
If you still have Cisco Aironet 1702i access points (PID AIR-CAP1702I-A-K9) mounted in ceilings, they are now past every Cisco lifecycle milestone that matters. The 1702i reached its Last Day of Support on April 30, 2024. From that date forward Cisco provides no software fixes, no security patches, and no TAC or RMA hardware replacement for this model. The radios still pass traffic, which is exactly why these units quietly persist in production long after they should have been retired. This guide explains what the end-of-life dates actually mean for an operating fleet, why the recommended Aironet 1832i is a real upgrade and not a like-for-like swap, and how to plan a clean refresh to current Wi-Fi 6 hardware.
What the Aironet 1702i actually was
The 1702i (AIR-CAP1702I-A-K9, the -A regulatory domain for the US) is a dual-band 802.11ac Wave 1 indoor access point with internal antennas. It runs a 3x3 MIMO radio with two spatial streams (3x3:2SS), delivering a 5 GHz PHY rate up to roughly 867 Mbps and 2.4 GHz 802.11n alongside it. It has a single Gigabit Ethernet uplink and operates as a lightweight, controller-based AP under AireOS on a Wireless LAN Controller (a 2504, 5508/5520, 3504, or vWLC). Critically, it is a Wave 1 design: single-user MIMO only, no downlink MU-MIMO, no OFDMA. For 2014-era device densities it was a solid 802.11ac AP. For today's client counts it is a bottleneck.
Why acting now matters
The dangerous part of an EoL access point is not that it stops working. It is that it keeps working while the support floor disappears beneath it. Three concrete exposures stack up after LDoS:
- No PSIRT security patches. When a new wireless or AireOS vulnerability is disclosed, the 1702i will not receive a fixed image. The last maintenance build is frozen at the 2020 software cutoff. Any CVE affecting that code path on this hardware is permanent.
- No TAC or RMA. A failed unit cannot be opened as a support case or swapped under contract. Your only recovery is a spare you bought before LDoS or a secondary-market replacement of the same dead-end model.
- Audit and compliance exposure. Frameworks that federal, DoD, SLED, and healthcare buyers live under (FedRAMP, CMMC, HIPAA Security Rule, PCI DSS, and CISA directives) expect supported, patchable infrastructure. An unsupported AP that cannot be patched is a finding waiting to happen, and 'the vendor no longer ships fixes' is not a defensible remediation plan.
There is also a software trap. Modern WLC code (Catalyst 9800 controllers running IOS-XE 17.x) has dropped support for older AireOS-era APs. As you modernize the controller side, the 1702i is left stranded on legacy controllers you also want to retire. The AP and the controller age out together.
What each milestone means in practice
- End of Sale (2019-04-30): the last day Cisco accepted new orders. Everything after this is consuming the support tail.
- End of Software Maintenance (2020-04-29): the last day Cisco released maintenance/bug-fix images. After this, even non-security defects go unfixed.
- Last Day of Support / LDoS (2024-04-30): the hard wall. No TAC, no RMA, no patches of any kind. The hardware is on its own.
The recommended replacement: Aironet 1832i (and the Wi-Fi 6 path beyond it)
Cisco's EoL bulletin names the Aironet 1832i (AIR-AP1832I-A-K9) as the direct replacement for the 1702i. The 1832i is an 802.11ac Wave 2 access point, and the jump from Wave 1 to Wave 2 is the meaningful part. Where it improves on the 1702i:
- Downlink MU-MIMO (Wave 2): the 1832i can transmit to multiple clients simultaneously instead of servicing one client at a time. In a room full of phones and laptops, aggregate throughput and airtime efficiency climb sharply versus the single-user 1702i.
- Wider channels and higher PHY: 80 MHz channel support and Wave 2 modulation push real-world 5 GHz performance well past what the Wave 1 1702i delivered, even with the same 3x3:2SS antenna geometry.
- Mobility Express option: the 1832i can run a virtual controller on the AP itself (controllerless), which suits small sites that no longer want a dedicated hardware WLC. It also still operates as a standard lightweight AP on a 9800/AireOS controller.
