惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

cs.CL updates on arXiv.org
cs.CL updates on arXiv.org
博客园_首页
GbyAI
GbyAI
罗磊的独立博客
Y
Y Combinator Blog
宝玉的分享
宝玉的分享
人人都是产品经理
人人都是产品经理
U
Unit 42
V
Visual Studio Blog
F
Fortinet All Blogs
小众软件
小众软件
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
L
LangChain Blog
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
Engineering at Meta
Engineering at Meta
aimingoo的专栏
aimingoo的专栏
The Cloudflare Blog
T
Tor Project blog
Martin Fowler
Martin Fowler
K
Kaspersky official blog
Scott Helme
Scott Helme
cs.AI updates on arXiv.org
cs.AI updates on arXiv.org
D
DataBreaches.Net
博客园 - Franky
阮一峰的网络日志
阮一峰的网络日志
博客园 - 【当耐特】
P
Proofpoint News Feed
N
Netflix TechBlog - Medium
美团技术团队
S
Secure Thoughts
C
Cisco Blogs
M
MIT News - Artificial intelligence
L
Lohrmann on Cybersecurity
T
Tenable Blog
N
News and Events Feed by Topic
Threat Intelligence Blog | Flashpoint
Threat Intelligence Blog | Flashpoint
C
Check Point Blog
C
Cyber Attacks, Cyber Crime and Cyber Security
Spread Privacy
Spread Privacy
S
Security @ Cisco Blogs
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
Microsoft Security Blog
Microsoft Security Blog
A
Arctic Wolf
Hacker News - Newest:
Hacker News - Newest: "LLM"
H
Hacker News: Front Page
T
Threat Research - Cisco Blogs
Simon Willison's Weblog
Simon Willison's Weblog
cs.CV updates on arXiv.org
cs.CV updates on arXiv.org
O
OpenAI News
V
Vulnerabilities – Threatpost

