This compatibility matrix shows supported switches that can be onboarded as Policy Enforcement Points (Virtual Edge Nodes) as well as switches that can host our Virtual Edge Container. This matrix is updated with every release.
Switches Supported as Virtual Edge Nodes for Policy Enforcement
Cisco
Model | Min IOS Code |
Supported as Virtual Edge Node in any Deployment Model |
17.6.x | ![]() |
|
Catalyst 9300 Series | 17.6.x | ![]() |
Catalyst 9300L Series | 17.6.x | ![]() |
Catalyst 9400 Series | 17.6.x | ![]() |
Catalyst 9500 Series | 17.6.x | ![]() |
Catalyst 3850 Series | 16.12.5b |
|
16.12.5b |
|
|
17.6.4 |
|
Notes:
- Any switch on the list above can be onboarded to any Elisity Virtual Edge (either Hypervisor-Hosted Virtual Edge or Switch-Hosted Virtual Edge)
- Cisco StackWise Virtual is supported.
- Access switches at the edge are typically onboarded as Virtual Edge Nodes (policy enforcement points), however some environments may not have supported access switches at the edge. This does not preclude you from leveraging Elisity Identity based Microsegmentation since enforcement can happen at the aggregation layer as well so long as the aggregation switches are found as a supported platform in the chart above. See this guide for design details.
Switches That Support Hosting Virtual Edge Container
Cisco
Model | Min IOS Code | Supports Hosting Virtual Edge Container |
Catalyst 9300 Series | 17.6.x | ![]() |
Catalyst 9300L Series | 17.6.x | ![]() |
Catalyst 9400 Series | 17.6.x | ![]() |
Please review the Switch Hosted Deployment Guide to learn more about SSD requirements for deploying Virtual Edge hosted by a switch.