Trellix recommends that you regularly monitor for maintenance releases and new versions of the Manager software. To know whether the new version of the Manager is applicable to Linux appliances, see the specific version of Trellix Intrusion Prevention System release notes. The Linux based Manager upgrade file contains Manager software upgrade file bundled with MLOS upgrade patch. On executing the Linux based Manager upgrade file, the MLOS and the Linux based Manager application are upgraded simultaneously.
Pre-requisites:
- Make sure you have a Linux machine installed in your network.
- You must download the Manager upgrade file (setup.bin) from the
Download Server and save it in the Linux machine, If you are upgrading from the following Linux based Manager versions:
- 10.1.7.4
- 9.2.9.53 or lower
- 9.1.7.77.11 or lower
Note
Make a note of the location where the upgrade file is saved in the Linux machine.
- You must download the Manager upgrade file (setup.bin) from the
Download Server and save it in the Linux based Manager server when using
install the setup present on local machine upgrade in the following Linux based Manager versions:
- 10.1.7.7 or higher
- 9.2.9.55 or higher
- 9.1.7.80 or higher
Note
Make a note of the location where the upgrade file is saved in the Manager server.
- You must download the Manager upgrade file (setup.bin) from the
Download Server and save it in the Linux machine, when using
scp setup from remote machine and install upgrade in the following Linux based Manager versions:
- 10.1.7.7or higher
- 9.2.9.55 or higher
- 9.1.7.80 or higher
Note
Make a note of the location where the upgrade file is saved in the Linux machine.
Scenario 1: If you are upgrading from Manager versions 9.1.7.77.11 or lower, 9.2.9.53 or lower, or 10.1.7.4 to 10.1.7.7 and higher.
- Log on to the restricted shell of Manager Appliance using default username and password.
- Stop the Watchdog service by executing watchdog stop command.
- Stop the Manager service by executing manager stop command.
- Execute the following code block to upgrade the Manager.
upgrade <Username> <Linux_machine_ip> <File_path_of_the_upgrade_file>Following are the input parameters required for the restricted shell command:
Parameter Description Username Login username for the Linux machine where the Manager upgrade file is saved. Linux_machine_ip IP address of Linux machine where you have saved the upgrade file. File_path_of_the_upgrade_file File path for the upgrade file in the Linux machine. - After executing the above command block, the Manager instance prompts a question:
Type yes and press Enter.Are you sure you want to continue connecting (yes/no)? - You are prompted to provide the Linux machine password.
admin@w.x.y.z's password:Type password for the user account and press Enter.
- You are prompted to provide your Linux based Manager shell password.
[sudo] password for admin:Type password for the Manager. By default, the password for Manager shell is MLOSnsmApp for Manager and MLOSnscmApp for Central Manager.
- When you are prompted to provide the MariaDB root password, type your database root password and press Enter. By default, the MariaDB root password is root123.
- After completing the upgrade procedure, check the Manager version using show managerVersion command to ensure successful upgrade.
- Reboot the Linux based Manager by executing reboot command.
Note
The default Manager root directory for App, MariaDB, and Solr will be moved from /opt/NetworkSecurityManager to /opt/IPS Manager. In such scenarios, you will be prompted with this directory change in the console.
Scenario 2: If you are upgrading from Manager versions 9.1.7.80 or higher, 9.2.9.55 or higher, or 10.1.7.7 or higher.
- Log on to the restricted shell of Manager Appliance using default username and password.
- Stop the Watchdog service by executing watchdog stop command.
- Stop the Manager service by executing manager stop command.
- Execute the following command to upgrade the Manager.
upgrade - After executing the above command, the Manager instance prompts the following options:
Choose one of the below options 1: scp setup from remote machine and install 2: install the setup present on local machine Input [1] or [2] : <Select the upgrade method>Note
If you select 1: scp setup from remote machine and install, you must have the Linux based Manager upgrade file saved in a remote Linux machine.
Note
If you select 2: install the setup present on local machine, you must have the Linux based Manager upgrade file saved in the Linux based Manager itself.
- If you select 1, continue with the following steps, else skip to step 7.
- You are prompted to provide your SCP server IP address:
Enter the IP of the remote machine: <remote_machine_ip>Type the SCP server IP address and press Enter.
- You are prompted to provide your username for the SCP server.
Enter the user of the remote machine: <remote_machine_user>Type your username for the SCP server and press Enter.
- You are prompted to provide the filepath of Manager upgrade file in the SCP server.
Enter the setup file's path as on remote machine: <Filepath of the upgrade file in the remote machine>Type filepath for the upgrade file in SCP server and press Enter.
- When you are prompted to provide the MariaDB root password, type your database root password and press Enter. By default, the MariaDB root password is root123.
- After completing the upgrade procedure, check the Manager version using show managerVersion command to ensure successful upgrade.
- Reboot the Linux based Manager by executing reboot command.
- You are prompted to provide your SCP server IP address:
- If you select 2, do the following.
- You are prompted to provide filepath of the upgrade file in the Linux based Manager server:
Enter the path to the setup.bin file: <upgrade_file_filepath>Type the filepath of the upgrade file in the Linux based Manager server and press Enter.
- When you are prompted to provide the MariaDB root password, type your database root password and press Enter. By default, the MariaDB root password is root123.
- After completing the upgrade procedure, check the Manager version using show managerVersion command to ensure successful upgrade.
- Reboot the Linux based Manager by executing reboot command.
- You are prompted to provide filepath of the upgrade file in the Linux based Manager server:
Note
The default Manager root directory for App, MariaDB, and Solr will be moved from /opt/NetworkSecurityManager to /opt/IPS Manager. In such scenarios, you will be prompted with this directory change in the console.