Implementing and Configuring Cisco Identity Services Engine (SISE) — Question 156
A network engineer must enforce access control using special tags, without re-engineering the network design.
Which feature should be configured to achieve this in a scalable manner?
Answer options
- A. RBAC
- B. dACL
- C. SGT
- D. VLAN
Correct answer: C
Explanation
The correct answer is C, SGT (Security Group Tag), as it allows for scalable access control by tagging devices without altering the existing network structure. Options A (RBAC) and B (dACL) are more rigid and may require network redesign, while D (VLAN) is not specifically designed for tagging access control in this context.