7-40
Cisco TrustSec Configuration Guide
OL-22192-01
Chapter 7 Cisco TrustSec Command Summary
cts sxp
Defaults
Command Modes Global configuration (config)
Supported User Roles Administrator
Command History
default password
0 unencrypted_pwd |
6 encrypted_key |
7 encrypted_key |
cleartext_pwd
Configures the SXP default password. You can enter either a clear
text password (using the 0 or no option) or an encrypted password
(using the 6 or 7 option). The maximum password length is 32
characters.
source-ip ip4_address (Optional) Specifies the IPv4 address of the source device. If no
address is specified, the connection will use the default source
address (if configured), or the address of the port.
enable Enables SGT Exchange Protocol over TCP (SXP) for Cisco
TrustSec.
log binding-changes Turns on logging for IP to SGT binding changes. Default is off.
reconciliation period seconds Changes the SXP reconciliation timer. The range is from 0 to
64000. Default is 120 seconds (2 minutes).
retry period seconds Changes the SXP retry timer. The range is from 0 to 64000. Default
value is 120 seconds (2 minutes).
sxp Disabled by default
log binging-changes off
password none
reconciliation period 120 seconds
retry period 60 seconds
source-ip Default source IP address (if configured) or the
port address
vrf Default VRF name
Release Modification
12.2 (33) SXI3 This command was introduced on the Catalyst 6500 series switches.
12.2 (50) SG7 This command was introduced on the Catalyst 4000 series switches.
12.2 (53) SE2 This command was introduced on the Catalyst 3750(E) and 3560(E) series
switches (without log binding-changes keyword).