The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Notes about upgrading from 9.1, 9.2, 10.1 to 10.1.7.40

Prev Next

Account lockout enhancements

  • Account lockout parameter — Previously, to lock an account when inactive, you had to log in to the Manager server and edit the ems.properties file. Starting with this release, the Manager UI provides the Inactivity option to disable an account when inactive. You can also set the number of days after which the account is disabled.

    To view the Inactivity option under Account Lockout section, go to Manager → <Admin Domain Name> → Setup → GUI Access → Password Control.

  • Users with Account Locked enabled— In the Users page, if the Account Locked option is selected for a user then the icon is displayed to indicate that the account is locked.

    To view the Users page, go to Manager → <Admin Domain Name> → Users and Roles → Users.

Generate CSR enhancements

With this release of 10.1, the following enhancements are available in the Generate CSR window:

  • Abbreviations can be used in the Organization field.
  • A maximum of 10 organizational units can be added to the Organizational Unit field. (Previously known as Department.
  • The options Organizational Unit, City, and State/Province are not mandatory fields.

To edit the CSR information in the Generate CSR window for an admin domain, go to Manager → <Admin Domain Name> → Setup → Certificates. To edit the information for devices, go to Devices → <Admin Domain Name> → Devices → <Device Name> → Setup → Trust Certificates.

Terminology updates in the UI

This release contains the following terminology updates in the Manager UI:

Navigation Path Prior to 10.1.7.40 10.1.7.40 and later
Manager → <Admin Domain Name> → Setup → GUI Access → Password Control Enable Account Lock Out Login Failure
Maximum Number of Unsuccessful Login Attempts Number of Consecutive Login Failures
Duration of Lock Out Prevent Login For
In Add a User and Edit a User pages, under Manager → <Admin Domain Name> → Users and Roles → Users The option Account Disabled is displayed under the Additional Information section. The option is renamed to Account Locked and moved to User Credentials Section.
Manager → <Admin Domain Name> → Setup → Certificates

Devices → <Admin Domain Name> → Devices → <Device Name> → Setup → Trust Certificates

In Generate CSR window, Department This option is renamed to Organizational Unit

Synchronization of GUI certificate in an MDR pair

Starting with this release of 10.1, in an MDR pair, the GUI certificate present in the primary Manager can be copied to the secondary Manager. This option helps align certificates used in the primary and secondary Managers and avoids the need for manual import of the certificate to the secondary Manager.

To copy the GUI certificate, go to Manager → <Admin Domain Name> → Setup → MDR. Select the Copy certificate checkbox.