Traditional access control ties policy to IP addresses and VLANs. As users move, addresses change and ACLs multiply, the policy becomes hard to manage. Cisco TrustSec replaces this with group-based segmentation: users and devices are classified into groups, and policy is written between groups. TrustSec is the policy plane of SD-Access but can also be deployed in a traditional network.
Keep reading for free
Create a free StudyToCert account to read the rest of this lesson: 5 more sections, 5 key terms, a real-world example, an exam tip and self-check questions. Every lesson, lab and practice test is free with an account.