CSM and ASA firmware 8.3

Can someone explain how to make CSM work with newer versions of the ASA firmware releases.
I have upgraded the version to 3.3.1 service pack 1 and under the target os version does not show anything for the 8.3 product line.
It also doesn't show anything newer that 8.0(3) when we are running 8.0(4) and 8.0(5) on some of our firewalls. The same applies to the 8.2 release kit - yes I know I need to align all the firewalls on the same platform for ease of use.
If I check in the ciscoworks side (CSM Tools -> Device OS Managment -> Software repositry) then the 8.0(5) firmware is visible...
Rather puzzled by this and not sure the best way to go.
Giles

Ok two questions then.
1. Is there a planned release date for the new version so we can upgrade the firewalls (will this be a free upgrade or a paid for one?)
2. Is it possible to upgrade the supported firmware in the 3.3.1 version i.e. have it understand 8.0.5 or 8.2.2 firmware levels?
Thanks
Giles

Similar Messages

  • Cisco NX-OS and ASA Software Checker

    Hi,
    I'm sorry if I post this in the wrong section.
    Currently we have a few Nexus switches and ASA Firewall in our network and I would like to check if there's any critical bug on the running OS/firmware on those devices.
    May I know if Cisco has page to verify on this?

    Bug Search Tool is what you want to use: 
    https://tools.cisco.com/bugsearch
    You can also ask in the forums for those platforms.
    This forum is to discuss specific bugs.

  • VPN with Cisco 877 and ASA 5505

    Hi Experts
    this is my scenario :
    remote clients ----> Internet----> Cisco 877---> ASA5505---->LAN
    i would like to allow remote users to connect to my LAN to chek their mails and work as they are in the office. Actually i have configured Cisco877 as VPN Server this is working Fine. but now i'm trying to use ASA with the router because it permit 25 connections at the same time.
    i'm connected to internet using a public ISDN IP.i have heard that i need a second IP adresse for ASA ! and the ASA must act as VPN server and the router as Client, is that right ?
    if i need to configure the link between the router and ASA how can i do it ? i can't find any document or example in the net :/
    please i need your support to make this dream real lol.
    i will poste my configuration step by step following your help.
    many thanks.

    ASA need public ip address that is sure and also ASA acts as vpn. Client server will be remote not router. For that you can use any Ethernet. Trying to make a remote VPN connection via the cisco client, authenticate against an RSA Secure Token server and provide the client an IP address via DHCP.

  • After updating to 10.6.8 and Thunderbolt Firmware June 27

    I am having problems running in clamshell mode with the Macbook Pro 2011 with i7 proc since updating os and firmware. I updated the OS a few days ago, but didn't hook up to monitor until today after updating the firmware. Shouldve disconnected mac external monitor and run firmware not in clamshell mode but I didn't. Can I roll back my system and intall the firmware again?
    The problem is that finder keeps crashing over and over again. But only in clamshell mode. Gonna try different connection techniques and such, but this seems to not be "fixing" itself.
    Or is this an issue with the firmware? I use an apple bluetooth keyboard, and a wired usb keyboard (the magic mouse would lag - hard to use, so disconnected.)
    Sorry, this pro has been in the shop too many times, and replaced once already. Getting frustrating. They just replaced the bluetooth radio because of the major mouse lag - did not repair the issue.

    Sorry guys for worthless topic, found bunch of same! So, I will try to down combo update and try than, should be fine they said.

  • Mavericks upgrade and Thunderbolt firmware update?

    Hi Guys,
    last week I installed mavericks to an external hard drive and am currently using my early 2011 MBP as a dual boot using Lion and Mavericks. The main reason is because my audio software is no longer being updated in Lion.
    My next purchase once I start using Mav full time, will either be a belkin thunderbolt dock or the akitio thunder dock. So I can run my hard drives, tv etc from the thunderbolt port.
    Problem is, I'm unsure if I can update my thunderbolt port in my machine, and both docks will only run on thunderbolt two.
    in about this mac my information is this:
    Model Identifier:     MacBookPro8,2
    Boot ROM Version:     MBP81.0047.B27
    SMC Version (system):     1.69f4
    If I install the firmware updates here:
    http://support.apple.com/kb/HT1237
    will I be able to update the firmware for my thunderbolt port from
    Firmware Version:     22.1
    Port Micro Firmware Version:     2.0.7
    to whatever the latest one is, because I saw a post saying the latest frimware version is 25.1
    any advice/ideas?
    Cheers Iain.

