Sumudu Perera - PeerSpot reviewer
Consultant - Networking at Plexus Global Pvt Ltd
Consultant
Scalable solution and has the best-automated profiling feature
Pros and Cons
  • "The solution is highly stable."
  • "They should include SMP functionalities."

What is our primary use case?

We use the solution for basic user authentication, authorization, and accounting purposes.

What is most valuable?

The solution has the best-automated profiling feature. It helps us create granular policies based on device category. Also, its API-level integration with third-party systems works well compared to other vendors.

What needs improvement?

They should include features like Radius CoA for IoT and similar devices for the solution. Also, it would be great if they had SMP functionalities as well.

For how long have I used the solution?

I have been using the solution since 2016.

Buyer's Guide
Aruba ClearPass
April 2024
Learn what your peers think about Aruba ClearPass. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
768,740 professionals have used our research since 2012.

What do I think about the stability of the solution?

The solution is highly stable. I rate its stability a ten.

What do I think about the scalability of the solution?

The solution is highly scalable. I rate its scalability a ten. We can add as many subscribers as we require. We have at most ten solution users as our customers. They all are enterprise businesses.

How was the initial setup?

The solution's GUI and configuration workflow could be clearer to understand. I rate its setup process a six. It involves analyzing customers' requirements and starting with a POC. Once it is done, we order equipment and a license. Next, we deploy the solution offline and integrate it with the production environment. The entire process takes around two to three months to complete.

What's my experience with pricing, setup cost, and licensing?

The solution is costly. We have purchased its perpetual license. It is affordable for enterprise businesses. The medium-scale companies find it expensive. I rate its pricing an eight.

What other advice do I have?

I recommend the solution to others. It is an excellent platform. I rate it as a nine.

Disclosure: My company has a business relationship with this vendor other than being a customer: partner
PeerSpot user
Manager, Systems Technology at Ketraco
Real User
If you max out the endpoint devices that you want to manage, you upgrade the license and can get more scalability.
Pros and Cons
  • "The initial setup was straightforward."
  • "I would like the area of managing wired technology to be improved. Wireless is very good but I'm still struggling a bit to do my end to end configurations in the wired technology area."

What is our primary use case?

1. To improve overall security by segmenting the Guest and Corporate Vlan.

2. To Manage BYOD in the organization. 

3. To provide visbility on my corporate network using one management dashboard   environment for the devices

How has it helped my organization?

Secure organization by completely segmenting the guest and corporate vlans SSID. 

Less management and support effort on the management of BYOD. 

Clear visibility on the LAN .

 

What is most valuable?

The most valuable features would be: 

  • Wireless segregation
  • Bandwidth segmentation
  • Prioritization
  • BYOD management
  • Overall visibility.

What needs improvement?

I would like the area of managing wired technology to be improved. Wireless is very good but I'm still struggling a bit to do my end to end configurations in the wired technology area.

The Virtual Machine for the Clearpass sometimes has issues with loosing the management IP

For how long have I used the solution?

One to three years.

What do I think about the stability of the solution?

This solution is stable. 

What do I think about the scalability of the solution?

Scalability is fine because it's batched upon endpoint devices, and licensing. If you max out the endpoint devices that you want to manage, you just upgrade the license and get more scalability. The core server is running on virtualization, so you can expand the resources for you to be able to grow your server needs.

Which solution did I use previously and why did I switch?

We previously used Cisco ISE. We switched because it was complex. Even the deployment was not straightforward. When I had Cisco ISE, it was still in the first version, 1.2. I heard people mention that version 2.2 is much more friendly, easy to deploy, and easy to use but I didn't get a chance to test that. I used Cisco ISE when it was what I would consider a very complex solution, difficult to install, and even understand. Even then, it was not meeting my requirements.

How was the initial setup?

The initial setup was straightforward and the deployment took almost a month. 

Which other solutions did I evaluate?

What other advice do I have?

I would rate this solution a nine. 

