Configuring Access Guardian Access Guardian Application Examples
OmniSwitch AOS Release 8 Network Configuration Guide December 2017 page 28-95
Access Guardian Application Examples
This section provides some typical application examples in which Access Guardian is used to implement
network access control in a sample network configuration. The following diagram depicts an Access
Guardian network implementation that applies to all of the application examples in this section.
For application examples of the OmniSwitch Bring Your Own Devices (BYOD) solution provided
through Access Guardian with the Unified Policy Access Manager (UPAM) or the ClearPass Policy
Manager (CPPM), see the “BYOD Application Examples” on page 28-142.
Access Guardian Network Configuration Example
The following application examples are provided in this section:
• “Application Example 1: Classification (Port Mobility)” on page 28-96
• “Application Example 2: 802.1X Authentication” on page 28-97
• “Application Example 3: Internal Captive Portal Authentication” on page 28-99
• “Application Example 4: Supplicant/Non-supplicant with Captive Portal Authentication” on
page 28-101
• “Application Example 5: IP Phone (LLDP Network Policy TLV/Mobile Tag)” on page 28-104
• “Application Example 6: Restricted Role (Policy List) Assignment” on page 28-106
Internet
Guest -
Non-Supplicant
Employee2 - 802.1X
Authentication
IP Phone
RADIUS Server
DHCP/DNS/ADS Server
OmniVista
Employee1 -
Classification
OmniSwitch 6860OmniSwitch 6860
OmniSwitch 6860
Guest -
Supplicant