- Preface
- New and Changed Information for this Release
- Overview
- Configuring Multiple Spanning Tree
- Configuring Per VLAN Rapid Spanning Tree Plus
- Configuring VLAN Trunking Protocol
- Managing MAC Addresses
- Managing Virtual Device Contexts
- Managing Ports
- Configuring SVI
- Managing TrustSec
- Configuring SGT Exchange Protocol Connection
- Configuring HSRP
- Managing FC Alias
- Configuring Access Ports
- Managing Access Control Lists
- Configuring Network Address Translation
- Configuring Quality of Services
- Managing Service Policies
- Managing Trunks
- Managing Virtual Fibre Channels
- Managing VLANs
- Managing Virtual Port Channels
- Managing SAN Zones and SAN Zonesets
- Managing Virtual Storage Area Networks
- Managing Virtual Extensible LANs
- Configuring ASA Context
- Configuring the Cisco Nexus 1000V Switch for Microsoft Hyper-V
- Monitoring and Reporting
- Managing Configuration Data
- Troubleshooting
Configuring SGT
Exchange Protocol Connection
This chapter contains the following sections:
About SXP Connection
You can use the Security Group Tag (SGT) Exchange Protocol (SXP) to propagate the SGTs across network devices that do not have hardware support for Cisco TrustSec.
In Cisco UCS Director, SXP connection is supported on the following Cisco network devices:
Configuring an SXP Peer Connection
You must configure the SXP peer connection on both of the devices. One device is the speaker and the other is the listener. When using password protection, make sure to use the same password on both ends.
![]() Note | If a default SXP source IP address is not configured and you do not configure an SXP source address in the connection, the Cisco TrustSec software derives the SXP source IP address from existing local IP addresses. The SXP source address might be different for each TCP connection initiated from the switch. |

Feedback