Cisco Blogs

Cisco Live 2026: Bringing the Future of Customer Experience to Las Vegas Edge opportunity for service providers: Turn infrastructure into new services MRC and SRv6: How Foundational Networking Innovations Are Enabling the Next Generation of AI Supercomputers The SMB Marketing Reset: Winning Customer Trust in a Digital-First Economy Inside the SOC: AI-powered DNS defense against ransomware Our Path Forward Securing the Federal Digital Experience with Cisco ThousandEyes for Government Cisco at ONUG Dallas 2026: Securing the AI Data Center in the Agentic Era Cisco and Red Hat are powering intelligent core to edge: Red Hat Summit insights Building the Capabilities That Win: How Cisco Partners Can Lead in the SMB & Mid-Market Era How Two Hours Felt Bigger Than My To-Do List Announcing Foundry Security Spec Ace the CCIE Collaboration Lab: Success Tips from a TAC Engineer Turned CCIE Protecting Agents with Cisco AI Defense and Google Agent Development Kit Powering an Inclusive Future: Your guide to the Purpose Pavilion at Cisco Live Las Vegas The Infrastructure Behind the Mission: SOF Week 2026 Cisco Networking App Marketplace Partners at Cisco Live 2026 Beyond the Pilot: Building the Clinical Data Fabric for the Agentic Era Benchmarking scale-out AI fabrics with Cisco N9000 + AMD Pensando™ Pollara 400 NICs Month of Developer Productivity: Build and Forget The race to autonomous transport networks: A new study Lean IT, future-ready: How to save time and simplify wireless management with AI Reading Between the Pixels: Failure Modes in Vision Language Models Biochar’s triple win: Healthier soils, improved crops, and decarbonization Designing a Proactive Customer Journey Modernize your data center operations with Cisco Nexus Dashboard Why your automation stack needs Cisco Agentic Workflows Try Cisco AI Defense Explorer Edition in this hands-on lab From Bandwidth to Intelligence: How Cisco is Powering AI-Ready Networks Spotlight on digital transformation | FY25 Purpose Report Galaxy Mode is live: A limited-time look at what your Cisco AI Assistant and AgenticOps can already do Securing the Agentic Workforce: Cisco Announces Intent to Acquire Astrix Security Digging Deeper: The Future of Mining with Automation and Ultra-Reliable Wireless Voices from the field: Helping farmers build resilient local economies across rural America Built like a startup, scaled like Cisco: Transforming data center cooling for the AI era Defining Model Provenance: A Constitution for AI Supply Chain Safety and Security Introducing Model Provenance Kit: Know Where Your AI Models Come From Security Insights: A Threat-First View for the Platform That Enforces Access How I Turned My Curiosity into a Patent From Strategy to Architecture: How Cisco is Building a Quantum-Safe Future Maximizing Managed Security Services: A Strategic Guide to Optimizing Your Portfolio (Part 1 of 2) Simplify access control in five easy steps Trust: Why security is your next growth engine Cisco IQ is generally available. Here’s what that actually means. From Vision to Reality: Intelligence in Action with Cisco IQ How connectivity is shaping the future of surgical care The power of your network: Solving a physical security incident on Vision portal 5 signs your data center is holding your AI strategy back Stop Overthinking OT Security: The Total Cost of Ownership and Being Smart with Refreshes AI-Ready, Simpler, and More Secure WAN: Cisco SD-WAN Innovations Scaling the digital future: Why AI and skills investments matter for business and society Expanding our Product Organization Recap Scaling the Future: Reddit AMA on Network Automation at Scale Bringing Professional-Level Skills to Cisco Networking Academy Announcing Cisco Availability in Google Cloud Marketplace: A New Path to Scalable, Partner-Led Growth The Innovation Paradox: How We Reduced Incidents by 25% While Deploying Faster Funding the AI-ready data center: Why flexibility wins The switch that quantum networking has been waiting for From a Message I Couldn’t Believe to a Stage I’ll Never Forget The Hidden Bottleneck Slowing Down Manufacturing Transformation 30 Years as a CCIE: Why Certifications Matter in the AI Era Securing Enterprise AI: Cisco AI Defense Expands to Google Cloud How ThousandEyes Closed the Cloud Visibility Gap by Solving It Themselves First Energy Will Define the Scale of AI Introducing the AI Agent Security Scanner for IDEs: Verify Your Agents Stop Overthinking OT Security: People, Process and Technology Powering the Future of Research: Join Cisco at NLIT 2026 Building the Digital Foundation for a Smarter West Lincoln Memorial Hospital How Cisco built an AI-RRM that maximizes your wireless solution From Automation to Autonomy: Cisco and Rockwell Power a New Era for Manufacturing Unlocking the Future of Fan Engagement: The Power of VisionEDGE Find Yourself in the Future: AI Is the New Baseline—Here’s How to Build Your Skills One Day with Our Customers: Driving better outcomes through customer centricity What It Really Takes to Build an AI-First Workforce From Connectivity to Security: How E80 Future-proofed its AGV Operations with Cisco The Infrastructure of a Floating City: AIDA Cruises’ CX-Led Digital Transformation Scaling your network for AI without a forklift upgrade Why modern networks are moving DDoS defense to the edge Evolve IP Media to AI-Driven Media Fabrics: Future-Proof Broadcast with Cisco and NVIDIA Cisco and Generation are scaling AI-powered pathways to employment Reading Between the Pixels: Assessing Prompt Injection Attack Success in Images Lean IT, future-ready: Why Wi-Fi is your AI growth strategy Cisco Modeling Labs: Bringing the Network Digital Twin to Life AI on the Factory Floor: Why Manufacturing Requires a New Architecture with Cisco Unified Edge Designing for What’s Next: Securing AI-Scale Infrastructure Without Compromise Scaling the Future: Join Our Reddit AMA on Network Automation at Scale 5 wireless trends retail IT teams can’t ignore in 2026 Can your infrastructure management tools do that? Sustainability 101: Let’s talk about energy efficiency From Chai Breaks to Checkpoints: A Day at Cisco Bengaluru Preparing for Post-Quantum Cryptography: The Secure Firewall Roadmap Non-Obvious Patterns in Building Enterprise AI Assistants Making AI Trustworthy and Observable in Real-Time: Cisco Announces Intent to Acquire Galileo A simpler path to unified, AI-ready network operations Cisco Celebrates The Smart Industry Industrial Transformation Award Winners Mobile World Congress 2026: AI-powered Network Security Powering MWC Barcelona – Building a Unified SOC and NOC with Splunk in Record Time How New Data Streams Transformed Cisco Store’s Decision-Making AI-powered Network Security at the Mobile World Congress 2026 SNOC Inside the Mobile World Congress 2026 SOC: Detecting Shadow Traffic with Firepower 6100
Understanding CISA BOD 26-02: Mitigating Risk from End-of-Support Edge Devices
Corey Schult · 2026-05-04 · via Cisco Blogs

