Introduction¶
This document describes the software release and support lifecycle for Wirepas software products. It covers which versions Wirepas supports at any given time, how long support lasts, and what support means in practice. Its purpose is to ensure predictable upgrades, a strong security posture, and transparent communication.
The binding terms for version support, security fix obligations, and extended support options are set out in the Software Support & Lifecycle Policy appendix of the Wirepas Software License Agreement.
Vulnerability reporting and disclosure are covered in the Vulnerability Disclosure Policy and Reporting.
Products¶
This policy applies to:
Wirepas NMS — cloud or on-premises network management backend
Wirepas Mesh firmware — embedded firmware running on IoT field devices
Wirepas Linux Gateway — Linux-based gateway reference software (open-source, Apache 2.0)
End-of-Support dates for current releases are published on the Wirepas Products Support Schedule and updated at each new release.
Versioning¶
All products follow semantic versioning in the form MAJOR.MINOR.PATCH:
MAJOR: Incompatible or breaking changes
MINOR: Backward-compatible new functionality
PATCH: Backward-compatible bug fixes
Example: 1.4.2
Supported Product Versions¶
Each product has at most two supported versions at any time: the Current release (N) and, during a Transition Period following a new release, the Prior release (N-1).
For the Current release (N), Wirepas provides:
Security fixes for confirmed vulnerabilities
Bug fixes and stability improvements
Technical support according to the applicable support agreement
For the Prior release (N-1), Wirepas provides vulnerability monitoring and reporting throughout the Transition Period. Security fixes are issued primarily for the Current release; a fix for N-1 may also be issued where Wirepas determines, on grounds of urgency and technical viability, that an N-1 fix is warranted.
Only the latest PATCH release of each supported version is maintained. Customers must stay on the current patch level to benefit from security fix coverage.
New features are introduced only in minor or major releases and are not backported to older minor versions.
Wirepas Mesh¶
Wirepas Mesh is embedded firmware on devices. OTA update campaigns across large device populations require lead time, which is reflected in the longer Transition Period.
Version |
Duration |
What Wirepas provides |
|---|---|---|
Current Release (N) |
Until next release (N+1) |
Full support: vulnerability monitoring and reporting, security fixes, maintenance updates, technical support (security fixes subject to Silicon Vendor SDK availability). |
Prior Release (N-1) |
Minimum 12 months after GA of N |
Vulnerability monitoring and reporting only. Security fixes for N-1 at Wirepas discretion. |
End-of-Support (Release N-2 or earlier) |
Not applicable |
No updates or support. End-of-Support date applies. |
Each major Wirepas Mesh release is supported for a minimum of 12 months from GA, provided the Silicon Vendor SDK remains under active security maintenance.
Wirepas NMS¶
Wirepas NMS is a backend package deployable in the cloud or on-premises. It is updatable independently of field hardware.
Version |
Duration |
What Wirepas provides |
|---|---|---|
Current Release (N) |
Until next release (N+1) |
Full support: vulnerability monitoring and reporting, security fixes, maintenance updates, technical support. |
Prior Release (N-1) |
6 months after GA of N |
Vulnerability monitoring and reporting only. Security fixes for N-1 at Wirepas discretion. |
End-of-Support (Release N-2 or earlier) |
Not applicable |
No updates or support. End-of-Support date applies. |
Wirepas Linux Gateway¶
Wirepas Linux Gateway is a reference software implementation available as open-source on GitHub (Apache 2.0). It bridges Wirepas Mesh networks to the Wirepas NMS or a customer backend.
Version |
Duration |
What Wirepas provides |
|---|---|---|
Current Release (N) |
Until next release |
Full support: vulnerability monitoring and reporting, security fixes, maintenance updates, technical support. |
Prior Release (N-1) |
6 months after GA of N |
Vulnerability monitoring and reporting only. Security fixes for N-1 at Wirepas discretion. |
End-of-Support (Release N-2 or earlier) |
Not applicable |
No updates or support. End-of-Support date applies. |
Customers who integrate the Linux Gateway into products placed on the EU market carry their own CRA obligations as manufacturer of the downstream product.
End of Support (EOS) Communications¶
End-of-Support notices will be communicated in the Wirepas Developer Portal.
Wirepas Products Support Schedule lists the support status for each version with its End-of-Support date.
After End-of-Support, Wirepas provides no security updates, bug fixes, or technical support. Continued use is at the customer’s own risk.
Regulatory and Compliance Scope¶
Security and vulnerability remediation obligations apply only to supported versions of Wirepas software products. Versions that have reached End-of-Support are explicitly excluded from maintenance and security commitments.
Customer Responsibility¶
Customers are responsible for:
Monitoring lifecycle communications
Planning and executing upgrades within the supported timeframe
Ensuring their deployments run supported versions
Policy Updates¶
Wirepas may update this document periodically. The current version is published on this page.
Terms & Definitions¶
Term |
Definition |
|---|---|
Supported Version |
A release of a Wirepas Product for which Wirepas provides Security Fixes and maintenance. Current Supported Versions are published in the Wirepas Developer Portal. |
Current Release (N) |
The most recent Generally Available (GA) Feature Release within the current release series, identified by the second version number. Example: if the current series is 5.x.y and the latest feature release is 5.2.y, then N = 5.2. Receives full support including Security Fixes and feature maintenance. |
Prior Release (N-1) |
The immediately preceding Feature Release within the same release series. Example: if N = 5.2.y, then N-1 = 5.1.y. Subject to vulnerability monitoring and reporting during the Transition Period. Security Fix patches are issued primarily for the Current Release (N); a patch may also be issued for N-1 where Wirepas determines, on grounds of urgency and technical viability, that an N-1 patch is warranted. |
Transition Period |
The period following GA of Feature Release N during which release N-1 remains a Supported Version. Duration: 6 months for NMS; 12 months for Wirepas Mesh. |
End-of-Support (EoS) Date |
The date after which Wirepas has no obligation to monitor, provide bug or Security Fixes, or support a specific release. |
Security Fix |
A patch, update, or documented workaround issued by Wirepas to address a confirmed vulnerability with Wirepas-assessed CVSS >= 4.0 in a Supported Version. |
CVSS |
Common Vulnerability Scoring System. Primary basis for Wirepas vulnerability severity classification. |
SBOM |
Software Bill of Materials: a machine-readable inventory of software components and dependencies, delivered in CycloneDX JSON, SPDX format, or similar industry standard format. |
Revision History¶
Version |
Date |
Summary |
|---|---|---|
1 |
2026-09-10 |
Initial version. |
Confidentiality: public
Legal Notice¶
Use of this document is strictly subject to Wirepas’ Terms of Use and Legal Notice.
Copyright © 2026 Wirepas Oy