Cisco Cyber Vision Classic UI Administration Guide, Release 5.6.0

PDF

Cisco Cyber Vision Classic UI Administration Guide, Release 5.6.0

ISE-API

Want to summarize with AI?

Log in

Introduces the use of Security Group Tags (SGTs) and describes how to map groups to SGTs in Cisco Cyber Vision, synchronize mappings with Cisco ISE via API, and enforce TrustSec policies across the network.


Security Group Tags (SGTs) are 16-bit labels assigned to devices or groups of devices to define their roles and associated security policies within a network.

Using Cisco Cyber Vision, you can map static subnets, network-based groups, or user-defined groups directly to SGTs. A secure, active Cisco Identity Services Engine (ISE) API connection enables the automatic synchronization of these mappings from Cisco Cyber Vision to Cisco ISE. This integration allows you to effectively enforce TrustSec policies across your network.

To create IP-to-SGT mappings based on group definitions, choose Admin > Integrations > ISE – API from the main menu.

For further details on IP-to-SGT mapping, refer to the Integrate Cisco Cyber Vision with Cisco Identity Services Engine (ISE) manual.