The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Release information

Prev Next

This version of the release supports features that are mandatory requirement for FIPS, CC, and DoDIN APL certification.  

The software combination recommended by   Trellix to use along with this release of NS-series Sensor software are as listed below:  

Release parameters  

Version  

IPS Manager software version  

10.1.19.56  

Signature Set  

10.9.37.7  

NS-series Sensor software version    

10.1.17.91    

OpenSSL  

v1.0.2za  

This version supports all the features that are supported in Trellix Intrusion Prevention System 10.1.x non-FIPS versions. Above and beyond that, it includes support for FIPS. If you wish to learn about features released in non-FIPS compliant versions of the product, please refer to IPS 10.1.7.65-10.1.5.190 NS-Series Release Notes.  

Note

Manager software version 10.1 is not supported on Dell-based Manager Appliances. Trellix recommends that you use Intel-based Manager Appliances instead.

Upgrade support

Trellix regularly releases updated versions of the signature set. You can choose to automatically download and deploy the signature set in the Manager.  

Upgrade paths for Manager software versions  

Caution

If you are currently using a Sensor which is on software version 9.1.17.2, 9.1.17.4, 9.1.17.18, 9.1.17.100, or 9.1.17.104 and the Manager is on software version 10.1.19.17 or later, the communication between the Manager and Sensor will fail. Therefore, you must first upgrade the Sensor to software version 9.1.17.120 and later upgrade your Manager to 10.1.19.17 or later versions. Post this, you can upgrade the Sensor to 10.1.17.91.  

For example, if you have a NS9300 Sensor running on software version 9.1.17.100 and Manager software version 9.1.21.40, and you plan to upgrade the Sensor to 10.1.17.91 and Manager to 10.1.19.56, you must follow the upgrade path as listed below:  

  1. Upgrade your NS9300 Sensor from 9.1.17.100 to 9.1.17.120.  

  2. Upgrade the Manager from 9.1.21.40 to 10.1.19.56.  

  3. Upgrade the Sensor from 9.1.17.120 to 10.1.17.91.  

Windows based Manager:  

Note

Windows based Manager is not supported for CC and DoDIN APL.  

Manager upgrade paths  

Manager version  

Recommended Manager version  

9.1.19.6, 9.1.19.7  

9.1.19.32 | 10.1.19.56  

9.1.19.32, 9.1.19.38, 9.1.21.20, 9.1.21.33, 9.1.21.40  

10.1.19.56  

9.1.21.38  

9.1.21.40 | 10.1.19.56  

10.1.19.17, 10.1.19.30, 10.1.19.33, 10.1.19.38, 10.1.19.47, 10.1.19.53  

10.1.19.56  

Note

If you are running Manager software version   9.1.19.6 or 9.1.19.7 with MySQL database,   Trellix recommends you to upgrade to Manager version 9.1.19.32 with MariaDB database prior to the migration.  

Note

Upgrade from non-FIPS Manager to FIPS Manager in FIPS mode or FIPS Manager in non-FIPS mode is not supported.  

Migration from Windows based Manager to Linux based Manager:  

Manager migration paths  

Manager version  

Recommended Manager version  

9.1.19.32, 9.1.19.38  

10.1.19.56  

Linux based Manager:  

Important

After upgrade, make sure to reboot the Linux based Manager.  

Manager upgrade paths  

Manager version  

Recommended Manager version  

9.1.21.20, 9.1.21.33, 9.1.21.40  

10.1.19.56  

9.1.21.38  

9.1.21.40 | 10.1.19.56  

10.1.19.17, 10.1.19.30, 10.1.19.33, 10.1.19.38, 10.1.19.47, 10.1.19.53  

10.1.19.56  

Upgrade paths for Sensor software versions  

Sensor upgrade paths  

Sensor model  

Current Sensor software  

(FIPS, CC, and DoDIN APL compliant)  

