The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Release information

Prev Next

This release of Trellix IPS is to provide new features and enhancements on the Manager and NS-series Sensor software.

Release parameters

Version

IPS Manager software

11.1.7.121

Signature Set

11.10.27.6

NS-series Sensor software (NS9600, NS9500, NS9300, NS9200, NS9100, NS7600, NS7500, NS7350, NS7300, NS7250, NS7200, NS7150, NS7100, NS5200, NS5100, NS3600, NS3500, NS3200, NS3100)

11.1.5.122

Trellix SSL Agent (For inbound SSL decryption using DHE/ECDHE ciphers)

1.0.5

Suricata Snort Engine

3.2.3

Caution

The IPS Manager no longer supports HTTP-based connection and can be accessed via HTTPS connection only. You need to manually enter https://<hostname or host-IP> on the supported browsers to access the Manager UI.

Note

When you upgrade the Sensor software version to 11.1.5.122, you must also upgrade the corresponding Manager software version to 11.1.7.121.

For more information, see Manager and its compatible Sensor software versions in Trellix Intrusion Prevention System 11.1.x Product Guide.

Note

If you have a 9.x Manager managing 9.x NTBA, you should consider upgrading 9.x Manager to 10.1 or 11.1. If you plan to upgrade the Manager to 11.1, you need to first upgrade it to 10.1.7.65 and then to 11.1.

Upgrade support

Trellix regularly releases updated versions of the signature set. You can choose to automatically download and deploy the signature set in the Manager.

Upgrade paths for Manager software versions

Note

Before you start upgrading to the latest 11.1 Manager version, ensure that you do not change the timestamp and timezone values of the Manager.

Caution

  • The Manager software supports only TLS 1.2 ciphers for Manager and Sensor communication.

  • If you are currently using the Sensor software version that supports TLS 1.0 and you upgrade your Manager software to 11.1.7.121, the communication between the Manager and Sensor will fail. Therefore, you must first upgrade the Sensor to a software version that supports TLS 1.2 and later upgrade your Manager to 11.1.7.121. Post this, you may upgrade the Sensor to 11.1.5.122. Please refer to KB96194 for more information and contact Trellix Support for assistance.

Windows based Manager:

Version

Upgrade path to 11.1

10.1.7.4, 10.1.7.7, 10.1.7.29, 10.1.7.35, 10.1.7.40, 10.1.7.44, 10.1.7.50, 10.1.7.50.2, 10.1.7.55, 10.1.7.61, 10.1.7.65, 10.1.7.66.3, 10.1.7.66.11

11.1.7.121

11.1.7.3, 11.1.7.3.5, 11.1.7.26, 11.1.7.41, 11.1.7.41.2, 11.1.7.56, 11.1.7.71, 11.1.7.84, 11.1.7.97, 11.1.7.111

11.1.7.121

Linux based Manager:

Caution

After the upgrade, the Linux-based Manager reboots automatically. If it fails to reboot, check the installation logs for errors and reboot the Manager manually.

Note

Trellix recommends to keep SSH keepalive configuration enabled in your SSH client (for example, Bitvise) to avoid session termination in the Linux-based Manager and maintain a stable connection during the Manager upgrade process.

Version

Upgrade path to 11.1

10.1.7.4, 10.1.7.7, 10.1.7.29, 10.1.7.35, 10.1.7.40, 10.1.7.44, 10.1.7.50, 10.1.7.50.2, 10.1.7.55, 10.1.7.61, 10.1.7.65, 10.1.7.66.3, 10.1.7.66.11

11.1.7.121

11.1.7.3, 11.1.7.3.5, 11.1.7.26, 11.1.7.41, 11.1.7.41.2, 11.1.7.56, 11.1.7.71, 11.1.7.84, 11.1.7.97, 11.1.7.111

11.1.7.121

Note

For all direct upgrades to 11.1.7.121, use the IPSM_1117121_setup.bin Version 11.1.7.121 upgrade file.

Upgrade paths for Sensor software versions

Caution

  • The Manager software supports only TLS 1.2 ciphers for Manager and Sensor communication.

  • If you are currently using Sensor software version that supports TLS 1.0 and you upgrade your Manager software to 11.1.7.121, the communication between the Manager and Sensor will fail. Therefore, you must first upgrade the Sensor to a software version that supports TLS 1.2 and later upgrade your Manager to 11.1.7.121. Post this, you may upgrade the Sensor to 11.1.5.122. Please refer to KB96194 for more information and contact Trellix Support for assistance.

