ePO - On-prem 5.10.0 Service pack 1 Update 2 supports new features and addresses the known issues, including security fixes and performance.
We recommend that you always upgrade ePO 5.10.0 with the latest release as soon as possible.
Release Details
Trellix ePolicy Orchestrator - On-premises Cumulative Updater Tool epo_5.10.0_servicepack1update2.
Release Date: November 16, 2023
For the complete list of release dates and build numbers, see Product release information in KB51569.
Rating
The rating defines the urgency for installing this update.
This release is mandatory for all environments. You must apply these updates to maintain a viable and supported product. For more information, see KB51560.
New or changed
This release supports for these features:
Updated the domain name from lc.mcafee.com to lc.trellix.com for license check.
Upgraded Java Runtime Environment to 1.8.0_381
Upgraded Tomcat version to 9.0.82
You notice the following changes in the software:
Assigned Client Tasks link is disabled in Service Pack1 Update2.
You can now add/remove package using +/- link in the product deployment page.
During Wake up Trellix Agent, the option, Retrieve all properties even if they haven't changed since the last time they were collected. If deselected, only retrieve changed properties, is unchecked by default.
Resolved issues
This update contains these resolved issues.
Functional Stability
Issue | Resolution |
|---|---|
EPO-11070 | The Query Catalog page now loads the high volume queries faster than before. |
EPO-10751 | The Policy Assignment Approval no longer blocks admin to approve or reject the request. |
EPO-11128 | Minor discrepancies with SQL Jobs for Re-indexing ePO Databases are resolved. |
EPO-11209 | Policy creation no longer fails due to an issue in the PolicySettingValuesID. |
EPO-11162 | The epoRollup_AssignedPolicy database table now uses an int for UniqueAutoID. |
EPO-10635 | New Agent handler installation no longer displays the incorrect update version. |
EPO-10993 | Fixes an issue with managing and configuring the Drive encryption & Driver encryption. Also, the data channel events are now displayed in ePO. |
EPO-11106 | Data Exchange Layer Communication resumes and gets GUID. |
EPO-10834 | Active Directory Synchronization matches only the first 15 characters of the Machine name and excludes the other characters. This is now resolved. |
EPO-10976 | Delay in Logon Protection functioning after ePO services are restarted. This is now resolved. |
EPO-11079 | Mismatch in displaying Time zone for AMMA, Jordan on ePO Server and ePO Console. This is now resolved. |
EPO-11124 | Fixes the mismatch of Active Directory synchronization on groups containers. |
EPO-11942 | The epo Rollup_Computer database table now uses bigint for AutoID which fixes the roll-up query failure. |
EPO-11059 | IP is blocked even though IP is allowed in IP restriction under Logon Protection. This is now resolved. |
EPO-11715 | Apache memory usage on agent handlers increases over time until constant "Server out of memory, cannot process request" errors are logged. This is resolved now. |
EPO-10892 | In this update release, ePO allows users to check-in the desired branch in Software Catalog without any issues. |
EPO-10511 | Installation date of new installed programs displays up-to-date details. |
EPO-11263 | Improved the page load latency when navigating the Tag Catalog page. |
EPO-11088 | Implemented the collation check in ePO CU Tool. |
EPO-11037 | The autoclose check for SQL Connection timeout is implemented for both ePO and ePO events database. |
Security Fixes
Issue | Resolution |
|---|---|
SAG-50 | OpenRedirect Issue in ePO is resolved now. See SB10410 for more details. |
SAG-49 | Resolves a vulnerability where users can be added without the administrator role and authentication. See SB10410 for more details. |
SAG-65 | Tomcat version upgraded to 9.0.82. See SB10410 for more details. |
SAG-59 | JRE version upgraded to 1.8.0_381. See SB10410 for more details. |
Known issues
For a list of known issues in this product release, see ePO - On-prem 5.10.0 Known Issues (KB90382).
Additional information
Installation instruction: To install, repair, and verify the cumulative update and Agent Handler updates, refer Cumulative update installation procedures.
Important details about Service pack 1 Update 2: Before you upgrade refer the Mandatory Prerequisites and Upgrade Requirements for SHA-2 migration, and minimum OS/SQL requirements.
Disaster recovery: For information about disaster recovery, restoration, and required repair package versions, see Disaster recovery and restoration scenarios.