You can use Endpoint Upgrade Assistant to upgrade other Trellix products when you upgrade to Trellix ENS 26.x. You can upgrade from version 10.2.x, 10.5.x, or 10.6.x. You can also upgrade from legacy products like VirusScan Enterprise.
Note
For the Intel architectures, you can directly upgrade to version 26.x from version 10.7.0 (November 2022) or later. For the ARM architectures, the upgrades are not supported and upgrade section is not applicable, refer 000014791 for details.
Endpoint Upgrade Assistant detects Trellix products in your environment and determines the minimum version needed to remain compatible with Trellix ENS 26.x, then lets you upgrade all of them with a single deployment task.
Endpoint Upgrade Assistant checks for conditions on endpoints running VirusScan Enterprise (McAfee VirusScan Enterprise) and Host Intrusion Prevention System (HIPS), which have a high likelihood of migration to fail and reports the results to ePO - On-prem.
Note
The installer now automatically detects missing Root or Intermediate certificates on the endpoint before proceeding. This check prevents installation failures caused by incomplete certificate chains.
Before the installation:
Verify that all endpoints meet the minimum requirements (KB82761).
Verify that required patches are applied to the endpoints (KB96488).
Verify that you're aware of compatibility requirements for other installed products.
Get your grant number in the email from Trellix that confirmed your subscription. You need your grant number and this email address to download software.
Check for and install a new version of Endpoint Upgrade Assistant.
Use the Endpoint Upgrade Assistant extension to deploy Health Check to endpoints and analyze results after it’s completed. Depending on the availability of endpoints, the analysis may take up to 4 days.
Check in the latest version of the Trellix Agent installation package to the ePO - On-prem branch you plan to deploy upgrades from.
Note
Best practice: Use the latest version of the Trellix SysPrep utility when upgrading from version 10.5.3 or earlier, or when new software or policy configurations are used in software metering, software monitoring, or rights management. Check with technical support for the latest version of Trellix SysPrep.
On endpoints running Microsoft Windows 10 October 2018 Update or later, verify that the case-sensitivity attribute is disabled for folders in your source and target installation paths and \Windows\System32\drivers.
Verify that endpoint users have permission to access the user temp folder (KB85033).
Verify that the newer Root Certificates have been applied to the endpoints (KB91697).
If you plan to save custom product settings, review your settings, client tasks, and assignments, consolidating them where possible. Remove duplicates and unused objects.
If you're upgrading legacy products, such as VirusScan Enterprise, and want to save your custom product settings, install the Endpoint Migration Assistant.
Upgrade product extensions and installation packages on Trellix ePO - On-prem.
Resolve issues blocking analysis or found with Health Check.
Deploy products that Endpoint Upgrade Assistant cannot upgrade.
After the installation:
If you saved your custom product settings, verify that settings you configured in the previous version work as expected.
Disable the Windows firewall to avoid conflicts with McAfee Host IPS rules.
Review the policy settings that are new or changed in Trellix ENS 26.x.