[c-nsp] Re-licensing secondhand Cisco equipment

Nick Hilliard nick at foobar.org
Tue Jan 7 18:13:36 EST 2014


On 07/01/2014 22:54, Chris Marget wrote:
> FWIW, it seems that the security fixes might be available for free, so long
> as Cisco PSIRT recognizes a vulnerability in a particular bit of software.
> ...But the document describing that process suggests calling TAC, which
> doesn't usually go well if the serial number of the device isn't covered by
> a support contract...
> http://www.cisco.com/web/about/security/psirt/security_vulnerability_policy.html

This works and I've done it.  There are two main limitations: first, the
caller needs to be the registered owner of the device.  Second, the fix
will usually be from the same or nearest train for the box.  No support
contract is needed.

Nick




More information about the cisco-nsp mailing list