The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Functional requirements

Prev Next

Following are the functional requirements to be taken care of:  

  • (Applicable to Windows based Manager only) Install Wireshark (formerly known as Ethereal https://www.wireshark.org) on the client PCs. Wireshark is a network protocol analyzer used to analyze packet logs created by Sensors on Unix and Windows servers.  

  • (Applicable to Windows based Manager only) Ensure the correct version of JRE is installed on the client system, as described in the earlier section. This can save a lot of time during deployment.  

  • Manager uses port 4167 as the UDP source port to bind for IPv4 and port 4166 for IPv6. If you have Sensors behind a firewall, you need to update your firewall rules accordingly such that ports 4167 and 4166 are open for the SNMP command channel to function between those Sensors and the Manager. This applies to a local firewall running on the Manager server as well.  

  • Determine a way in which the Manager maintains the correct time. To keep time from drifting, for example, point the Manager server to an NTP timeserver. (If the time is changed on the Manager server, the Manager will lose connectivity with all Sensors and the   Trellix IPS Update Server because SSL is time-sensitive.)  

  • If Manager Disaster Recovery (MDR) is configured, ensure that the time difference between the Primary and Secondary Managers is less than 60 seconds. (If the spread between the two exceeds more than two minutes, communication with the Sensors will be lost.)  

  • If you are upgrading from a previous version, we recommend that you follow the instructions in the respective version's release notes or   Upgrade path for the Central Manager.  

  • (Applicable to Windows based Manager only) If a fresh installation of the Manager is needed on a machine where a Manager is already installed, ensure that the existing Manager is uninstalled and the respective directories are removed prior to the fresh installation.  

    Note

    Reboot the machine after uninstallation for the removal of directories.