Upgrade paths for Manager software versions
This section shows you different scenarios of deployment from which you can upgrade/migrate to the latest version of the Manager.
Note
You can log in to the Trellix Download Server using your Grant ID to verify the file hash for the software build.
Note
Windows-based Manager is not CC certified.
Linux based Manager:
Linux based Manager upgrade paths
Manager version | Recommended Manager version |
|---|---|
10.1.19.17, 10.1.19.30, 10.1.19.33, 10.1.19.38, 10.1.19.47, 10.1.19.53, 10.1.19.56, 10.1.19.56.8 | 11.1.19.81 |
11.1.19.11, 11.1.19.27, 11.1.19.46, 11.1.19.61 | 11.1.19.81 |
Important
After the upgrade, make sure to reboot the Linux-based Manager.
Note
Trellix recommends to keep
SSH keepaliveconfiguration enabled in your SSH client (for example, Bitvise) to avoid session termination in the Linux-based Manager and maintain a stable connection during the Manager upgrade process.
Upgrade paths for Sensor software versions
This section shows you different scenarios of deployment from which you can upgrade to the latest version of the Sensors.
Sensor upgrade paths
Sensor model | Current Sensor software (CC compliant) | Upgrade path to latest CC compliant Sensor software |
|---|---|---|
NS9500, NS7350, NS7250, NS7150 | 10.1.17.15, 10.1.17.26, 10.1.17.36, 10.1.17.50, 10.1.17.63, 10.1.17.75, 10.1.17.91, 10.1.17.96 | 11.1.17.87 |
11.1.17.13, 11.1.17.29, 11.1.17.46, 11.1.17.63 | 11.1.17.87 | |
NS9300, NS9200, NS9100, NS5200, NS5100, NS3200, NS3100 | 10.1.17.15, 10.1.17.26, 10.1.17.36, 10.1.17.47, 10.1.17.63, 10.1.17.75, 10.1.17.91, 10.1.17.99 | 11.1.17.87 |
11.1.17.14, 11.1.17.29, 11.1.17.46, 11.1.17.63 | 11.1.17.87 | |
NS7600 | 11.1.17.14, 11.1.17.31, 11.1.17.46, 11.1.17.63 | 11.1.17.87 |
NS7500 | 10.1.17.15, 10.1.17.36, 10.1.17.47, 10.1.17.63, 10.1.17.75, 10.1.17.91, 10.1.17.99 | 11.1.17.87 |
11.1.17.14, 11.1.17.29, 11.1.17.46, 11.1.17.63 | 11.1.17.87 | |
NS3600 | 11.1.17.14, 11.1.17.29, 11.1.17.46, 11.1.17.63 | 11.1.17.87 |
Note
To upgrade the Sensor to the 11.1.17.13/11.1.17.14 version, contact Trellix support.
The following applies for FIPS software running on NS-series Sensors:
The user must synchronize a symmetric key, specified from the CLI using the
set fips sharedkeycommand, on both the Primary and Secondary Sensors of an NS9300. The Sensor bootloaders are automatically upgraded to allow verification of subsequent image downloads signed with SHA256.