You can use a third-party deployment tool like Microsoft System Center Configuration Manager, IBM BigFix, or Tanium Deploy to upgrade to Trellix ENS 26.x on your endpoints with a command line. You can upgrade from version 10.2.x, 10.5.x, or 10.6.x.
You can retrieve the installation packages from the Trellix Product Downloads site using a valid grant number.
This method lets you install Trellix ENS using the same tool and automated processes that you use to install other products in your environment.
Note
For the Intel architectures, you can directly upgrade to version 26.x from version 10.7.0 (November 2022) or later. For the ARM architectures, the upgrades are not supported and upgrade section is not applicable, refer 000014791 for details.
Note
The installer now automatically detects missing Root or Intermediate certificates on the endpoint before proceeding. This check prevents installation failures caused by incomplete certificate chains.
Before the installation:
Verify that all endpoints meet the minimum requirements (KB82761).
Verify that required patches are applied to the endpoints (KB96488).
Verify that you're aware of compatibility requirements for other installed products.
On endpoints running Microsoft Windows 10 October 2018 Update or later, verify that the case-sensitivity attribute is disabled for folders in your source and target installation paths and \Windows\System32\drivers.
Get your grant number in the email from Trellix that confirmed your subscription. You need your grant number and this email address to download software.
Have this information ready for deployment: a descriptive name for the deployment task, the file name for the installer, and the command line to run the deployment (for example,
setupEP.exe ADDLOCAL="tp,atp,fw,wc").Verify that endpoint users have permission to access the user temp folder (KB85033).
Verify that the newer Root Certificates have been applied to the endpoints (KB91697).
Note
Best practice: Use the latest version of the Trellix SysPrep utility when upgrading from version 10.5.3 or earlier, or when new software or policy configurations are used in software metering, software monitoring, or rights management. Check with technical support for the latest version of Trellix SysPrep.
If you plan to save custom product settings, review your settings, client tasks, and assignments, consolidating them where possible. Remove duplicates and unused objects.
After the installation:
If you saved your custom product settings, verify that settings you configured in the previous version work as expected.
Disable the Windows firewall to avoid conflicts with McAfee Host IPS rules.
Review the policy settings that are new or changed in Trellix ENS 26.x.