No more typing reviews! Try our Samantha, our new voice AI agent.

Aruba ESP vs Zscaler Zero Trust Exchange Platform comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Feb 8, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Ranking in Secure Access Service Edge (SASE)
8th
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
22
Ranking in other categories
Secure Web Gateways (SWG) (5th), Internet Security (3rd), Web Content Filtering (1st), Cloud Access Security Brokers (CASB) (7th), ZTNA as a Service (8th)
Aruba ESP
Ranking in Secure Access Service Edge (SASE)
28th
Average Rating
0.0
Reviews Sentiment
5.9
Number of Reviews
2
Ranking in other categories
No ranking in other categories
Zscaler Zero Trust Exchange...
Ranking in Secure Access Service Edge (SASE)
2nd
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
67
Ranking in other categories
Data Loss Prevention (DLP) (5th), Cloud Access Security Brokers (CASB) (8th), Application Control (4th), ZTNA as a Service (1st), Remote Browser Isolation (RBI) (1st)
 

Mindshare comparison

As of June 2026, in the Secure Access Service Edge (SASE) category, the mindshare of iboss is 3.3%, up from 1.8% compared to the previous year. The mindshare of Aruba ESP is 1.1%, up from 0.3% compared to the previous year. The mindshare of Zscaler Zero Trust Exchange Platform is 8.8%, down from 11.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Secure Access Service Edge (SASE) Mindshare Distribution
ProductMindshare (%)
Zscaler Zero Trust Exchange Platform8.8%
iboss3.3%
Aruba ESP1.1%
Other86.8%
Secure Access Service Edge (SASE)
 

