Before you begin
Release 10.1 and later are compatible with signature set version 10.8.x and above. If you are upgrading from any 9.x version, before proceeding with the upgrade, make sure to have internet connectivity to the Update Server. If there is no internet connectivity, download the latest signature set from the Update Server before initializing the upgrade or download the signature set soon after the upgrade. In such a scenario, a warning message appears for incompatible signature set version during the installation process.
Task
If you have not already done so, download the most recent 10.8.x signature set from the Trellix IPS Update Server into the Central Manager.
In the Central Manager, select Manager → <Admin Domain Name> → Trellix IPS Protection Status. Then, select Signature Sets tab. The Signature Sets tab is displayed. Select Download Latest Signature Set option. See the Trellix Intrusion Prevention System Product Guide or the Online Help for the steps.
If you created Trellix IPS custom attacks prior to upgrade, verify that those attacks are present in the Custom Attack Editor.
Select Manager → Troubleshooting → System Faults to see if Incompatible custom attack fault is raised.
This fault could be because of Custom Snort Rules that contain unsupported PCRE constructs.
Signature Set upgrade is now complete for the Central Manager. For a list of currently supported protocols, see KnowledgeBase article KB61036 in the Trellix Support Portal .
What is the next step?
If you have a Central Manager MDR, refer to section MDR Central Manager upgrade.
If you have upgraded both primary and secondary or if you have only a standalone Central Manager, upgrade the corresponding Managers.