The new docs.trellix.com offers a modernized UI and AI-powered features like conversational searches. Content is currently available only in English. Other languages will be available in mid-October 2026. We hope you enjoy the new experience.

Upgrade a single Trellix ESM from version 11.x

Prev Next

Upgrade your SIEM solution from an 11.x version.

Caution

When upgrading, all active collectors stop collecting data until you rewrite the device settings and roll out the policy.

  1. From the Trellix ESM dashboard, click GUID-0177D71C-5A80-43D5-9629-5D396CF2895F-low.png and select More Settings.

  2. Select an Trellix ESM and click Properties GUID-F191D568-8B93-4D2C-9BFC-F1342FC407BD-low.png.

  3. Click ESM Management.

  4. Select the Maintenance tab, then click Upgrade ESM.

  5. In the Select Software Upgrade File window:

    • Select the upgrade file from the list, then click OK.

      Or

    • Click Browse to check for a software upgrade file obtained from the download site on your system and then, click Upload.

  6. In Proceed with Upgrade, click Yes to run the upgrade advisor.

    The System Advisor Upgrade Check window shows the available online and offline devices along with their respective status.

  7. Click Close in System Advisor Upgrade Check and then, in the Upgrade ESM Software window, click Yes to run the upgrade.

    1uzdmTThe Trellix ESM device restarts and all current sessions are disconnected while the upgrade is installed. If you encounter issues during an upgrade, you can restore the backup files or contact Support.

  8. When the upgrade process is complete, refresh the browser.

  9. Clear the browser cache to prevent issues at logon.

A rules update is automatically started after the upgrade. During the rules update:

  • The application is not available. Wait for the process to finish and refresh the page.

  • You might see error messages related to 'snowflex' and 'snowman'. Disregard the error messages.