You can download, install, and boot a new Trellix OS software image on a Manager or Central Manager appliance running version 11.1.7.154 or later.
Important
Trellix recommends that you regularly monitor for maintenance releases and new versions of the Manager software. To know whether the new version of the Manager is applicable to Linux appliances, see the specific version of Trellix Intrusion Prevention System release notes. The Linux based Manager upgrade file contains Manager software upgrade file bundled with Trellix OS upgrade patch. On executing the Linux based Manager upgrade file, the Trellix OS and the Linux based Manager application are upgraded simultaneously.
Prerequisites:
Verify your current system configuration and ensure you have network connectivity to the target SCP server.
Back up your database before upgrading.
Steps:
Download and install the software image:
Use the command-line interface to fetch and verify the required upgrade file.
Fetch the image file from your secure server by entering the following command:
image fetch scp://<username>:<password>@<local_server_ip>/<path>/<file_name.img>
Example:
ipsm # image fetch scp://admin:admin123@10.10.10.10/tftpboot/NSM/11.1.7.168/image-ipsm.img 100.0% [##################################################################################################################################]
Install the downloaded image.
image install <file_name.img>
Example:
ipsm # image install image-ipsm.img Step 1 of 4: Verify Image 100.0% [##################################################################################################################################] Step 2 of 4: Uncompress Image 100.0% [##################################################################################################################################] Step 3 of 4: Create Filesystems 100.0% [##################################################################################################################################] Step 4 of 4: Extract Image 100.0% [##################################################################################################################################]
Important
When upgrading the Central Manager, use the
image-ipscm.imgfile.
Verify the installed images:
Ensure that the upgrade image is successfully extracted to an available partition.
Display the partition availability details:
show images
Locate the partition containing the target version and verify that it appears under images available to be installed.
Configure the boot target and reload the system:
Set the partition containing your new software image as the primary target for the next boot sequence.
Specify the next boot location using one of the following methods:
Set the target sequentially to the next available partition:
image boot next
Specify a targeted location explicitly:
image boot location
Verify that your selection is applied successfully:
show images
Confirm that the Next boot partition points to your target upgrade location.
Reboot the appliance to complete the upgrade process:
reload
When prompted to save configuration modifications, enter
yes.
The system saves your configuration data and reboots into the upgraded software version.