- Understanding Cisco TrustSec
- Configuring the Cisco TrustSec Solution
- Configuring Identities and Connections
- Configuring SGACL Policies
- TrustSec SGACL High Availability
- SGT Exchange Protocol over TCP (SXP)
- VRF-Aware SGT
- IP-Prefix and SGT-Based SXP Filtering
- SGT Inline Tagging
- Configuring Cisco TrustSec Reflector and Caching
- Configuring Endpoint Admission Control
- Cisco TrustSec Command Summary
- Considerations for Catalyst 3000 and 2000 Series Switches and Wireless LAN Controller 5700 Series
- Considerations for Catalyst 4500 Series Switches
- Considerations for Catalyst 6500 Series Switches
- Glossary
Preface
Organization
This guide includes the following chapters and appendixes:
|
|
---|---|
Describes the elements and processes that create the Cisco TrustSec network. |
|
Provides an overview of configuration tasks required to implement a Cisco TrustSec Network. |
|
Provides NDAC and TrustSec seed device configuration procedures. |
|
Chapter 4 "Configuring SGT Exchange Protocol over TCP (SXP) and Layer 3 Transport" |
Provides SGT over TCP Protocol (SXP) configuration procedures. |
Provides Security Group ACL configuration procedures from the switch CLI. |
|
Provides 802.1X, MAB, and WebAuth configuration procedures for a TrustSec context. |
|
Provides a list of Cisco TrustSec CLI commands with brief descriptions. |
|
Describes constraints, limitations, or considerations pertaining to TrustSec implementation of Catalyst 3750 and 3560 Series Switches. |
|
Describes constraints, limitations, or considerations pertaining to TrustSec implementation of Catalyst 4500 Series Switches. |
|
Describes constraints, limitations, or considerations pertaining to TrustSec implementation of Catalyst 6500 Series Switches. |
Conventions
This document uses the following conventions:

Note Means reader take note.

Tip Means the following information will help you solve a problem.



Timesaver Means the described action saves time. You can save time by performing the action described in the paragraph.
![]() |
Warning ![]() |
Obtaining Documentation and Submitting a Service Request
For information on obtaining documentation, submitting a service request, and gathering additional information, see the monthly What's New in Cisco Product Documentation, which also lists all new and revised Cisco technical documentation, at:
http://www.cisco.com/en/US/docs/general/whatsnew/whatsnew.html
Subscribe to the What's New in Cisco Product Documentation as a Really Simple Syndication (RSS) feed and set content to be delivered directly to your desktop using a reader application. The RSS feeds are a free service and Cisco currently supports RSS Version 2.0.