
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
06-11-2020 07:07 AM
HI All,
I am giving a Demo session on BYOD, But still I am bit confused that how BYOD covering the end point compliance/security. As we cannot implement posture on personal device with BYOD. And how we can ensure that personal device connecting to corporate Network is secure and will not effect the corporate network. Any explanation on this.
Regards,
Garry
Solved! Go to Solution.
- Labels:
-
Identity Services Engine (ISE)
Accepted Solutions

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
06-12-2020 04:23 PM
BYOD with ISE is all about device registration and potentially provisioning an 802.1X certificate to avoid credential stuffing attacks. For compliance you will need to do MDM/EMM posture/compliance with Meraki SM or a third party MDM vendor.
Also see http://cs.co/ise-webinars > Recorded Webinars & Training Videos > BYOD (Bring Your Own Device) to help explain some of this.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
06-11-2020 09:32 AM
here is the good guide for BYOD :

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
06-12-2020 04:23 PM
BYOD with ISE is all about device registration and potentially provisioning an 802.1X certificate to avoid credential stuffing attacks. For compliance you will need to do MDM/EMM posture/compliance with Meraki SM or a third party MDM vendor.
Also see http://cs.co/ise-webinars > Recorded Webinars & Training Videos > BYOD (Bring Your Own Device) to help explain some of this.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
06-15-2020 07:15 AM
Hi Thomas,
Can we implement ISE Posture with ISE BYOD ? If Yes, then please share any documentation or Use case. Moreover, EMM is only for mobile or for personal laptops/ desktop machines as well.
Regards,
Gurbinder

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
06-15-2020 08:01 PM
Yes, you can use Posture in conjunction with BYOD. After BYOD enrollment, you would use a redirect-based Posture flow to deploy the AnyConnect Posture/Compliance modules or use the Web Agent. See ISE Posture Style Comparison for Pre and Post 2.2 for more information and Posture flow diagrams. Keep in mind that both Posture and MDM require ISE Apex licensing.
There is also a section on "Posture and Compliance in Cisco ISE" in the Webinars link that @thomas provided earlier.

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
06-16-2020 05:55 AM
Read my response immediately above.
