Configuring Access Guardian Bring Your Own Devices (BYOD) Overview
OmniSwitch AOS Release 8 Network Configuration Guide December 2017 page 28-115
Bring Your Own Devices (BYOD) Overview
The OmniSwitch implementation of Bring Your Own Devices (BYOD) leverages the OmniVista Unified
Policy Access Manager (UPAM) or the ClearPass Policy Manager (CPPM) and Access Guardian features
on the OmniSwitch. BYOD can be implemented on a campus, branch offices, Internet edge, and
converged access networks. It allows a wired guest, device, or authenticated user to connect to the
network through an OmniSwitch edge device using UPAM or CPPM for unified authentication.
The BYOD support on the OmniSwitch provides the following:
• Unified access policy management solution for Wireline networks using UPAM or CPPM.
• Integration with Access Guardian UNP, 802.1X authentication, and MAC authentication.
• RADIUS Change of Authorization (CoA):
– Provides a mechanism to change AAA attributes of a session after authentication.
– Sends the New Profile as an attribute in the message.
– Sends a Disconnect Message to terminate a user session and discard all user context.
• A validated BYOD solution using UPAM or CPPM with CoA and the OmniSwitch.
• Restricted access to the network and validation for end user devices, including employees with IT
supplied devices, IP phones, employees personal devices, guest devices, access points, cameras, and
silent devices (such as printers).
• UPAM or CPPM can act as a RADIUS server for new deployments or RADIUS proxy for existing
networks.
• Captive Portal redirect using a dynamic redirect URL Vendor Specific Attribute (VSA).
Note: For additional information, refer to the following:
• “Access Guardian Overview” on page 28-12 for information about UNP device authentication and
classification.
• OmniAccess WLAN documentation.
• OmniVista Unified Policy Access Manager documentation for in-depth OmniSwitch and server
configuration requirements.
• ClearPass Policy Manager documentation for in-depth server configuration and licensing requirements.