    I emailed Akitio and got this reply.
    "The AKiTiO Thunder Dock is using Thunderbolt 1 but it's compatible with  both Thunderbolt 1 and Thunderbolt 2, so you can use it on earlier  machines as well as the latest Thunderbolt 2 machines. However, the  minimum system requirement is Mac OS X 10.9, so you will need to use  Mavericks.
    Regarding the EFI and SMC firmware, it's good to use the latest version  and we usually recommend to update it as part of our troubleshooting  process. The page you provided is the one I would have suggested too, so  you can follow the links there and update your machine.
    Keep in mind that this will not upgrade your Thunderbolt port as you put it, it only updates the firmware of your system."

  • Hi, I have iPad 2, when I buy it it has old iOS. Then I update it now it has 5.1.1 iOS and modern firmware 4.12.01. After update my wifi is not working. Only searching for wifi. 3G working well. But wifi olso worked with old iOS. So what can do ? Pls

    Hi, I have iPad 2, when I buy it it has old iOS. Then I update it now it has 5.1.1 iOS and modern firmware 4.12.01. After update my wifi is not working. Only searching for wifi. 3G working well. But wifi olso worked with old iOS. So what can do ? Pls

    Look at iOS Troubleshooting Wi-Fi networks and connections  http://support.apple.com/kb/TS1398
    iPad: Issues connecting to Wi-Fi networks  http://support.apple.com/kb/ts3304
    iOS: Recommended settings for Wi-Fi routers and access points  http://support.apple.com/kb/HT4199
    Additional things to try.
    Try this first. Turn Off your iPad. Then turn Off (disconnect power cord for 30 seconds or longer) the wireless router & then back On. Now boot your iPad. Hopefully it will see the WiFi.
    Go to Settings>Wi-Fi and turn Off. Then while at Settings>Wi-Fi, turn back On and chose a Network.
    Change the channel on your wireless router (Auto or Channel 6 is best). Instructions at http://macintoshhowto.com/advanced/how-to-get-a-good-range-on-your-wireless-netw ork.html
    Another thing to try - Go into your router security settings and change from WEP to WPA with AES.
    How to Quickly Fix iPad 3 Wi-Fi Reception Problems
    http://osxdaily.com/2012/03/21/fix-new-ipad-3-wi-fi-reception-problems/
    If none of the above suggestions work, look at this link.
    iPad Wi-Fi Problems: Comprehensive List of Fixes
    http://appletoolbox.com/2010/04/ipad-wi-fi-problems-comprehensive-list-of-fixes/
    Fix iPad Wifi Connection and Signal Issues  http://www.youtube.com/watch?v=uwWtIG5jUxE
    Fix Slow WiFi Issue https://discussions.apple.com/thread/2398063?start=60&tstart=0
    Unable to Connect After iOS Update - saw this solution on another post.
    https://discussions.apple.com/thread/4010130
    Note - When troubleshooting wifi connection problems, don't hold your iPad by hand. There have been a few reports that holding the iPad by hand, seems to attenuate the wifi signal.
    ~~~~~~~~~~~~~~~
    If any of the above solutions work, please post back what solved your problem. It will help others with the same problem.
     Cheers, Tom

  • HT1218 3TB Timecapsule version 7.6.4 is CONSTANTLY losing WAN connection.  Comcast is our carrier, and I've ruled out the modem as it downloads at 30mbs consistently.  Want to try and update firmware of Timecapsule, but it will not display an "Update" ico

    3TB Timecapsule version 7.6.4 is CONSTANTLY losing WAN connection.  Comcast is our carrier, and I've ruled out the modem as it downloads at 30mbs consistently. 
    Want to try and update firmware of Timecapsule, but it will not display an "Update" icon.
    Grrrrr.....makes me miss my stupid PC set up as I could force it to do what I want!
    Intermittent connection screws up Netflix, VOIP phone, Amazon, Streaming music via Spotify/Pandora, general internet access.....whole family is ****** off.
    Any tips/tricks/ideas???
    dave

    Downgrade firmware to 7.6.1 .. as the latest is just lousy.
    It is easy to downgrade.. hold down the option key whilst you click the version number. in Macs.. lots of stuff is hidden behind an option key.
    I also strongly recommend a factory reset and use all SMB names.. not apple type names..
    ie TC name.. TCgen4
    Wireless name TCwifi (or give names to both bands.. TC24ghz and TC5ghz).
    That helps all the non-apple part of the world.. connect.
    Also Mavericks has now changed over to SMB as well. So even Mac is now windows networking.
    Generally these two things. .7.6.1 firmware and SMB names will fix it.. if not post again as is another step that is possible.. controlling the WAN speed of the TC.