Upgrade path to latest FIPS, CC, and DoDIN APL compliant Sensor software  

NS3100, NS3200, NS5100, NS5200, NS7100, NS7200, NS7300, NS7150, NS7250, NS7350, NS9100, NS9200, NS9300  

9.1.17.2, 9.1.17.4, 9.1.17.18, 9.1.17.100, 9.1.17.104  

9.1.17.120 | 10.1.17.91  

NS3100, NS3200, NS5100, NS5200, NS7100, NS7200, NS7300, NS7150, NS7250, NS7350, NS9100, NS9200, NS9300  

9.1.17.105, 9.1.17.120  

10.1.17.91  

NS3100, NS3200, NS3500, NS5100, NS5200, NS7100, NS7200, NS7300, NS9100, NS9200, NS9300  

10.1.17.15, 10.1.17.26, 10.1.17.36, 10.1.17.47, 10.1.17.63, 10.1.17.75  

10.1.17.91  

NS7150, NS7250, NS7350, N9500  

10.1.17.15, 10.1.17.26, 10.1.17.36, 10.1.17.50, 10.1.17.63, 10.1.17.75  

10.1.17.91  

NS7500  

10.1.17.15, 10.1.17.36, 10.1.17.47, 10.1.17.63, 10.1.17.75  

10.1.17.91  

Note

If the Sensor is running on 10.1.17.63 or a later version of 10.1 and you plan to downgrade it to 10.1.17.36 or an older version, you need to first downgrade the Sensor to 10.1.17.47 (for NS9300, NS9200, NS9100, NS7500, NS7300, NS7200, NS7100, NS5200, NS5100, NS3500, NS3200, NS3100) or 10.1.17.50 (for NS9500, NS7350, NS7250, NS7150) and then, downgrade it to the targeted version.  

Important

  • When you are downloading the Sensor software in the Manager, ensure that the Manager software release is equal to or higher than the Sensor software release. For example: If you are using 10.1.19.47 (10.1 Update 8) Manager, the Sensor software must be 10.1.17.63 (10.1 Update 8) or any lower version. You must not download the Sensor software 10.1.17.75 (10.1 Update 9) or higher version using the 10.1.19.47 (10.1 Update 8) Manager.  

  • If you have already downloaded a higher release of Sensor software in an older Manager release, the Manager is in a bad state. To recover the Manager, manually delete the Sensor software files.  

Heterogeneous support

This version of 10.1 Manager software can be used to configure and manage the following devices:  

Note

For release 10.1, Manager version 10.1.19.17 or later cannot manage M-series, Mxx30-series, and M-8000XC Sensors.  

Note

For this release of 10.1, heterogeneous environment with Virtual IPS Sensors for AWS and Azure is not supported.  

Device  

Version  

NS-series Sensors (NS3100, NS3200, NS5100, NS5200, NS7100, NS7200, NS7300, NS9100, NS9200, NS9300)  

9.1, 10.1  

NS-series Sensors (NS3500, NS7500, NS9500)  

10.1  

NS-series Sensors (NS7150, NS7250, NS7350)  

9.1, 10.1  

Virtual IPS for ESXi server (IPS-VM600)  

9.1, 10.1  

NTBA Appliances (T-600, T-1200)  

9.1  

Virtual NTBA Appliances (T-VM, T-100VM, T-200VM)  

9.1  

Integration support

The above mentioned   Trellix IPS software versions support integration with the following product versions:  

Note

With this release of 10.1, integration with McAfee Host Intrusion Prevention is no longer supported.  

Trellix IPS compatibility matrix  

Product  

Version supported  

McAfee ePO™  

5.10.0 Update 13  

Trellix Endpoint Security (formerly, McAfee Endpoint Security)  

10.7.0  

Trellix Global Threat Intelligence™ (formerly, McAfee Global Threat Intelligence™)  

Compatible with all versions  

McAfee Endpoint Intelligence Agent  

3.2.4  

McAfee Logon Collector  

3.0.10  

Trellix Threat Intelligence Exchange (formerly, McAfee Threat Intelligence Exchange)  

3.0.1  

Trellix Data Exchange Layer (formerly, McAfee Data Exchange Layer)  

6.0.3  

Trellix Intelligent Sandbox (formerly, McAfee Advanced Threat Defense)  

5.0, 4.14.2  

Virtual Trellix Intelligent Sandbox (formerly, McAfee Virtual Advanced Threat Defense )  

5.0, 4.14.2  

McAfee Vulnerability Manager  

7.5.14  

Trellix Virtual Execution  

9.1.2 and above