Trellix recommends that you regularly monitor for maintenance releases and new versions of the Central Manager software. To know whether the new version of the Central Manager is applicable to Linux appliances, see the specific version of Trellix Intrusion Prevention System release notes. The Linux based Central Manager upgrade file contains Central Manager software upgrade file bundled with MLOS upgrade patch. On executing the Linux based Central Manager upgrade file, the MLOS and the Linux based Central Manager software are upgraded simultaneously.
Before you begin
Your current Trellix IPS infrastructure meets all the requirements discussed in Reviewing the upgrade requirements.
If you want to upgrade the RAM on the Central Manager server, make sure you do that before you begin the Central Manager upgrade.
You have reviewed and understood the implications of the upgrade considerations discussed in Reviewing the Upgrade Considerations.
You have backed up your current Central Manager data. See Backing up Trellix IPS data.
You have the latest 10.1 Central Manager installable file at hand. You can download it from the Trellix Download Server. See Download the Manager/Central Manager executable for information.
You have your Central Manager database root password available.
You have stopped all third-party applications, such as Security Information and Event Management (SIEM) agents. It is especially important that you stop any such third-party application that communicates with the database. The Central Manager cannot upgrade the database if the database is actively communicating with another application.
Important
If this is an upgrade of a Central Manager in an MDR pair, switch the primary Central Manager to standby mode before you proceed. Make sure you are following the steps in MDR Central Manager upgrade.
Task
Stop the Trellix IPS Central Manager service.
In the Windows based Manager, right-click on the Central Manager icon at the bottom-right corner of your server and stop the service. Alternatively, go to Windows Control Panel → Administrative Tools → Services. Then right-click Trellix IPS Central Manager and select Stop.
In the Linux based Manager, log in to the Manager shell and stop the service using the manager stop command.
Stop the Trellix IPS Central Manager Watchdog service.
In the Windows based Manager, right-click on the Central Manager icon at the bottom-right corner of your server and stop the service. Alternatively, go to Windows Control Panel → Administrative Tools → Services. Then right-click Trellix IPS Central Manager Watchdog and select Stop.
In the Linux based Manager, log in to the Manager shell and stop the service using the watchdog stop command.
Note
Make sure the Trellix IPS Manager database service remains started.
In case of Windows based Manager, exit the Central Manager tray from the Windows Task Bar.
Close all open applications. (If any application is interacting with Trellix IPS, your installation might be unsuccessful.)
Move any saved report files from the server to some other location.
The reports are saved at <Central_Manager_Install_Dir>\App\REPORTS
Upgrade the Central Manager as described in Standalone Manager on windows operating system upgrade for Central Manager running on windows server and Standalone Manager on Linux operating system upgrade for Linux based Central Manager.
At the end of the upgrade process, you might be required to restart the server. If prompted, it is highly recommended that you restart the server.
Open the Central Manager in a browser.
Log in to the Central Manager.
You can verify the version in the Dashboard page.
To complete the Central Manager upgrade, you must upgrade to the latest 10.8.x Signature Set. See Upgrading the Signature Set for the Central Manager.