  • VPN between IOS and ASA

    Hello my friends,
    I have been trying to establish VPN connectivity between IOS cisco router and ASA firewall over the internet - no luck so far. I think I am missing some important bit of the configuration.
    Here are my configuration commands:
    Router:
    crypto isakmp policy 20
    encryption 3des
    auth pre-share
    hash md5
    group 2
    crypto isakmp key XXX address 103.252.AAA.AAA
    crypto ipsec transform-set 3DES-MD5 esp-3des esp-md5-hmac
    crypto map MAP 5 ipsec-isakmp
    set transform 3DES-MD5
    match address VPN
    set peer 103.252.AAA.AAA
    ip access-list extended VPN
     permit ip 10.110.25.0 0.0.0.255 10.10.0.0 0.0.255.255
     permit icmp 10.110.25.0 0.0.0.255 10.10.0.0 0.0.255.255
    ASA commands:
    sysopt connection permit-vpn
    crypto isakmp policy 10
    authentication pre-share
    encryption 3des
    hash md5
    tunnel-group 203.167.BBB.BBB type ipsec-l2l
    tunnel-group 203.167.BBB.BBB ipsec-attributes
    pre-shared-key XXX
    access-list LIST permit ip 10.10.0.0 255.255.0.0 10.110.25.0 255.255.255.0
    access-list LIST permit icmp 10.10.0.0 255.255.0.0 10.110.25.0 255.255.255.0
    crypto ipsec transform-set 3DES-MD5 esp-3des esp-md5-hmac
    crypto map VPN 10 set transform-set 3DES-MD5
    crypto map VPN 10 match address LIST
    crypto map VPN 10 set peer 203.167.BBB.BBB
    crypto map VPN interface outside
    Do you have any idea what is wrong? Thank you a lot in advance.

    I managed to get this from the show crypto ipsec sa
         local crypto endpt.: 203.167.BBB.BBB, remote crypto endpt.: 103.252.AAA.AAA
         path mtu 1500, ip mtu 1500, ip mtu idb GigabitEthernet0/1
         current outbound spi: 0x0(0)
         PFS (Y/N): N, DH group: none
         inbound esp sas:
         inbound ah sas:
         inbound pcp sas:
         outbound esp sas:
         outbound ah sas:
         outbound pcp sas:
         local crypto endpt.: 203.167.BBB.BBB, remote crypto endpt.: 103.252.AAA.AAA
         path mtu 1500, ip mtu 1500, ip mtu idb GigabitEthernet0/1
         current outbound spi: 0x0(0)
         PFS (Y/N): N, DH group: none
    And  details from show crypto session detail
    Interface: GigabitEthernet0/1
    Session status: DOWN
    Peer: 103.252.AAA.AAA port 500 fvrf: (none) ivrf: (none)
          Desc: (none)
          Phase1_id: (none)
      IPSEC FLOW: permit 1 10.110.25.0/255.255.255.0 10.10.0.0/255.255.0.0
            Active SAs: 0, origin: crypto map
            Inbound:  #pkts dec'ed 0 drop 0 life (KB/Sec) 0/0
            Outbound: #pkts enc'ed 0 drop 0 life (KB/Sec) 0/0

  • Cisco CSM and WCS on same server

    Hi,
    Currently we are running Cisco CSM and Cisco WCS applications on different servers.
    Please let me know can it possible to install Cisco CSM and Cisco WCS on one server.
    Regards,

    As per their datasheet, both CSM and WCS support VMware or can run as virtual servers. So it should be possible to implement both as virtual servers and run on the same physical server.

  • What are the latest versions of RAID Admin and RAID Firmware

    As of 10/18/06, what are the latest versions of RAID Admin and RAID Firmware?
    Currently I have RAID Admin 1.5.
    RAID Admin reports my RAID's firmware is version 1.3.2/1.26a.
    Am I safe?
    Do I have the latest?
    Thanks.
    XServe G5    

    You do not have the latest firmware. The latest firmware is version 1.5.
    You should upgrade. Make sure you have a current backup and then select "update firmware" from within RAID admin. It will then ask you for the location of the firmware update -- it should be in /Application/Utilities/Xserve RAID Update.

