This release of Trellix vIPS is to provide new features and enhancements on the Manager and Virtual IPS Sensor software.
| Release parameters | Version |
|---|---|
| IPS Manager software | 10.1.7.66 |
| Signature Set | 10.9.37.7 |
| Virtual IPS Sensor software (AWS and Azure) | 10.1.7.156 |
| vIPS Controller and Probe | 2.3.38 |
| Trellix SSL Agent (For inbound SSL decryption using DHE/ECDHE ciphers) | 1.0.4 |
Note
The Signature Set version 10.9.37.7 bundled with this release of Manager contains only Digital Envoy database for IP address to Geolocation Mapping. This signature set version will not be a part of the publicly available signature sets.
Note
The Manager software 10.1 is not supported on Windows-based Appliance. The end-of-life for Windows-based Appliance has been declared and the end-of-life is on 1-Apr, 2023. Trellix recommends you to migrate from Windows-based Appliance to Linux-based Appliance.
Upgrade support
Upgrade paths for Manager software versions
Note
Before you start upgrading to the latest 10.1 Manager version, ensure that you do not change the timestamp and timezone values of the Manager.
Caution
Starting with release 10.1.7.50, the Manager software version supports only TLS 1.2 ciphers for Manager and Sensor communication.
Linux-based Manager:
| Version | Upgrade path to 10.1 |
|---|---|
| 10.1.7.24, 10.1.7.25, 10.1.7.40, 10.1.7.44, 10.1.7.50, 10.1.7.50.2, 10.1.7.55, 10.1.7.61 | 10.1.7.66 |
Note
- After upgrade, the Linux-based Manager reboots automatically. If it fails to reboot, check the installation logs for errors and reboot the Manager manually.
- For all direct upgrades to 10.1.7.66, use the IPSM_101766_setup.bin Version 10.1.7.66 upgrade file.
- Only Linux-based Manager upgrade is supported for all Public Cloud releases.
Virtual IPS Sensor software (IPS-VM600):
Caution
Starting with release 10.1.7.50, the Manager software version supports only TLS 1.2 ciphers for Manager and Sensor communication.
| Sensor models | Version | TLS support | Upgrade path to 10.1 |
|---|---|---|---|
| Virtual IPS Sensor software (IPS-VM600) | 10.1.7.33, 10.1.7.34, 10.1.7.65, 10.1.7.86, 10.1.7.96 , 10.1.7.123, 10.1.7.135 | TLS 1.2 | 10.1.7.156 |
Note
If the Sensor is running on 10.1.7.123 or a later version of 10.1 and you plan to downgrade it to 10.1.7.86 or an older version, you need to first downgrade the Sensor to 10.1.7.96 and then, downgrade it to the targeted version.
Important
- When you are downloading the Sensor software in the Manager, ensure that the Manager software release is equal to or higher than the Sensor software release. For example: If you are using 10.1.7.55 (10.1 Update 8) Manager, the Sensor software must be 10.1.7.123 (10.1 Update 8) or any lower version. You must not download the Sensor software 10.1.7.135 (10.1 Update 9) or higher version using the 10.1.7.55 (10.1 Update 8) Manager.
- If you have already downloaded a higher release of Sensor software in an older Manager release, the Manager is in a bad state. To recover the Manager, manually delete the Sensor software files.
Heterogeneous support
Heterogeneous support is not available for this release.
Integration support
Integration with other products are not supported for this release.