The video walks you through Security Group Tag (SGT) matching in Access Control Policy on Cisco Firepower 7.0. We will leverage an existing ISE integration and perform traffic matching using two methods: Source inline SGT, and Destination SXP mapping. This provides additional flexibility in building access control rule for an environment that has Cisco ISE.