Cisco TrustSec technology classifies traffic using Security Group Tags (SGTs). SGTs are assigned to endpoints, and these tags are then included in the packets that traverse the network. This allows for policy enforcement based on these tags, rather than relying on traditional IP addresses or VLANs. References: Cisco TrustSec Overview