The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Upgrade from xAgent to EDRF Client using Product Deployment

Prev Next

After upgrading your Endpoint Security (HX)) policies, you must deploy the EDRF Client. This process automatically uninstalls xAgent.

Deploy EDRF Client

  1. Log in to ePO - On-prem as an administrator.

  2. Go to Menu → Softwares → Product Deployment and click New Deployment.

  3. Enter a name and description for the deployment task.

    Product_Deployment_On-prem.png
  4. In the Package field, select the applicable version of EDRF Client.

  5. Select the Current Branch and Install Action.

  6. Select the endpoints to deploy the package using the Select Individual Systems or Select by Tag or Group option.

  7. To start the deployment task immediately, select Run Immediately as the Start Time.

  8. Click Save.

  9. View the deployment status on the Product Deployment home page.

  10. Click the 'Start' or 'Windows' button, search for Task Manager, and verify that XClient processes are running on the Windows endpoints.

    To view the current status of XClient processes on Mac and Linux, use Activity Monitor and Status Monitor respectively.

    XClient_Processes.png

Note

By default, the Malware Protection and ProRem services are disabled after deployment. To enable, go to Menu → Policy → Policy Catalog → Trellix EDR with Forensics → Protection.