With Personal Device Authorization users connecting to the corporate network with a personal device that is not registered with the appliance are prompted to register the device. They must agree to the personal device corporate policies and privacy policies to access corporate resources.
After the user consents to the corporate policies for a device, the device’s unique Device ID is determined and the appliance registers the device to the user. Subsequent connections from this device do not require device authorization.
In addition, you can monitor usage of personal devices that have accessed the appliance, as explained in Viewing User Access and Policy Details
To create an Device Zone for Personal Device Authorization
Navigate to User Access > End Point Control page
In the Zones and Profiles section, click Edit next to Zones.
Select Device zone from the Filters Type drop-down menu, and then click the Refresh icon.
All device zones are displayed.
Click on any zone to display Device profiles.
Only those profiles that are Application Access Control aware are included in the profiles.
In the All Device Zone Profiles list, select the checkbox for any profiles that you want to require in the zone.
Click the right arrow (>>) button. Only one of the profiles in the In Use list needs to match for the application to be placed in the zone you are creating.
If there are no device profiles for this zone, click New to add one.
Expand Device authorization.