All ePO data is effectively historical.
However ePO is primarily a tool for managing McAfee software, not general network management.
We would not be logging user's IP address changes specifically in the first place, so I think such a query would not be possible.
If a threat event was generated and stored in ePO for that user, that would be a way to get the information as it would be part of the threat event.
True, but such an event is not tied to a change in host IP in any way.
i don't think it could be considered a reliable indicator for identifying a change in host IP.