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Aruba ClearPass
April 2024
Learn what your peers think about Aruba ClearPass. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
768,740 professionals have used our research since 2012.
it_user812403 - PeerSpot reviewer
Consultant
User
Makes it easy to require robust user authentication for both wired and wireless endpoints
Pros and Cons
  • "It makes it easy to require robust user authentication for both wired and wireless endpoints, including BYODs."
  • "Access Tracker is invaluable for troubleshooting access control incidents and quickly getting to the root cause."
  • "It should be clearer in the pre-sales stage that clear, documented, executive-supported InfoSec policy is the key to success."

What is our primary use case?

ClearPass is the best Network Access Control "Swiss army knife" out there right now. It can do 802.1x (WPA2-Enterprise) for WiFi and LAN. It also has one of the slickest guest captive portal experiences and workflows out there, along with an easy, drop-in BYOD application.

I have not had too much experience with OnGuard, the endpoint integrity feature, but it does that too. With all of the ClearPass integrations and RADIUS Change of Authorization (CoA), it is possible to login wired or wireless endpoints based on a variety of identity stores, then create and associate security policies, e.g., DACLs, based on a device. 

Dynamically provision VLAN assignments, i.e., no more "color-coded ports", write Palo Alto Networks (PAN) NGFW policies that are associated with a specific user (rather than IP address), and quarantine or drop an endpoint off the network in an automated manner if an incident is detected.

All of this, naturally, comes with a lot of details in implementation, but my experience was, like all things InfoSec, implementing the controls is easy if you already have a clear, documented, executive-supported policy that you are using as the control to enforce. Otherwise, the control gets blamed for what is really a lack of clarity and leadership regarding the underlying business policy.

How has it helped my organization?

It makes it easy to require robust user authentication for both wired and wireless endpoints, including BYODs.

What is most valuable?

Access Tracker is definitely the feature that I use the most. It is invaluable for troubleshooting access control incidents and quickly getting to the root cause.

What needs improvement?

It should be clearer in the pre-sales stage that clear, documented, executive-supported InfoSec policy is the key to success.

For how long have I used the solution?

Less than one year.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Binju Charly - PeerSpot reviewer
Sales Manager - GCC at Gerab System Solutions LLC
Reseller
A budget-friendly NAC solution that provides quality and functionality to its users
Pros and Cons
  • "The most valuable feature, I would say, is the cost-effectiveness of the solution when compared to others."
  • "I remember our technical team stating that the installation front of the solution was a bit difficult when compared to other solutions."

What is our primary use case?

Our clients use Aruba ClearPass since it is a NAC solution.

What is most valuable?

The most valuable feature, I would say, is the cost-effectiveness of the solution when compared to others.

What needs improvement?

Regarding the improvement needed in the solution, I remember our technical team stating that the installation front of the solution was a bit difficult when compared to other solutions. So, some of the other solutions, when compared to Aruba ClearPass, are more user-friendly to install.

For how long have I used the solution?

I have been working with Aruba ClearPass for almost five to six years. My company is a reseller of the solution. I am unsure about the version of the solution I am using since we also deal in other products.

What do I think about the stability of the solution?

It is a stable solution. I rate the solution's stability a nine out of ten.

What do I think about the scalability of the solution?

It is a scalable solution. I rate the solution's scalability somewhere around seven to eight out of ten. Mostly, our organization deals with medium and enterprise-sized customers.

How are customer service and support?

I rate the solution's technical support team a seven out of ten. There are no issues with the support we are receiving. I will probably have to check with the engineers who have dealt with the technical support team. Since I have never heard a complaint against the support team, I would reconsider my decision over the rating provided by me previously and rate the technical support an eight.

How would you rate customer service and support?

Positive

How was the initial setup?

I rate the solution's initial setup a six on a scale where one is difficult and ten is easy. There are some difficulties when installing the solution. For our company, installation is not difficult since we are system integrators who are well-versed in Aruba ClearPass. However, one of our customers told us that it is difficult to manage the installation part of the solution.

