CISA Orders Federal Agencies to Replace End-of-Life Edge Networking Gear

TL;DR Summary
CISA's Binding Operational Directive 26-02 requires Federal Civilian Executive Branch agencies to identify and decommission end-of-life edge devices (routers, firewalls, switches) that no longer receive updates. Agencies must inventory EOS devices within 3 months, decommission EOS gear within 12 months, and replace identified devices within 18 months with vendor-supported equipment, with continuous discovery inventories to be in place within 24 months. The mandate aims to reduce exposure to exploits targeting outdated edge devices; it applies to FCEB agencies, with encouragement for others to follow.
Topics:business#binding-operational-directive-26-02#cisa#edge-devices#end-of-life#federal-agencies#security
- CISA orders federal agencies to replace end-of-life edge devices BleepingComputer
- CISA tells agencies to identify, upgrade unsupported edge devices Federal News Network
- CISA: Remove EOL edge kit before cybercriminals strike theregister.com
- CISA Orders Removal of Unsupported Edge Devices to Reduce Federal Network Risk The Hacker News
- Defend the Edge: The Critical Importance of Edge Device Security CISA (.gov)
Reading Insights
Total Reads
1
Unique Readers
16
Time Saved
3 min
vs 4 min read
Condensed
87%
671 → 84 words
Want the full story? Read the original article
Read on BleepingComputer