The new docs.trellix.com offers a modernized UI and AI-powered features like conversational searches. Content is currently available only in English. Other languages will be available in mid-October 2026. We hope you enjoy the new experience.

Known issues

Prev Next

The following issues are known in the Event Streamer module 2.0.35 release.

Tracking number

Summary

ENDPT-60855

It is not possible to use an IPv6 address when configuring a Syslog server. If an IPv6 address is used, Event Streamer module will be not be able to connect to the server.

ENDPT-107165

When large events are sent to a Syslog server, the event may be broken up into several smaller portions. This is due to size limitations with the Syslog protocol.

ENDPT-107166

Upgrade is only valid going from the currently installed release to the next release of Event Streamer module. Upgrades from older versions which skip some intermediate versions are not valid.

ENDPT-111724

When the Event Streamer module is upgraded from version 1.x to 2.x , data is not delivered from Event Streamer module to Syslog server unless the policy settings are saved in the Event Streamer module UI.

ENDPT-112522

When the Event Streamer module is upgraded from version 1.x to 2.x, the Event Streamer module logs are not forwarded to Helix unless the 'Stream to Trellix Helix' toggle option under Helix configuration settings is enabled.

ENDPT-112675

When the Event Streamer module is upgraded from version 1.x to 2.x , custom-added events IDs are not visible in both the Helix and Helix policies.

ENDPT-112775

When the Event Streamer module is upgraded from version 1.x to 2.x , the custom settings in the Event Streamer module UI configuration resets to its default value and does not retain the modified value. It is recommended to perform a UI refresh if custom values are not visible.