The solutions deployment was quick because our company is well-versed in deployment. So, it took around twenty to thirty days. Usually, four L3 engineers from our company are involved in the deployment process. For the maintenance and deployment of the solution, we have a lot of people in our organization. So, our company has around 28 engineers, and we serve around 120 customers in UAE. Specifically speaking, two network engineers are handling the maintenance part of the solution.

What's my experience with pricing, setup cost, and licensing?

On a scale of one to ten, where one is cheap, and ten is too expensive, I rate the solution's pricing a six out of ten. So, the price could be lower. The solution has a yearly based licensing cost attached to it.

What other advice do I have?

I want to tell those planning to use the solution that it is a good solution where one needs to have a certain level of expertise to carry out the deployment phase. Overall, I rate the solution an eight out of ten.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Microsoft Azure
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
PeerSpot user
Team leader technical support at a manufacturing company with 201-500 employees
Real User
Top 20
Provides integration options with a multitude of other vendors and Aruba applications
Pros and Cons
  • "I like the integration options with a multitude of other vendors and Aruba applications."
  • "The user interface could be more polished and modern. It would be useful to have more options for automation."

What is our primary use case?

I use this solution for securing company-wide logs.

I'm using the latest version. It's deployed on the public cloud. Microsoft Azure is the cloud provider.

Everyone in our organization uses this solution. It's about 300 people. There are four people who specifically operate the solution, do daily checks, check for errors, and help users who are having trouble with their login sessions.

What is most valuable?

I like that it's usable in both an on-premise and hybrid and cloud native environment. I like the integration options with a multitude of other vendors and Aruba applications.

What needs improvement?

The user interface could be more polished and modern. It would be useful to have more options for automation.

I would like to have more collaboration between different security platforms. For instance, the Fortinet portfolio, which we also use extensively.

For how long have I used the solution?

I have used this solution for about one year.

What do I think about the stability of the solution?

It's very stable. We did have some issues with under provisioning the underlying resources, so that needs to be taken into account. If you do, then it is very stable.

What do I think about the scalability of the solution?

The scalability is very high. You just need to add extra nodes. I would rate the scalability as eight out of ten.

How are customer service and support?

Technical support is only approached by our third party network service provider.

How was the initial setup?

Deployment took one day.

What about the implementation team?

Implementation was done through a third party. We outsourced the deployment to our network vendor.

Maintenance is also outsourced. For the application itself, maintenance takes about four hours a month. For the actual usage of the applications on a day-to-day basis, we do that ourselves.

What's my experience with pricing, setup cost, and licensing?

Compared to the functionality, the pricing is very favorable. It's affordable and provides good value for the money.

I would rate the pricing as three out of ten.

Which other solutions did I evaluate?

We evaluated other on-premises solutions, but they aren't very comparable to Aruba.

What other advice do I have?

I would rate this solution as nine out of ten.

I would recommend Aruba ClearPass to others.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Microsoft Azure
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Technical Department at Telenor Comunicaciones
Real User
Versatile and stable solution
Pros and Cons
  • "The aspect of Aruba ClearPass that I like most is that it has a lot of options, it is very versatile."
  • "The initial setup was quite complex, it is not that easy."

What is our primary use case?

Our primary use case is for security.

What is most valuable?

The aspect of Aruba ClearPass that I like most is that it has a lot of options, it is very versatile.

What needs improvement?

One thing that could be improved in Aruba ClearPass is that we would like to have an option to recognize all the assets on the customer's site in one click. That is an easy way of recognizing all the assets on a customer site. We would like an easier way of recognizing the assets of the network so we could know in which VLAN we want to configure the port or the suite and which policies apply to that port. We'd like ClearPass do that automatically.

For how long have I used the solution?

We first installed ClearPass about two years ago.

What do I think about the stability of the solution?

In terms of stability, it is quite stable.

What do I think about the scalability of the solution?

One a scale of one to five, I would give the scalability a three. It is not scalable enough.

How are customer service and technical support?

The technical support is good.

How was the initial setup?

The initial setup was quite complex, it is not that easy.

It took maybe two weeks. It takes a long time because it depends on the customer's industry or location or on the user's computers. It's not that fast normally.


