Cisco ISE Advanced Policy and TrustSec
Overview
A Cisco ISE deployment with TrustSec-capable switching for advanced policy, profiling and posture scenarios, beyond the basic access-control pod. Built for engineers who already know 802.1X basics and want to work with SGTs, profiling and posture assessment against real traffic.
Images included
- A Cisco ISE appliance image with advanced policy features enabled
- TrustSec (SGT)-capable Cisco IOS-XE switch images for enforcement testing
- A Linux endpoint image with a posture-assessment agent installed
Environment & resources
An ISE deployment integrated with TrustSec-capable switches, so security group tag assignment, profiling and posture policy all produce real, enforceable outcomes on the wire.
Data-center and identity-scale gear: fabric switches and appliances that need real headroom.
FAQ
Do I need ISE-DEPLOY completed first?
It isn't required, but basic ISE/802.1X familiarity makes the TrustSec and posture scenarios faster to work through.
Is SGT-based enforcement actually testable here?
Yes, the switches in this pod support TrustSec enforcement, so tagged traffic is really permitted or dropped by policy.
All prices in GBP
This lab includes
Ready to run this lab yourself?
Dedicated 1:1 access, booked by the session. No shared environments.