Try our new research platform with insights from 80,000+ expert users

Share your experience using SecureTrust Network Access Control

The easiest route - we'll conduct a 15 minute phone interview and write up the review for you.

Use our online form to submit your review. It's quick and you can post anonymously.

Your review helps others learn about this solution
The PeerSpot community is built upon trust and sharing with peers.
It's good for your career
In today's digital world, your review shows you have valuable expertise.
You can influence the market
Vendors read their reviews and make improvements based on your feedback.
Examples of the 98,000+ reviews on PeerSpot:

reviewer1235277 - PeerSpot reviewer
Network Product Manager/ Senior Presales engineer at a computer software company with 501-1,000 employees
Real User
Top 10
Provides powerful network access with excellent policy management

What is our primary use case?

My use case for Aruba ClearPass is that it's the best NAC solution.

What is most valuable?

The most valuable functions of Aruba ClearPass include self-service registration with an onboarding license and OnGuard for security to check system status. The solution allows onboarding for users and offers many additional capabilities.

Guest access management is particularly important for Aruba ClearPass. Users can implement self-registration for guest management. The system allows you to identify each device that has access, though this depends on multiple factors. The feature's implementation varies based on these different factors.

What needs improvement?

I cannot see any improvement in Aruba ClearPass as it has remained largely the same since its creation. It is based on Linux, and I think they must make it a fabric for all products, not only for Aruba ClearPass. It should be one integrated solution from the switching part, Aruba ClearPass part, and access point or wireless solution.

I am uncertain if they have integrated it with Central, but managing Aruba ClearPass through Central would be beneficial. I believe this is in HP's plan.

For how long have I used the solution?

I have been working with Aruba ClearPass for approximately seven years.

What was my experience with deployment of the solution?

The policy management capabilities of Aruba ClearPass can be complicated for normal users, but for experienced users, it is quite straightforward.

What do I think about the stability of the solution?

Regarding stability, Aruba ClearPass is the number one NAC solution I can rate. It is better than ICE and better than Forescout in my opinion.

What do I think about the scalability of the solution?

From my perspective as a presales professional, when designing Aruba ClearPass from the beginning, you must make space for scalability. The process is straightforward as you only need to add a license. Everything will be handled when you add new users because all configurations are deployed from the beginning.

How are customer service and support?

The customer service team is very good. When I encountered a problem with Aruba ClearPass, they sent an Indian support representative who was exceptionally experienced. I learned many things from him, as he was extraordinarily knowledgeable compared to other Aruba representatives I have worked with.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

ICE (Identity Services Engine) from Cisco is the main competitor in the market for Aruba ClearPass. While I haven't personally worked with ICE, based on NSS Labs reports and discussions with colleagues, Aruba ClearPass is preferred over ICE.

How was the initial setup?

Regarding on-premises deployment, there are two types: hardware server and VM. The hardware deployment is not simple and requires someone with significant experience. The person deploying should be at minimum a professional level, not someone junior, as the product involves many complex aspects.

What about the implementation team?

We are a partner for Aruba.

What other advice do I have?

Aruba ClearPass is very powerful when integrated with Palo Alto, resulting in enhanced security. The integration between Palo Alto and Aruba ClearPass is straightforward.

Their market share has grown significantly. While they initially had minimal market presence, they have increased their share across all Aruba products, not just one product.

On a scale of 1-10, I rate Aruba ClearPass a 10.

Which deployment model are you using for this solution?

On-premises

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Flag as inappropriate
Senior Cyber Security Consultant at KoçSistem
Consultant
Top 20
Has provided reliable policy controls and secure web access for large enterprises
Pros and Cons
  • "F5 BIG-IP Access Policy Manager (APM) provides excellent WAF and bot defense solutions."
  • "F5 BIG-IP Access Policy Manager (APM) is not user-friendly and operates slowly."

What is our primary use case?

I am using F5 BIG-IP Access Policy Manager (APM) along with Bot Management, API Gateway, API Security, and F5 Cloud.

I am using F5 Advanced WAF, but I switch between ZTNA solutions such as FortiSASE, Prisma Cloud, Palo Alto, and Cloudflare ZTNA.

My customers are using AWS, Cloudflare, and Azure.

This solution serves as a SASE component.

What is most valuable?

I am using Advanced Web Application Firewall (WAF).

F5 BIG-IP Access Policy Manager (APM) provides excellent WAF and bot defense solutions.

We are using on-premises or cloud solutions with the Big-IP platform.

The most valuable features in F5 BIG-IP Access Policy Manager (APM) are the policy manager and public web access controllers.

My customers are using the Single Sign-On feature with SAML, RADIUS, and multi-factor authentication.

F5 BIG-IP Access Policy Manager (APM) is not running Anycast; it operates on-premises or multicast, though Anycast capability is required.

What needs improvement?

F5 BIG-IP Access Policy Manager (APM) is not user-friendly and operates slowly.

Additional features for architecture such as Anycast would be beneficial.

The ability to run the Anycast feature would be valuable, as the current solution only operates on-premises.

The interface is slow, and the speed needs improvement.

For how long have I used the solution?

I have been working with F5 BIG-IP Access Policy Manager (APM) for over 10 years.

What do I think about the stability of the solution?

The solution is stable overall.

Which solution did I use previously and why did I switch?

I replaced F5 BIG-IP Access Policy Manager (APM) with other vendors.

The replacement was necessary because other vendors provide SASE solutions, while F5 BIG-IP Access Policy Manager (APM) is limited to APM functionality.

For cases where F5 BIG-IP Access Policy Manager (APM) doesn't fit the budget, I would recommend a new interface that is very user-friendly and faster, along with functionality such as public host, private host authentication, IPsec, and access control broker.

Which other solutions did I evaluate?

I am familiar with F5 BIG-IP Access Policy Manager (APM) and its capabilities.

What other advice do I have?

I consider Cloudflare when evaluating centralized access control features; Cloudflare utilizes multi-factor authentication and full API support, while F5 BIG-IP Access Policy Manager (APM) needs to enhance its API support.

I recommend F5 BIG-IP Access Policy Manager (APM) for large companies such as Tüpraş and Ford. Tüpraş is one of the biggest companies in Turkey, along with other customers such as Tofaş, Euroko, Koç Holding, and more.

For on-premises deployment, I would rate it a 10. For cloud deployment, I would rate it a seven.

I primarily use it on-premises.

I rate F5 BIG-IP Access Policy Manager (APM) eight out of ten.

Which deployment model are you using for this solution?

On-premises

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Flag as inappropriate