  • Should I update BIOS and hardware firmware when installing XP?

    I will soon be receiving a ThinkPad R61 and I plan to downgrade the OS to Windows XP by following this guide to the letter.  However, one part of the guide is unclear to me.
    It states that updating the BIOS and hardware firmware are optional.  How do I decide whether I should do this?  What are the consequences of not doing it?  How badly can I damage my computer by doing it incorrectly -- can I destroy it?
    Thanks! 

    As it says in the guide many times.
    "THE BIOS AND THE HARD DRIVE FIRMWARE UPDATE ARE
    NOT NECESSARY. IF YOU ARE WARY OF BIOS UPDATES, THEN I SUGGEST YOU SKIP
    THOSE TWO UPDATES AND CARRY ON WITH THE GUIDE."
    The BIOS updates sometimes fix errors that may or may not affect you. You would have to read the txt file associated with it to determine if you want to do it or not.  Some folks have to have the latest and greatest and some people have issues that are fixed in the BIOS update.
    A BIOS update gone wrong will render your Thinkpad completely useless.
    I think that if it is not broken, don't fix it.
    Be sure to make the recovery disc set before doing anything else.
    T60 2623-D7U, 3 GB Ram. Dual boot XP and Linux Mint.
    T400 2765-T7U Windows 7
    Registered Linux User #160145
    FYI: I am not employed by Lenovo

  • BGP and ASA NAT

    Hello Everyone,
    I have a need to multihome out two MAN links to the same ISP. The two links will connect via an ISR and will participate in an eBGP adjacency. On the internal side, iBGP will be used to create the alternate default route to the ISP. Each of the ISR’s downstream ports participates on the same Ethernet subnet. On the same subnet/broadcast domain, there are two ASA5510 appliances that will use HSRP to advertise the public IPv4 addresses and will NAT them into the private network.
    My question is, since the ASAs do not participate in BGP, and since we are going to NAT the traffic eliminating the need to use a route map to inject the default route into the downstream EIGRP network, would I simply build a static default route in the ASAs out the upsteam interfaces?  My initial thought is to not worry about recursive lookups because they are connected via Ethernet.
    ip route 0.0.0.0 0.0.0.0 fa0/0; and so on.
    I’ve attached a simple topology for reference.
    Thanks…Matt

    Yes Jcarvaja, HSRP is not a feature on the ASAs, and yes HSRP is difficult to setup natively to support active/active load balancing on any device. That's not really the point though is it. FHRP's are typically used for distribution switches and finely tuned to access layer 2 and layer 3 convergence, unless using GLBP (and even then should be considered). My mistake for using the term HSRP and thank you for pointing it out.
    As for the iBGP links, they represent the same subnet as I mentioned. The cat switches are there to facilitate physical restraints as each pair of ISRs and ASAs are two miles apart. Since the ASA's are performing NAT, they don't really participate in the BGP network and there is no need or capability to inject the BGP default route into the EIGRP network. They will participate in the downstream EIGRP network. If the MAN connection on one ISR goes down, then the iBGP route to the Internet will be graduated. I guess I could have indicated on the drawing that these were all a part of the same subnet. 
    How do I configure the ASA's static default route? Wouldn't I be able to inject  a static default route in each ASA using the ASA's outside interface when using active/active? If I have to, I could see if we can use EIGRP on the network upstream of the ASAs if there is no other way of doing this, but this is not preferred.
    Any help you can provide is greatly appreciated. 
    Thank you...Matt

  • Download all X10i and X10a firmwares

    Arkedk over at XDA Developers has added all X10i and X10a firmwares...
    So far all 93 X10i firmwares have been added... Just make sure you know which one applies to your X10i or your region.
    In the case of X10a only 1 firmware has been posted (X10a_3.0.1.G.0.75_AMERICA-US GENERIC 1233-8200). However, according to Arkedk all the remaining X10a firmwares will be added as soon as they have been decrypted!
    Here's the link:
    http://forum.xda-developers.com/showthread.php?t=936733
    Be sure to hit the thanks button!!
    All these files can be flashed using the latest version of Flashtool... (here http://forum.xda-developers.com/showthread.php?t=920746)
    And if you have any doubts about flashing your X10, just know that the process is very simple...  Just follow the steps posted by Uliwooly above and you are done!!! And don't worry, as far as I know it is almost (if not) impossible to brick an X10!
    PD. Thanks to Arkedk and Uliwooly for their efforts and great work!

    Thank you for this information. It will certainly be useful for many people.

