I built an F5 QKview scanner for CISA ED 26-01
2 days ago
- #F5 BIG-IP
- #CISA Compliance
- #Cybersecurity
- CISA Emergency Directive 26-01 mandates agencies to identify and report all F5 BIG-IP instances by October 29, 2025 (summary) and December 3, 2025 (detailed inventory).
- Nabla introduces a new F5 BIG-IP scanner for CISA ED 26-01 compliance, providing dynamic assessment via qkview files, extracting firmware versions, and visualizing reachability with Mermaid diagrams.
- The scanner generates structured evidence compatible with FedRAMP, CMMC, and ED 26-01 reporting workflows, ensuring verifiable and reproducible data.
- Key features include deterministic analysis (no AI guesswork), cryptographic signing, and timestamped outputs for audit readiness.
- Deadlines: Summary due by October 29, 2025, and detailed inventory by December 3, 2025. Early scanning is recommended for validation.