Co-authored by Roland Holloway


On February 5, 2026, the Cybersecurity and Infrastructure Security Agency (CISA) issued Binding Operational Directive (BOD) 26-02, a critical mandate aimed at Federal Civilian Executive Branch (FCEB) agencies, with strong recommendations for all organizations, to address the risks posed by End-of-Support (EOS) edge devices. These devices—such as firewalls, routers, switches, VPN gateways, and load balancers—are essential gatekeepers of network security but become vulnerable once they reach EOS status, as they no longer receive security patches. This creates significant security risks, making them prime targets for sophisticated threat actors, including nation-state adversaries.
 

Why the Directive Matters Now 

Edge devices are internet-facing and often integrated with identity management systems, making them high-value targets. The directive responds to widespread exploitation campaigns, such as those researched by Cisco Talos (e.g., ArcaneDoor), where attackers exploit EOS devices as permanent “open doors” to infiltrate internal networks. The directive aims to eliminate this “technical debt” of legacy hardware to strengthen cybersecurity defenses. 

Key Compliance Deadlines 

CISA’s directive sets multiple deadlines on a  two-year timeline for federal agencies: 

  • Immediate: Update vendor-supported edge devices running EOS software to vendor-supported software versions.
  • May 5, 2026 (3 Months): Complete an inventory of all EOS edge devices on CISA’s “EOS Edge Device List.”
  • February 5, 2027 (12 Months): Begin removing and replacing devices that reached EOS before the directive was issued. Inventory devices that have become EOS or will become EOS in the succeeding 12-month period and report to CISA.
  • August 5, 2027 (18 Months): Complete the removal of all identified EOS edge devices and report to CISA.
  • February 5, 2028 (24 Months): Establish continuous discovery processes for EOS devices and develop a mature lifecycle management program that results in the decommissioning of devices before or as they reach EOS. 

How Cisco FedRAMP Solutions Help Address EOS Device Challenges 

Cisco’s FedRAMP-authorized Security Cloud for Government portfolio offers comprehensive cloud-native solutions designed to help government agencies meet the requirements of BOD 26-02 by mitigating risks associated with EOS edge devices. These solutions significantly reduce reliance on hardware that can reach EOS, simplify lifecycle management, and enhance an organization’s overall security posture. 

Cisco Security Cloud Control for Government 

  • Cloud-Delivered Unified Management: Security Cloud Control provides centralized visibility, policy enforcement, and automation across hybrid and multicloud environments. It unifies management for all Cisco Secure Firewall form factors—physical, virtual, and cloud-based— without requiring firewall management through on-premises hardware that can become EOS.
  • Real-Time Visibility and Automation: Agencies gain real-time insights into network activity, security threats, and policy events, enabling rapid identification and remediation of issues.
  • Scalability and Compliance: Delivered as a SaaS platform with FedRAMP Moderate authorization in process, it scales to evolving federal infrastructure needs while ensuring compliance with federal security standards such as FedRAMP, FIPS 140, and NIST frameworks.
  • Simplified Operations: Automates firewall provisioning, object updates, and fleet management, reducing operational overhead and configuration errors. 

