The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Known issues

Prev Next

The following issues are known in the Central Management System 10.0.0 release.

Tracking number

Summary

CMSHA-1560

"show health system" CLI must not return "Disabled" and "Node is not primary" for CMSHA fedb sync health service on CMSHA.

CMS-15046

Sometimes, PCAP files fetched from the Network Security appliance contain zero bytes when the number of concurrent CMC file transfers reaches the maximum system limit.

CMS-15792

The MVX-correlated IPS alerts are not deleted in the Central Management System appliance after the cleanup.

CMS-16379

The following messages are displayed in the Central Management System appliance Web UI: "Unable to read version info to figure out correct server manifest file" and "Failed to load master manifest" mgmtd.WARNING". You can ignore these error messages.

CMS-17093

The alert hyperlink in a quarantined message for riskware doesn't redirect to the corresponding riskware alert.

CMS-17109

Intelligent Virtual Execution - Server - Server node must be upgraded from 9.1.x to 10.0.

Workaround: Upgrade the Intelligent Virtual Execution - Server server node from 9.0.x to 9.1.x before upgrading CM to 10.0.0.

CMS-17133

On the Central Management System Web UI Analysis page, the current running submission should not be displayed as a child of a completed submission.

COM-30639

Credentials in the login page are transmitted over the SSL layer in plain text without encoding.

COM-30405

SAML Response decoding sometimes fails with IDP.

The appliance displays a "bad encoding" error when the system's IDP response contains carriage return and newline characters.

COM-30655

The database backup process takes a long time when the alert purge is in progress.

Workaround: Schedule the database backup and purge processes at different times.

COM-30656

Negation symbol '!' is not working before the hostname or the username in deny user list.

COM-30659

Alert details might be missing from the report generated during alert purging.

COM-30687

The appliance is known to be vulnerable to CVE-2022-36760 if AJP servers are present.

WEBMPS-27033

Internal FUME packets are experiencing noticeable drops.

WEBUI-15000

For smartvision alerts generated earlier to 9.1.3 releases, base events details and events summary information will not be displayed in Central Management System.