  • ARP table clash with checkpoint and ASA firewal issue

    We are migrating DMZ segments from a checkpoint to a ASA 5585 firewall that we had connected to the same segments as the Checkpoint except on different IP addresses then the checkpoint interfaces. The Checkpoint interfaces are the default gateway for the servers. When I implemented the NATs entries below we experienced an arp table clash with the checkpoint and ASA firewall on the local segments that caused a application outage. What was determined was that the checkpoint firewall was showing that all the IP addresses in particular on vlan130 segment was associating the MAC address of the ASA interface instead of the real sever MAC address. I need assistance understanding the reason why the Checkpoint was pointing the ARP entries for many different address on VLAN130 to the ASA firewall MAC?
    nat (any,internet-outside) source static any any destination static isxh2007_Xlate_167.9.6.21 isxh2007_10.121.201.86 unidirectional description To match chkpt NAT rule #5
    nat (VLAN130,internet-outside) source static ISX_EDI_Hosts isxh2008_Xlat_167.9.6.22 unidirectional
    nat (any,internet-outside) source static Private-Addresses ISX_OUTBOUND_NAT_167.9.6.1 destination static external_167.9.x external_167.9.x unidirectional
    nat (any,any) source static Mars-Internal-All Mars-Internal-All destination static Private-Addresses Private-Addresses
    nat (internet-dmz,internet-outside) source static acs-vmww2419.mars-ad.net acs-vmww2419_xlate_167.9.6.23
    nat (internet-dmz,internet-outside) source static acs_vmww2420 acs_vmww2420_xlate_167.9.6.24
    nat (internet-dmz,internet-outside) source static pass_reset_internal_10.121.201.50 pass_reset_external_167.9.6.25
    nat (internet-dmz,internet-outside) source static HE-Portal-poland_10.121.120.10 ext_HE-Portal-poland_167.9.6.26
    nat (any,internet-outside) source dynamic any ISX_OUTBOUND_NAT_167.9.6.1
    isxasa04/wwy-legacy# sho interface
    Interface TenGigabitEthernet0/8.129 "core-inside", is down, line protocol is down
    MAC address 442b.0330.aba2, MTU 1500
    IP address 10.121.129.X, subnet mask 255.255.255.0
    Traffic Statistics for "core-inside":
    241633 packets input, 12094352 bytes
    44788 packets output, 3032584 bytes
    109732 packets dropped
    Interface TenGigabitEthernet0/9.130 "VLAN130", is down, line protocol is down
    MAC address 442b.0330.aba3, MTU 1500
    IP address 10.121.130.X, subnet mask 255.255.255.0
    Traffic Statistics for "VLAN130":
    1264203 packets input, 136452168 bytes
    326080 packets output, 69216516 bytes
    794035 packets dropped
    Interface TenGigabitEthernet0/9.136 "VLAN136", is down, line protocol is down
    MAC address 442b.0330.aba3, MTU 1500
    IP address 10.121.136.X, subnet mask 255.255.255.0
    Traffic Statistics for "VLAN136":
    374547 packets input, 23696109 bytes
    51186 packets output, 3324895 bytes
    173500 packets dropped
    Interface GigabitEthernet0/1 "internet-outside", is down, line protocol is down
    MAC address 442b.0330.ab9b, MTU 1500
    IP address 167.9.6.X, subnet mask 255.255.255.0
    Traffic Statistics for "internet-outside":
    352158 packets input, 17245425 bytes
    76888 packets output, 3872904 bytes
    12255 packets dropped
    Interface GigabitEthernet0/2 "internet-dmz", is down, line protocol is down
    MAC address 442b.0330.ab9c, MTU 1500
    IP address 10.121.201.X, subnet mask 255.255.255.0
    Traffic Statistics for "internet-dmz":
    237795 packets input, 12460108 bytes
    40787 packets output, 2775684 bytes
    27378 packets dropped
    Interface GigabitEthernet0/4 "VLAN140", is down, line protocol is down
    MAC address 442b.0330.ab9e, MTU 1500
    IP address 10.121.140.X, subnet mask 255.255.255.0
    Traffic Statistics for "VLAN140":
    386931 packets input, 18807725 bytes
    48936 packets output, 3319712 bytes
    114417 packets dropped
    We crosschecked MAC addresses and this is what we found:
    Checkpoint ARP table:
    10.121.130.101 44:2b:3:30:ab:a3 3285
    ASA ARP table:
    isxasa04/wwy-legacy# sh arp | i 10.121.130.101
    VLAN130 10.121.130.101 001a.4b06.dd45 10525
    Server real address provided by processing:
    0x001A4B06DD45
    When we saw that the Checkpoints had a different/wrong entry we shut down all the physical ports on the new ASAs (except for failover and management);
    Kevin cleared the ARP table on the Checkpoints and problem was solved;
    Later I saw this:
    isxasa04# sh int | i MAC
    MAC address 442b.0330.ab9a, MTU not set
    MAC address 442b.0330.ab9b, MTU not set
    MAC address 442b.0330.ab9c, MTU not set
    MAC address 442b.0330.ab9d, MTU 1500
    MAC address 442b.0330.ab9e, MTU not set
    MAC address 442b.0330.ab9f, MTU not set
    MAC address 442b.0330.aba0, MTU not set
    MAC address 442b.0330.aba1, MTU not set
    MAC address 442b.0330.ab98, MTU not set
    MAC address 442b.0330.ab99, MTU not set
    MAC address 442b.0330.aba2, MTU not set
    MAC address 442b.0330.aba3, MTU not set