Sensor models

Version

Upgrade path to 11.1

NS9600 (Standalone and stack)

11.1.5.113, 11.1.5.114

11.1.5.122

NS9500 (Standalone)

10.1.5.3, 10.1.5.5, 10.1.5.41, 10.1.5.64, 10.1.5.75, 10.1.5.92, 10.1.5.107, 10.1.5.116, 10.1.5.153, 10.1.5.170, 10.1.5.190, 10.1.5.204

11.1.5.122

11.1.5.2, 11.1.5.22, 11.1.5.44, 11.1.5.57, 11.1.5.72, 11.1.5.84, 11.1.5.98, 11.1.5.113, 11.1.5.114

11.1.5.122

NS9500 (Stack)

10.1.5.3, 10.1.5.5, 10.1.5.41, 10.1.5.64, 10.1.5.75, 10.1.5.92, 10.1.5.107, 10.1.5.116, 10.1.5.153, 10.1.5.170, 10.1.5.190, 10.1.5.204

11.1.5.122

11.1.5.2, 11.1.5.22, 11.1.5.44, 11.1.5.57, 11.1.5.72, 11.1.5.84, 11.1.5.98, 11.1.5.113, 11.1.5.114

11.1.5.122

NS-series (NS9300, NS9200, NS9100, NS7300, NS7200, NS7100, NS5200, NS5100, NS3200, NS3100)

10.1.5.3, 10.1.5.5, 10.1.5.41, 10.1.5.64, 10.1.5.75, 10.1.5.92, 10.1.5.106, 10.1.5.116, 10.1.5.153, 10.1.5.170, 10.1.5.190, 10.1.5.202

11.1.5.122

11.1.5.2, 11.1.5.22, 11.1.5.44, 11.1.5.56, 11.1.5.72, 11.1.5.84, 11.1.5.98, 11.1.5.113, 11.1.5.114

11.1.5.122

NS7600

11.1.5.84, 11.1.5.99, 11.1.5.113, 11.1.5.114

11.1.5.122

NS7500

10.1.5.64, 10.1.5.75, 10.1.5.92, 10.1.5.106, 10.1.5.116, 10.1.5.153, 10.1.5.170, 10.1.5.190, 10.1.5.202

11.1.5.122

11.1.5.2, 11.1.5.22, 11.1.5.44, 11.1.5.56, 11.1.5.72, 11.1.5.84, 11.1.5.98, 11.1.5.113, 11.1.5.114

11.1.5.122

NS7x50

10.1.5.3, 10.1.5.5, 10.1.5.41, 10.1.5.64, 10.1.5.75, 10.1.5.92, 10.1.5.107, 10.1.5.116, 10.1.5.153, 10.1.5.170, 10.1.5.190, 10.1.5.204

11.1.5.122

11.1.5.2, 11.1.5.22, 11.1.5.44, 11.1.5.57, 11.1.5.72, 11.1.5.84, 11.1.5.98, 11.1.5.113, 11.1.5.114

11.1.5.122

NS3600

11.1.5.84, 11.1.5.98, 11.1.5.113, 11.1.5.114

11.1.5.122

NS3500

10.1.5.3, 10.1.5.5, 10.1.5.41, 10.1.5.64, 10.1.5.75, 10.1.5.92, 10.1.5.106, 10.1.5.116, 10.1.5.153, 10.1.5.170, 10.1.5.190, 10.1.5.202

11.1.5.122

11.1.5.2, 11.1.5.22, 11.1.5.44, 11.1.5.56, 11.1.5.72, 11.1.5.84, 11.1.5.98, 11.1.5.113, 11.1.5.114

11.1.5.122

Note

If the Sensor is running on 10.1.5.153 or a later version of 10.1 and you plan to downgrade it to 10.1.5.106 (for NS9300, NS9200, NS9100, NS7500, NS7300, NS7200, NS7100, NS5200, NS5100, NS3500, NS3200, NS3100) or 10.1.5.107 (for NS9500, NS7350, NS7250, NS7150) or any older version, you need to first downgrade the Sensor to 10.1.5.116 and then downgrade it to the targeted version. Please refer to KB96194 and contact Trellix Support for further assistance.

Heterogeneous support

This version of 11.1 Manager software can be used to configure and manage the following devices:

Device

Version

NS-series Sensors (NS3100, NS3200, NS3500, NS5100, NS5200, NS7100, NS7200, NS7300, NS7150, NS7250, NS7350, NS7500, NS9100, NS9200, NS9300, NS9500 standalone and stack)

10.1, 11.1

NS-series Sensors (NS3600, NS7600, and NS9600 - standalone and stack)

Note

NS7600 and NS3600 Sensors have been introduced with the 11.1 Update 5 release, and NS9600 Sensor with the 11.1 Update 7 release.

11.1

Virtual IPS for KVM and ESXi server (IPS-VM600 and IPS-VM5000)

Note

IPS-VM5000 and support for KVM have been introduced with 11.1 Update 2 release.

10.1, 11.1

Integration support

Trellix IPS version 11.1 supports integration with the following product versions:

Product

Version supported

Trellix Data Exchange Layer

6.0.3

Trellix Endpoint Security

10.7.0

Trellix ePolicy Orchestrator - On-prem

5.10.0 Service Pack 1 Update 3

Trellix Global Threat Intelligence

Compatible with all versions

Trellix Intelligent Sandbox

5.2.0 and above

Virtual Trellix Intelligent Sandbox

5.2.0 and above

Trellix Intelligent Virtual Execution - Server

10.0.0, 9.1.4

Trellix Intelligent Virtual Execution Cloud

Version 24R4

Trellix Logon Collector

3.0.11

Trellix Network Investigator (Appliance and Virtual)

3.2.0

Trellix Threat Intelligence Exchange

4.0.0