The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Resolved issues

Prev Next

For a list of current known issues, see Trellix Intrusion Prevention System 11.1 Known Issues (KB96274).

Resolved Manager software issues

The following table lists the resolved Manager software issues:

ID #

Issue Description

NSPMGR-30677

Updated the sshd_config file to set MaxAuthTries and MaxStartups default values to 3. This change satisfies security hardening requirements.

NSPMGR-30647

The server.xml file in Apache Tomcat is restricted to read-only mode, preventing administrators from modifying SSL/TLS cipher suites to meet hardening guidelines. The file permission is now changed to write access.

NSPMGR-30567

The Manager displays an incorrect check-in time for ePO endpoints due to timestamp parsing and timezone conversion errors in the extension code.

NSPMGR-30551

Users assigned the "NOC Operator" role are automatically logged out of the Manager GUI when clicking on the alert Description tab in the Attack Log page.

NSPMGR-30402

Migration from MLOS to Trellix OS fails because the GRUB bootloader selection logic relies on static index numbers rather than dynamic string matching.

NSPMGR-30308

Quarantine duration is not correctly applied or displayed on the Selected Port (non-Template Port) side of a Port Cluster, defaulting to standard quarantine time instead.

NSPMGR-30257

The Manager fails to export the blocked hashes list to CSV due to a NullPointerException caused by corrupted entries and unhandled null user IDs in the database.

NSPMGR-30237

Excessive NullPointerException error entries regarding Device Profile DB updates and CPE string filling flood the ems.log file without causing functional UI impact.

NSPMGR-30136

Selecting and editing five or more IPS policies simultaneously causes the UI to become stuck in a permanent loading state when attempting to view attack definition details.

NSPMGR-30121

Cloud controller registration failure messages and errors are continuously logged on the User Activities page even when the Manager is deployed on-premise without cloud resources.

NSPMGR-29964

The system fails to generate fault messages or alerts when network communication with an integrated Intelligent Sandbox (IVX) server is disconnected or times out.

NSPMGR-29818

The Manager repeatedly triggers false disconnection faults for the local Virtual IPS Controller due to inaccurate update timestamp checks in the bp_controller_status database table.