cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1270
Views
0
Helpful
3
Replies

Sizing of SXP for switches

gvanbon
Cisco Employee
Cisco Employee

Hi,

Where can we find what the sizing limits are regarding SGT-IP mappings and max number of SXP sessions for switch models ?

I am looking for cat6k with sup2t. 

Is there some central place where we can find this for all Cisco switches ?

 

Thanks

1 Accepted Solution

Accepted Solutions

Hi,

The Trustsec 6.5 System bulletin will provide the information on maximum SXP connections and IP-SGT bindings etc per switch model, link here.

 

HTH

View solution in original post

3 Replies 3

Hi,

The Trustsec 6.5 System bulletin will provide the information on maximum SXP connections and IP-SGT bindings etc per switch model, link here.

 

HTH

Thanks!

Damien Miller
VIP Alumni
VIP Alumni

Keep in mind that the numbers in table 4 page 15 of the TrustSec system bulletin are best case scenario in a lab.  I have never been able to come close to reaching the max SXP connections stated while in production without encountering scaling issues.  

It's really a balance that can be difficult to predict where total mappings, endpoint activity, and total sxp connections all factor. Try to avoid bidirectional SXP connections if at all possible, opting for a uni directional design.  ex. ISE as a speaker.  We are able to beef up ISE better than a router/switch for large multiconnection SXP processing.