What's my experience with pricing, setup cost, and licensing?

Aruba ClearPass is expensive.

What other advice do I have?

On a scale of one to ten I would give Aruba ClearPass an eight.

It is a good solution for applying security to the network. I would recommend it.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: partner
PeerSpot user
Anil Ergunsah - PeerSpot reviewer
Anil ErgunsahManaging Partner & Technical Consultant&Trainer(CCIE#29761, CCSI#31865) at IT Expert
Top 5LeaderboardReal User

It is flexible, has multivendor support and many features, but needs training to learn. The permanent licensing model is great. I'm giving Clearpass courses as a certified instructor and love this product.

Network engineer / owner at a photography company with 11-50 employees
Real User
Top 20
Offers ability to authenticate using not just certificates but also MAC addresses
Pros and Cons
  • "I would rate the stability a nine out of ten."
  • "There is room for improvement in terms of scalability."

What is our primary use case?

We mainly use it for 802.1X authentication.

What is most valuable?

Our customers like its ability to authenticate using not just certificates but also MAC addresses is very helpful in mitigating unauthenticated access on networks and switches.

What needs improvement?

There is room for improvement in terms of scalability. 

For how long have I used the solution?

I have experience with Aruba ClearPass for five to six years.

What do I think about the stability of the solution?

I would rate the stability a nine out of ten.

What do I think about the scalability of the solution?

I would rate the scalability an eight out of ten. Our customers are mostly medium-sized businesses.

Which solution did I use previously and why did I switch?

I have some years of experience with FortiGate, Fortinet Firewalls, and Fortinet switches. Mostly with FortiSwitch models 6450, 548, and 124F.

What about the implementation team?

I didn't set it up myself. I'm involved in operating the system.

What other advice do I have?

Overall, I would rate the solution an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Implementer
Flag as inappropriate
PeerSpot user
CEO at a tech services company with 51-200 employees
Real User
Top 5Leaderboard
The compatibility is a key valuable feature that sets it above other products
Pros and Cons
  • "ClearPass is open to any operating system or mobile app."
  • "Licensing cost is extremely high."

What is our primary use case?

The primary use case of ClearPass is for network access control, wireless access and policy enforcement. We use it for authentication, verification and authorization, and then patch it to our users. We are system integrators. 

What is most valuable?

The advantage of Aruba is that it is open to any operating system or mobile app. The compatibility of Aruba ClearPass is a key valuable feature and makes it a stronger product than Cisco ISE in this area.

What needs improvement?

The cost of Aruba is very, very high. It's the biggest challenge we have with this product. It would be helpful if Aruba would integrate the SDN controller into the solution. Cisco is moving towards that in order to create one platform. 

For how long have I used the solution?

We've been using this solution for 10 years. 

What do I think about the scalability of the solution?

Scalability depends on the design policy. One device has a scalability provision of 20,000 but you might only use 5,000 licenses initially so it really depends on your needs.

How are customer service and support?

The technical support is excellent. 

How was the initial setup?

The initial setup is easy and there is no need to install anything whether you buy the virtual platform or the appliance. It's all very open and clear and a matter of configuring for policy enforcement. 

What's my experience with pricing, setup cost, and licensing?

There are licensing options but this is a very expensive product. 

Which other solutions did I evaluate?

Forescout and ClearPass are both trying to build their system as an open platform for everyone which is why their reachability is very high. If you're using ClearPass or Forescout, you can use any open switches on the market. Cisco has a limited category that it has developed for its own products and infrastructure. If you use different switches and different Wi-Fi, it doesn't provide the pure solution inside. 

What other advice do I have?

I rate this solution 10 out of 10. 

Disclosure: My company has a business relationship with this vendor other than being a customer: Integrator
PeerSpot user
Buyer's Guide
Download our free Aruba ClearPass Report and get advice and tips from experienced pros sharing their opinions.
Updated: April 2024
Buyer's Guide
Download our free Aruba ClearPass Report and get advice and tips from experienced pros sharing their opinions.