- Same deployment footprint: internal antennas, single-AP mount, and 802.3af PoE for full operation in most modes, so the physical install is largely a one-for-one swap.
Moving to Catalyst 9100 Wi-Fi 6 adds OFDMA (sub-dividing channels so many small-frame clients share airtime efficiently), uplink and downlink MU-MIMO, BSS coloring for denser RF reuse, Target Wake Time for IoT battery life, and far higher concurrent client capacity per radio. A C9130AXI is 4x4:4SS with dual 5 GHz capability and a multigigabit (mGig) uplink, so it can exceed a 1 Gbps Ethernet ceiling that the 1702i and 1832i both share. On the management side, Catalyst 9800 controllers and Cisco DNA Center / Catalyst Center give you the modern operating model the AireOS WLC era cannot.
Licensing: the model has changed
The 1702i lived in the AireOS world of right-to-use AP licenses on the controller. Current Catalyst wireless uses Cisco Smart Licensing with DNA/Catalyst subscriptions (Essentials or Advantage tiers) tracked through your Smart Account. Budget for the subscription term, not just the AP, and confirm your Smart Account is provisioned before deployment so APs join and license cleanly. This is a procurement line item that did not exist on the 1702i and is the most common thing teams forget.
A practical migration plan
1. Assessment and inventory
Pull an exact count of AIR-CAP1702I-A-K9 units and their controller association. Capture per-AP location, mount type, PoE source (switch port and PoE standard), VLAN/SSID mappings, RF profiles, and current AireOS/controller version. Note any 1702i co-existing with other EoL APs so you size one combined refresh rather than several.
2. Controller and license transition
Decide the target controller now: a Catalyst 9800 (9800-CL virtual, 9800-40/80, or 9800-L) for centralized control, or Mobility Express if you stay on 1832i at a small site. Stand up the new controller in parallel, provision the Smart Account, and stage Smart Licensing before any AP is moved.
3. Config and feature parity
Rebuild WLAN profiles, security policies (WPA2/WPA3, 802.1X, RADIUS), AAA, FlexConnect, and RF profiles on the new controller. Validate WPA3 and Enhanced Open if your security posture requires them, since these are areas where new hardware unlocks capability the 1702i could not offer. Run a config diff against the legacy controller so nothing silently drops.
4. Physical: power, uplinks, and cabling
The 1832i runs on 802.3af for full operation in typical modes, so existing PoE switching usually carries over. If you choose Catalyst 9100 with mGig and PoE+/UPOE, verify switch port PoE budget and consider Cat6/6A uplinks so you do not re-cap throughput at the wire. Confirm the switch port PoE class per AP before cutover, not after.
5. Phased cutover
Migrate by zone, not all at once. Swap a representative area, run a post-install RF survey to validate coverage and roaming, confirm client onboarding across device types, then proceed floor by floor. Keep the legacy controller live until each zone is validated so rollback is a port move, not a rebuild.
6. Secure decommission
Decommissioned 1702i units still hold configuration, keys, and certificates. Factory-reset and wipe each AP before disposal, remove them from controller and inventory/NMS records, and for federal and healthcare environments follow your media-sanitization and asset-disposal policy (NIST SP 800-88 style handling) with documented chain of custody.
Procurement notes for government and enterprise buyers
Source replacements through an authorized Cisco partner. For US federal, DoD, and SLED buyers, confirm TAA compliance and country-of-origin documentation up front, validate the units carry genuine Cisco serials and clean Smart Licensing entitlement, and plan for current lead times on Catalyst wireless rather than assuming stock. Government Purchase Card (GPC) orders, contract vehicles, and quote-to-PO timelines all benefit from engaging the partner early so licensing, TAA paperwork, and delivery line up with your fiscal calendar. Buying gray-market or used 1702i units to extend a dead platform only deepens the audit and support problem.
