The initial setup was really straightforward. It took maybe a day to complete the upgrade.
We spent some time getting the prerequisites ready, which took a bit longer, but the actual deployment was very fast.
So you just identify the network where you want to connect it and just plug it in. It only took half a day.
Therefore, the preparation took some time, but the deployment itself was quick.
Handling upgrades:
We have a practice where network device upgrades take priority - starting with the App Firewall and working our way through Web Proxy and so on. We avoid parallel endpoint upgrades as we've had challenges with those.
Trellix releases sandbox system updates yearly, which are fine. Those don't require downtime. However, operating system upgrades are a factor.
We review KBR details thoroughly. Three or four months ago, we went from 9.1.4 to 9.1.5, and we're evaluating a possible upgrade to version 10, perhaps next month.
Generally, we follow the n-1 version strategy. But if there are significant new features in a release, we might upgrade sooner. Overall, it's manageable – we upgrade frequently, and this particular solution hasn't caused downtime issues. Plus, we use DNS-based global [settings/configuration?], so downtime isn't a major concern.