rollup queries supports both Int and BigInt*.

EPO-10652

Traffic is allowed in Adaptive Mode and adaptive rules are now created

EPO-10649

Event Parser no longer fails when Syslog server is connected.

EPO-10498

Agent fails to connect to the Agent Handlers with "curl error 7" and Agent Handler point to "server is too busy". This issue is resolved with this release.

EPO-9938

Authentication issue with Main Repository update is now resolved.

EPU-493

The ePO installer no longer fails when installing the Update 13.

EPO-11126

Resolves the overflow error while viewing the database table sizes in the Server Information.

EPO-11152

Sub tasks in the Server Task log now displays the correct values while using the non-default column order.

EPO-11290

Server task with Email fails if the Recipient List is invalid.



Security Fixes

Issue

Resolution

SAG-15

Resolves a Medium score reflective cross-site scripting issue. See SB10402 for more details.

EPO-11194

Resolves a Low score reflective cross-site scripting issue.

EPO-10983

Removed ePO dependency with Jquery 1.8.0 and removed the older version.

EPO-11262

Removed the ePO dependency with Microsoft Visual C++ 2010 Redistributable.

SAG-31/SAG-43

Upgraded the Tomcat version 9.0.76. See SB10402 for more details.

SAG-42

Upgraded the JRE version 1.8.0_371. See SB10402 for more details

SAG-47

Upgraded Open SSL version to 1.0.2zh-fips. See SB10402 for more details.



Known issues

For a list of known issues in this product release, see ePO - On-prem 5.10.0 Known Issues (KB90382).

Installation instructions

Disaster recovery

  • Make sure to perform repair using latest Service Pack1 Update refresh build. For more information see KB96141.

  • ePO - On-prem package ePO 5.10.0.4098.4 or later is the supported package for disaster recovery of ePO - On-prem 5.10.0 Service pack 1 Update refresh.

  • If Trellix ePO-On-prem 5.10.0 cumulative Update 1 to cumulative Update 15 was applied after taking the snapshot on the previous Trellix ePO-On-prem 5.10.0 server,

    • You must perform disaster recovery with Trellix ePO-On-prem 5.10.0.2428.68, then perform the repair function using the same cumulative Update that was applied and backup was taken on Trellix ePO-On-prem 5.10.0.

    • For example, if you have applied CU14 after taking the snapshot on the previous Trellix ePO-On-prem 5.10.0 server, you must perform the repair function using the same CU14 update.

  • We recommend performing the manual disaster recovery in the cluster environment for ePO - On-prem 5.10.0 cumulative Update 1 to Update 15.

  • Do not use the latest SP1 refresh build to restore a previous backup of ePO that had SP1 installed. Instead, to upgrade to the latest SP1 refresh build, it is recommended to perform a repair using the latest SP1 Update refresh build.

In a standalone environment

  • Disaster Recovery Snapshot

    1. Install fresh ePO 5.10.0.4098.4 or later as mentioned in the Installation guide.

    Important

    Make sure that the new installation path matches with the previous installation path. For example,

    Version

    Installation Path

    ePO 5.10.0.2428.68 + SP1 Update 1

    C:\Program Files (x86)\McAfee\ePolicy Orchestrator\

    ePO 5.10.0.4098.4 or later

    C:\Program Files (x86)\Trellix\ePolicy Orchestrator\

    For more information, see the Disaster Recovery section in Trellix ePolicy Orchestrator-On-prem 5.10.0 Product Guide.

  • Manual Disaster Recovery

    1. Install fresh ePO 5.10.0.4098.4 or later as mentioned in the Installation guide.

      Important

      Make sure that the new installation path matches with the previous installation path. For example,

      Version

      Installation Path

      ePO 5.10.0.2428.68 + SP1 Update 1

      C:\Program Files (x86)\McAfee\ePolicy Orchestrator\

      ePO 5.10.0.4098.4 or later

      C:\Program Files (x86)\Trellix\ePolicy Orchestrator\

    2. For more instructions on the manual disaster recovery, see KB66616.

    For more information, see the Disaster Recovery section in Trellix ePolicy Orchestrator-On-prem 5.10.0 Product Guide.

In a cluster environment

  • Disaster Recovery Snapshot

    1. Install fresh ePO 5.10.0.4098.4 or later in Primary Node with Restore DB option checked.

      Important

      Make sure that the new installation path matches with the previous installation path. For example,

      Version

      Installation Path

      ePO 5.10.0.2428.68 + SP1 Update 1

      S:\Program Files (x86)\McAfee\ePolicy Orchestrator\

      ePO 5.10.0.4098.4 or later

      S:\Program Files (x86)\Trellix\ePolicy Orchestrator\

    2. Failover to secondary Node and complete the installation by deselecting the Restore DB checkbox.

    3. In Cluster manager add all 3 services through Add generic services option and configure the dependencies of services as mentioned in the Installation guide.

    For more information, see the Disaster Recovery section in Trellix ePolicy Orchestrator-On-prem 5.10.0 Product Guide.

  • Manual Disaster Recovery

    1. Install fresh ePO 5.10.0.4098.4 or later in Primary node and Secondary node as mentioned in the Installation guide.

      Important

      Make sure that the new installation path matches with the previous installation path.

    2. For more instructions on the manual disaster recovery, see KB75497.

    For more information, see the Disaster Recovery section in Trellix ePolicy Orchestrator-On-prem 5.10.0 Product Guide.