cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
723
Views
0
Helpful
3
Replies

Network segmentation - switch level

carl_townshend
Spotlight
Spotlight

Hi All

I am looking at doing segmentation for my corporate and OT/IOT devices etc.

Is it trustsec and Cisco ISE that does this?

We have mainly 2960X switches at the edge, can these do SGACLs ? if not would the access need to be blocked further down the network on a device that can do the enforcement?

Cheers

1 Accepted Solution

Accepted Solutions

It appears to be so. It is not supported on the 2960x series.

HTH

View solution in original post

3 Replies 3

Reza Sharifi
Hall of Fame
Hall of Fame

Hi Carl,

 

It appears that SGACL is only supported on the 3850 and 3650 series switches.

see table-1 in this link:

https://www.cisco.com/c/en/us/td/docs/switches/lan/catalyst2960x/software/15-0_2_EX/security/configuration_guide/b_sec_152ex_2960-x_cg/b_sec_152ex_2960-x_cg_chapter_010100.html

HTH

 

Does this mean we could not do it at the edge ?

 

 

It appears to be so. It is not supported on the 2960x series.

HTH

Review Cisco Networking for a $25 gift card