Final answer:
To separate a corporate network into different sections for corporate and employee-owned devices, VLAN technology should be implemented because it allows for the creation of multiple logical networks on the same physical infrastructure.
Step-by-step explanation:
To separate the corporate network into an administrative network for corporate-owned devices and an untrusted network for employee-owned devices under a BYOD (Bring Your Own Device) policy, the best technology to implement would be a VLAN (Virtual Local Area Network). VLANs allow network administrators to partition a single physical network into multiple logical networks. Thus, traffic from one VLAN is separated from another, providing a layer of security and segmenting the network according to the company's needs.
WPA2 is important for securing wireless communications, but it does not segregate traffic into separate networks. VPN technology is typically used to provide secure remote access to a network, not to separate internal traffic. MAC filtering can be used to allow or prevent specific devices from accessing the network but doesn't inherently separate traffic into logical networks.