What Is the Best Next Step for an End-of-Support Switch?

A critical infrastructure switch is identified as end-of-support. Which of the following is the best next step to ensure security?

  1. Apply the latest patches and bug fixes.
  2. Decommission and replace the switch. Source Reference Answer
  3. Ensure the current firmware has no issues.
  4. Isolate the switch from the network.

Community Votes

B
100%

100% of anonymous learners picked answer B. Votes are pick records left by other test-takers — they are not the verified answer.

Community Insight

This question tests your understanding of end-of-support lifecycle risks; the common trap is choosing to apply patches when EOS means the vendor no longer provides patches or security fixes.

When a critical infrastructure switch reaches end-of-support (EOS), it no longer receives vendor security patches or updates, leaving known vulnerabilities exposed. The CompTIA N10-009 community consensus is that the best next step to ensure security is to decommission and replace the switch with a supported model.

A common wrong answer is A, 'Apply the latest patches and bug fixes,' because an end-of-support device will not receive any new patches from the vendor, so applying latest patches is impossible or ineffective. Another tempting distractor is D, 'Isolate the switch from the network,' which is only a temporary mitigation, not the best long-term security step.

Community Discussion (7 comments)

Hundo_954 👍 1 Selected: D
D. Isolate the switch from the network. The question specifically asks for the "best next step", which means we're looking for an immediate action rather than a long-term strategy.
HeatSquad77 👍 4 Selected: B
B. Decommission and replace the switch. Explanation: An end-of-support (EOS) device no longer receives security updates, patches, or vendor support. This makes it vulnerable to exploits and security risks, as there will be no fixes for known vulnerabilities. The most effective and secure approach in this situation is to decommission and replace the outdated switch with a supported model that will continue to receive security updates and patches.
Hayder81 👍 2 Selected: B
End-of-support (EOS) simply means that the vendor will no longer provide updates, patches, or technical support for the switch.
hopkey 👍 1 Selected: B
there are no more patches with EOS
b82faaf 👍 4 Selected: B
B. Decommission and replace the switch. End-of-support (EOS) simply means that the vendor will no longer provide updates, patches, or technical support for the switch.
ec80b38 👍 1 Selected: A
Its A the NEXT STEP has to be updating it not decomishing it
ec80b38 👍 1
im confused it wouldent be smart to pick B thats to much money for the company applying the patches is the move?

Comments & Corrections

No comments yet — spotted an error or have a note? Share it below.

Log in to comment, report an error, or add a note about this question.

Submitted for moderation before publishing. Keep it helpful and respectful.

Expert Analysis

Why the Answer Is Correct

An end-of-support (EOS) switch no longer receives security updates, patches, bug fixes, or vendor technical support. This means any known vulnerabilities in the device will remain permanently unpatched, making it a security risk, especially in critical infrastructure. Decommissioning and replacing the switch with a supported model is the definitive way to eliminate the risk and ensure ongoing security. The community consensus strongly supports B, with 85 votes and comments explaining that EOS means no more updates or support.

Why the Other Options Are Wrong

A is incorrect because an EOS device is not eligible for latest patches or bug fixes; the vendor has stopped releasing them. C is incorrect because ensuring current firmware has no issues does not address unpatched vulnerabilities that will never be fixed. D is incorrect because isolating the switch reduces immediate exposure but does not solve the problem; the device remains a security liability, and the question asks for the best next step to ensure security, which is replacement.

Community Comment Notes

Comment [1] (4 likes) explains that EOS means no security updates, patches, or vendor support, so the most effective approach is to decommission and replace. Comment [2] (4 likes) reinforces that EOS simply means the vendor will no longer provide updates, patches, or technical support. Comment [4] (1 like) argues for isolation as an immediate step, but the majority agrees that replacement is the best overall answer because isolation is only a temporary fix, not the final secure solution.

Official Reference

Exam Strategy

When you see 'end-of-support' or 'end-of-life' in a network security question, immediately think 'no more vendor patches or security fixes.' Choose the answer that removes or replaces the device rather than trying to patch or maintain it, and treat isolation as only a temporary control unless the question asks for an immediate mitigation only.

Related Analysis

Practice All N10-009 Questions

Access 100 questions with complete answers and detailed explanations.

View Full N10-009 Practice Test →

← Back to N10-009 Study Guide