Ready to scope the swap? Review the full milestone detail for this model on the AIR-CAP1702I-A-K9 EoL page, browse current Wi-Fi 6 access points in our catalog, and see the broader migration picture on the Cisco EoL hub. When you are ready, get a refresh quote and we will size the 1832i or Catalyst 9100 fleet, licensing, and PoE to your sites.
Frequently asked questions
Is the Cisco Aironet 1702i (AIR-CAP1702I-A-K9) still supported?
No. The 1702i reached its Last Day of Support on April 30, 2024. Cisco no longer provides security patches, software fixes, TAC support, or RMA hardware replacement for this model. The access points still pass traffic, but they are unpatchable and unsupported, which creates real audit and compliance exposure.
What is the direct replacement for the Aironet 1702i?
Cisco's EoL bulletin names the Aironet 1832i (AIR-AP1832I-A-K9), an 802.11ac Wave 2 access point, as the direct replacement. It adds downlink MU-MIMO, 80 MHz channels, and an optional on-AP Mobility Express controller while keeping a similar physical and PoE footprint. Buyers doing a long-term refresh in 2026 should also evaluate the Catalyst 9100 Wi-Fi 6 family for a longer support runway.
What's the difference between the 1702i (Wave 1) and the 1832i (Wave 2)?
Both are 3x3:2SS dual-band APs, but the 1702i is Wave 1 (single-user MIMO, no MU-MIMO, no OFDMA) while the 1832i is Wave 2 with downlink MU-MIMO and 80 MHz channel support. In high-density client environments the 1832i serves multiple clients simultaneously, improving aggregate throughput and airtime efficiency well beyond the single-user 1702i.
Does migrating off the 1702i change Cisco licensing?
Yes. The 1702i used AireOS right-to-use AP licenses on a Wireless LAN Controller. Current Catalyst wireless (Catalyst 9800 controllers, Catalyst 9100 APs) uses Cisco Smart Licensing with DNA/Catalyst Essentials or Advantage subscriptions tracked in a Smart Account. Provision the Smart Account and stage licensing before deployment so APs join and license cleanly.
Will my existing PoE switches power the replacement APs?
Generally yes for the Aironet 1832i, which runs on 802.3af for full operation in typical modes. If you move to Catalyst 9100 models with multigigabit (mGig) uplinks, verify switch PoE budget (PoE+/UPOE) and consider Cat6/6A cabling so the uplink doesn't cap throughput. Confirm per-port PoE class before cutover.
Can I just buy more 1702i units to extend the deployment?
It's strongly discouraged. The 1702i is past every lifecycle milestone, so any units you buy are unsupported and unpatchable on arrival, and they're often gray-market. For government and healthcare buyers this deepens the audit problem rather than solving it. Refresh to supported hardware from an authorized Cisco partner instead.
Uniqcli Team
The Uniqcli Team is an authorized Cisco partner specializing in Catalyst wireless, switching, datacenter fabric, licensing, and managed services for U.S. federal, state, local, and education customers. We scope Cisco bills of materials, validate procurement paths (TAA, FIPS, contract vehicles), and deliver design, deployment, and managed operations.
Ready to scope your Cisco build?
Build a quoteMore from Resources
View all →
GuidesArista SDN vs Cisco ACI: Data Center Fabric Automation Compared
Cisco ACI and Arista CloudVision automate the data center from opposite directions — one is a policy fabric that enforces intent in hardware, the other is a management overlay on a standards-based underlay. Here's how the philosophies, lock-in, and team skills actually differ.
July 12, 2026 · 6 min read
GuidesCisco ASA vs Palo Alto: What You're Really Comparing
ASA holdouts weighing a jump to Palo Alto need an honest starting point: classic Cisco ASA and current Palo Alto hardware are a generation apart. Here's the real decision, and what a move actually costs.
July 12, 2026 · 5 min read
GuidesCisco DNA Essentials vs Advantage: Choosing the Right Subscription Tier
Cisco DNA Essentials vs Advantage is a separate decision from the perpetual Network Essentials/Advantage choice on the switch itself. Here's how the two axes fit together, and where the retired Premier tier went.
July 12, 2026 · 7 min read