After 802.1X or similar authentication, a civic endpoint should land in a GBP group that drives allow/deny policy in the fabric. What concept is being applied?
Select an answer to reveal the explanation.
Short Explanation
Auth says who you are; the GBP group says which club badge you wear on the network. Policy then keys off that badge—not off inventing a new ASN for every laptop.
Full Explanation
GBP depends on accurate endpoint classification into groups. Authentication and identity results commonly inform that group assignment so leaves can enforce consistent allow/deny policy. BFD groupings, DSCP-only MAC-VRF mapping, or per-endpoint underlay ASNs are not the GBP classification model described for EVPN-VXLAN group policy.