    The Asa is proxy Arping those macs. Turn off proxy arp and put in static arp entries until you completely shut down the checkpoint.
    Sent from Cisco Technical Support iPad App

  • HP LaserJet CP1025nw, toggle RFU and upgrade firmware

    Hi everyone,
    I'm trying to upgrade the firmware of a HP LaserJet CP1025nw printer from version  20100510 to 20150114 through this file provided on the product page.  I've downloaded  the LJCP1020_FW_Upgrade_Security-20150114.exe and when I try to run it it says that I need RFU enabled othewise install will fail.  Then I've looked around to find how to toggle RFU and since the web panel (by typing in the address bar the IP of the printer) didn't contained that option, I ended up at this HP help page which was explaining how to do it.
    In particular, since my moel doesn't have a screen, this is the procedure described:
    I've tried to press Go and Yellow togheter, I've tried pressing first yellow then Go and viceversa and I tried all of these many times, but I didn't managed to get the step 1 "Ready and Attention leds blinking togheter" and therefore not even the color leds telling me if RFU is enabled or not.
     I can't get the shown procedure to work and therefore I can't check and toggle RFU and I don't want to try update the firmware because I fear that if it fails (like the warning says) the printer will break or become unusable because of the incompletely upgraded firmware (I really don't know how the firmware behaves in case of error, I don't want a bricked printer).
    So, how to solve this?

    Gemini02 wrote:
    Hi @ANewUser, I see that you are concerned about continuing to run the firmware update on the printer, since the error message to turn off the RFU notification came up. I would like to help you. I have seen this message come up with other models, which also don't have a option for the settings to turn off the RFU and the firmware updated properly. If you are still in warranty and are concerned that it might cause issues with the printer, call into HP tech support and have them walk you through it over the phone. You can call technical support at 800-474-6836. If you live outside the US/Canada Region, please click the link below to get the support number for your region. http://www8.hp.com/us/en/contact-hp/ww-phone-assist.html If you aren't having any issues with the printer, then you don't need to run the firmware update. If you appreciate my efforts, please click the Thumbs up button below.
    Have a nice day!
    Thank You.
    Hi, Gemini02 Well I've tried contacting the support about this issue but they said my printer is out of warranty so they would fee me 25€  (about 30$)  to assist me because they couldn't solve the problem with the details I provided (which are the same I provided you plus the serial number and the product code and they told me that paid assistance might not be able to solve the problem, so I didn't took the risk.
    I'm updating the firmware because of course we have problems on the printer, so I can't skip it.
    Anyway, since I can't count on assistance, I could follow your advice and try to update the firmware anyway since you say you've seen models which don't have RFU at all and update succeeded, but in my case, if you check my screenshot, the official hp website has a guide to check RFU for my model (HP LaserJet CP1025nw) through go & yellow button, so I assume that RFU is available on my model and I can't get it to work. I see this problem happened to others ("instructions to check via go & yellow button did not perform as indicated." says the user).   But what if firmware update fails?
    I'm at work, I can't just try to update and hope the printer will not brick and become unusable. I need to be sure if firmware updater software HP provides is safe in case of failure or not.
    I don't want to get to the point that in the middle of firmware installing I get some "Firmware update failed!" and the printer is broken (because there's half of the firmware on it)
    That said,  how should I proceed?

Maybe you are looking for