Thursday, February 8, 2018

Security Officer “recommend” constant upgrades

So we have a security office that was hired about a year ago and recently he’s been constantly pressuring us to “always have latest” firmware. We use mostly use cisco 800 routers (70+ routers, similar for cisco switches (they are internal only)), and right now we are on 15.4.3 m6. I’m not against upgrading but for example 15.4.3 m9 was released couple days ago and he’s already “recommending for upgrade”. I’ve tried explaining them that this isn’t like windows updates. Current m6 is stable with no issues. We normally upgrade if a special feature is needed or bugs or critical security issues.

Have you guys had to deal with something like this?



No comments:

Post a Comment