Cisco Secure Access for Government 

  • Cloud-Native Security Service Edge (SSE): This FedRAMP Moderate-authorized solution delivers a unified Secure Service Edge platform that protects users, data, and applications across devices, locations, and clouds without requiring hardware firewalls that can become EOS.
  • Comprehensive Security Features: Includes integrated Zero Trust Network Access (ZTNA), Secure Web Gateway (SWG), Cloud Access Security Broker (CASB), Data Loss Prevention (DLP), Firewall as a Service (FWaaS), and VPN as a Service (VPNaaS).
  • Adaptive and AI-Driven Protection: Powered by Cisco Talos threat intelligence, it provides real-time detection and prevention of threats, including DNS-layer security aligned with CISA’s Protective DNS guidance.
  • Operational Simplicity: Offers a single console and policy engine for centralized management, reducing complexity and administrative overhead.
  • User Experience: Provides seamless, high-performance access to all applications with a unified client combining ZTNA and VPN capabilities, enhancing workforce productivity without compromising security. 

Additional Cisco FedRAMP Solutions Supporting EOS Mitigation 

  • Cisco Meraki for Government: A cloud-managed networking platform with FedRAMP Moderate authorization that simplifies network management and future-proofs infrastructure by eliminating dependency on legacy hardware.
  • Cisco Duo Federal: Multi-factor authentication solution compliant with federal standards, enhancing secure access without hardware constraints.
  • Cisco Secure Firewall for Government: Advanced threat protection tailored for federal environments, integrated with cloud management to avoid EOS hardware risks.
  • Cisco SD-WAN for Government: Optimizes wide area networks with secure, cloud-integrated networking, reducing reliance on traditional hardware. 

Conclusion 

CISA’s BOD 26-02 underscores the urgent need for federal agencies to eliminate the security risks posed by EOS edge devices. Cisco’s FedRAMP-authorized Security Cloud for Government portfolio offers cloud-native, scalable, and solutions that reduce or remove the dependency on hardware prone to EOS challenges. Cisco Security Cloud Control and Secure Access for Government to simplify security management, enhance threat protection, and assist agencies with their efforts to meet the directive’s compliance deadlines. 

Looking Ahead: Get Ready for Blog 2 – Modernizing Government Networks with CISA BOD 26-02 Updates 

As we wrap up our deep dive into CISA BOD 26-02 and how Cisco’s FedRAMP Security Cloud solutions help mitigate risks from End-of-Support edge devices, stay tuned for the next installment in this series.

Following the upgrade of End-of-Support edge devices, blog 2 will highlight how government networks can be transformed by leveraging innovative capabilities and powerful features that many organizations may not yet be fully utilizing. This next installment will showcase how embracing these advancements can drive greater network visibility, continuous discovery, and enhanced security—empowering agencies to modernize their infrastructure and stay ahead in today’s evolving threat landscape. Get ready to transform your network into a powerful sensor that delivers actionable intelligence and supports a zero-trust security posture. Blog 2 will equip you with the knowledge to harness Cisco Security features and modernize your government network infrastructure for the future. 

References Document Links:  

  1. Modernized Security for Government Agencies – Cisco Blogs
  2. Cisco Secure Access for Government At-a-Glance – Cisco  
  3. Cisco Security Cloud Control for Government At-a-Glance
  4. Advancing government security with Cisco’s Security Service Edge  
  5. Cisco Achieves Milestone FedRAMP Authorization for Meraki Cloud Networking Platform 

Authors

Discover Cisco for industries

Learn how Cisco is connecting and protecting industries in the AI era. Review our industries 

Explore our industry solutions

Utilize Cisco’s Portfolio Explorer to discover the use cases and architectures that are making a difference in your industry. Explore our portfolio