The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Trellix DLP Monitor 11.10 Update 5 (11.10.500) Release Notes

Prev Next

The 11.10 Update 5 release includes feature enhancements and resolved issues.

Every update release is cumulative and includes all features and fixes from the previous release. We recommend that you always upgrade to the most current release.

Rating for 11.10 Update 5 (11.10.500)

The rating defines the urgency for installing this update.

Recommended

This release is recommended for all environments. Apply this update at the earliest convenience.

For more information, see KB51560.

Release details

Release date: October 25, 2023

Release build:

  • Trellix DLP Monitor appliance installation images:

    • For VMware vSphere virtual appliance — Trellix-MS-11.10.500-3665.100.ms.hw10.hdd.ova

    • For hardware appliance — Trellix-MS-11.10.500-3665.100.iso

  • DLP Appliance Management extension — build 11.10.300.103

  • Data Loss Prevention extension — build 11.10.100.8

    Note

    Data Loss Prevention extension 11.10.9 is incompatible with the older appliance versions. Make sure that you upgrade Trellix DLP Appliance to the latest version.

    For all new features and resolved issues in DLP Extension, see the Trellix DLP Extension 11.10.10 Release Notes.

This release updates components that depend on these extensions:

  • Proprietary Linux OS based on CentOS 7

  • Trellix Agent — version 5.7.8

    Note

    Trellix Agent is built into the appliance software and can't be updated through Trellix ePO - On-prem.

  • Appliance Management extension — build 1.3.3.145

  • Common UI extension — build 1.3.0.258 or later

Data Loss Prevention (DLP) Long-Term Support Release

Important - Trellix is enhancing our Trellix DLP release process to better serve our customers' requirements. This is achieved via defining each release as either a Long-Term Support release or Feature Release. Feature release introduces new features; whereas, Long-Term Support (LTS) release allows customers (under tight change control) to maintain a stable Trellix DLP version without changes to functionality and existing features. The LTS release will include only security updates, bug fixes, and some optimization for the existing features by releasing only patches or hotfixes. As is currently the case, these releases will continue to be fully installable packages.

Note

The latest LTS release for Trellix DLP Monitor is version 11.10 Update 5 (11.10.500).

For more information about LTS releases, see KB91807.

Updated platform, environment, or operating system support

For information on supported platforms, environments, and operating systems, see KB87112.

New or changed features

WebDAV support with evidence storage — For secure file transmission and file sharing when transmitting sensitive DLP evidences to a storage location, you can now use the Web Distributed Authoring and Versioning (WebDAV) protocol with Trellix Data Loss Prevention appliances. The WebDAV option allows to:

  • Send evidence files using the HTTP/HTTPS protocol

  • Copy evidence files on IIS Server

  • Host the file server on Windows FS or NFS

  • Password-based authentication

Trellix Data Loss Prevention appliance supports using the WebDAV (URL) option is in these pages:

  • Data Protection → DLP Getting Started → Shared Location

  • Data Protection → DLP Settings → General

  • Policy Catalog → Data Loss Prevention <version> → Server Configuration → Shared Storage and Evidence

  • Data Protection → Incident Manager → Incident List, select one or more incidents, then click Actions → Export Selected Events

Setting the confidence threshold in manually registered documents — Trellix Data Loss Prevention allows you to configure the number of fingerprints that must be matched in a manually fingerprinted document to trigger a violation. This helps in increasing the detection confidence as it minimizes false positives by triggering more accurate detections and reduces the analysis time. An incident is triggered when the number of matches is equal to or higher than the set confidence threshold. You can set the Confidence Threshold percentage between 10 to 100 percentage. For example, if a fingerprinted document generates 100 signatures, and if you select 10%, then 10 signatures are matched at random in the scanned document.

To set the threshold percentage go to, Classification → Register Documents → Manual Registration → Confidence Threshold.

Note

Ignored list signatures are not considered for matching.

Configuring the interval of health check queries — To reduce the load on the appliance processes or services, you can now configure the interval of health check queries sent to the appliance processes or services or disable the health check queries. For information about how to configure the query interval, see KB96788.

Resolved issues

This release resolves known issues.

For the DLP Extension related resolved issues, see the Trellix Data Loss Prevention Extension 11.10.10 Release Notes.

Important

This release is cumulative and contains fixes from all previous releases.

Appliance resolved issues

DLPN-12902

This release fixes an issue where emails failed randomly with SMTP temporary error after upgrading from version 11.8 to 11.10.

DLPN-12995

This release fixes an issue where the platform configurations were not correctly configured for DLP Capture Storage connected with the DLP 8800 appliance.

Known issues

In rare unidentified scenarios, emails sent through Trellix DLP Prevent are rejected with a “550 Unable to process e-mail. (Scanning on service failed)” error.

Data Loss Prevention 11.x.x Known Issues (KB89301).