1. Where can I find the initial slides that were presented on this subject?

Please see Unsupported OS Remediation Phases 2 and 3.

2025-01-29 at 14.36.37 Screenshot from 2025-01 Security Liaisons Meeting.pdf@2x.png

2. When will an unsupported OS be blocked from using the network?

Each Wednesday, automation sends out a notification e-mail to each unit’s Security Liaisons (and to any additional email addresses provided by the unit).

The following Wednesday, any assets running an unsupported OS will be blocked.

3. How will the blocks be performed?

GOIS starts at the top of the list below and chooses the first viable option for each asset:

  1. Using Cortex XDR’s “isolate” feature
    1. This has two primary advantages: GOIS can easily remove the block, and the end user actually receives a pop-up notification
  2. BigFix-based blocking
  3. Workspace ONE blocking
  4. Network-based blocks
    1. Wireless
    2. Wired
    3. Virtual NIC
    4. VPN

4. Are BYOD devices affected by unsupported OS blocks?

No, BYOD devices are not be in GOIS’s asset inventory, so they will not be part of the blocks.

See also: AI6. Why do I see a personally owned device in the GSD?

5. How do I request an exception so I am not blocked?

Refer to the Unsupported OS Exceptions page on the Global Security Dashboard.

6. How do I buy extended support for my operating system?