Featured Reviews

Ashok Ananthula - PeerSpot reviewer
Senior Consultant Proxy Engineering at a financial services firm with 10,001+ employees
Cloud gateway has strengthened remote web security and now needs better Mac and ISP support
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent for the Mac agents. That is where in 2025, we had to migrate to the Palo Alto-based platform. If your use case is for just Windows laptops,you can consider this platform as an option One issue is the data center resiliency part. In India especially, they are not tied up with the Tier 1 ISPs like Tata or Airtel; they were having Tier 2 ISPs and encountered many issues reaching few major sites that my organization depends on, and they were having problems that they could not fix quickly. They also lack a mechanism to route that traffic within their data center; rather, they ask customers to make a pac file change to route it to Singapore explicitly. It would be better if they route from their backend , i mean even if I send it to India DC, they should be able to route it internally to make that work; however, they fail to do that and ask the customer to route it in the pac file. Another suggestion is that in China, they do not have the proper setup; they used to have numerous problems with slowness and lack of premium circuits in China as well. That leads to multiple sites working slowly with latency-related issues. So the main issue is the ISP-related problems that need to be solved.
SatishKumar13 - PeerSpot reviewer
Deputy Manager at Savex Technologies Pvt Ltd
Has improved remote connectivity with secure segmentation for traveling users
The scenario has totally changed after COVID. Earlier, people used to work from office culture, but now it has shifted to work from anywhere. Devices are not fixed either. Previously it was fixed asset, but now people are using smartphones, IoT devices, laptops, and other devices, connecting from anywhere. Segmenting network traffic is very difficult and complicated because putting a firewall across devices is very difficult and nearly impossible. EdgeConnect, which includes endpoint protection or SSE, is very agent-based. POPs are nearly reachable across the globe, so users can access services globally whenever they want to reach the data center or access the internet. It creates segregation, and after segregation, it comes with security functionality including CASB, web, anti-malware, and antivirus functionality. It protects the endpoint whenever connecting with unsecured networks. The first level post-check of security parameters matches all functionalities. Their segregation part allows us to define parameters through ZTNA functionality, Zero Trust Network Access where we can define postures, whether devices relate to corporate network or personal use, if antivirus is running, if OS is updated, and many more things. Based upon that, it helps customers protect the complete infrastructure, whether connecting with office network, unsecured network, or remote office.
Vibin Thomas - PeerSpot reviewer
Technical Team Lead - Content Security at Valuepoint Systems
Zero trust access has transformed remote connectivity and now simplifies secure app usage
Zscaler Zero Trust Exchange Platform, especially Zscaler Private Access, is very strong, though there are a few areas where improvements can be made. One challenge observed is around initial troubleshooting and visibility. While Zscaler Private Access provides logs, it can sometimes take time to pinpoint the exact cause of access issues, especially in complex environments with multiple policies and identity integration. Another area is the dependency on identity and connector health. Since Zscaler Private Access is heavily reliant on app connectors and identity providers, any issues with these components can impact user access, making proper monitoring critical. During the initial setup, policy configuration and application onboarding require careful planning, especially for larger environments with many applications. These challenges are manageable with proper design and monitoring. Overall, the platform delivers strong security and user experience. I would recommend a few improvements, especially around user interface, reporting, and troubleshooting experience. From a user interface perspective, while the platform is powerful, the policy configuration and navigation can feel complex, especially for new users. A more simplified and intuitive layout for policy mapping and application access would help reduce the learning curve. In terms of reporting, Zscaler Private Access provides logs, but having more built-in customizable dashboards and analytics would be very helpful. Better visibility into user access patterns, application performance, and real-time troubleshooting insights would improve operational efficiency. From a support and troubleshooting standpoint, it would be beneficial to have more granular centralized visibility, allowing for quick end-to-end tracing of a user request from authentication to application access without switching between multiple views. These improvements would make the platform even more efficient, especially for large-scale enterprise environments.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The security aspect of the solution, particularly the malware behind it, is excellent. That's something that really helped us out. It's not just a simple proxy that just blocks the insights of potential threats that come on behind it. They do malware detection and that helps us a lot."
"Valuable features: Within the filter: Controls (Web categories, applications, and Allow/Block list) and Network (local Subnets). Within the reporter: Logs (Event Log) and Reports."
"iboss is easy to use despite its complexity. Multiple engineers manage it, but it's significantly more straightforward to administer than traditional VPNs and web proxies."
"From a corporate perspective, I understand that it's important to keep the company data safe."
"We chose iboss for both zero trust and proxy (SWG) because their SWG was superior."
"As I mentioned, the return on investment is significant, as it saved our office locations' bandwidth because when you are working remotely at home, your internet traffic routes directly to iboss and will not go to your office building, saving bandwidth bottlenecks and ensuring that issues with our building internet circuits will not impact your internet connectivity because you are directly going to the iboss data center."
"Its initial setup was straightforward."
"iboss is pretty scalable. They provide good support. The case managers you work with to coordinate what you need are pretty good."
"Aruba ESP is a single place where you manage everything, and you have integrations with a lot of other vendors together on the same platform."
"It provides a single umbrella for the complete network infrastructure, which is a very key differentiator from other products."
"The most valuable features of Zscaler CASB are API integration and DLP."
"The scalability is pretty good."
"The most valuable feature is its ability to establish connectivity for remote users and remote endpoints. It offers a high level of granularity compared to typical VPNs, which also encapsulate a lot of I/O."
"Zscaler CASB's latency and architecture are excellent."
"The solution offers a simplified network infrastructure and security functions and it enables secure remote access for the users"
"The UI is easy to use."
"Two great features that we really like on the solution are the Internet Access and Private Access."
"You can close your data protection gaps with Zscaler. You can quickly find all the classified, sensitive data across the cloud."
 

Cons

"Our biggest problem with their service was it did not recognize the device and filtering did not always work correctly."
"To scale up, a new iboss Node Blade Chassis must be purchased."
"Sometimes, obviously, there are bugs."
"Iboss is growing so fast that it is often hard for them to keep up with the challenges."
"The problem our organization had is that iboss failed for the Mac devices; it is not able to give a successful agent for the Mac agents, and that is where in 2025 we had to migrate to the Palo Alto-based platform."
"For zero trust implementation, we encountered complexity issues, especially with a large infrastructure company ExxonMobil."
"It is stable, but due to growth, it can sometimes be less stable than wanted."
"The reporting feature needs improvement. It doesn't give you the expected results. It is quite difficult to get the specific reports needed, and it is not as intuitive as the rest of the platform."
"Aruba ESP should include more integrations with third-party vendors."
"Segmenting network traffic is very difficult and complicated because putting a firewall across devices is very difficult and nearly impossible."
"The only issue with Zscaler Cloud DLP is that it only gives you DLP protection from web traffic, which is flowing out, while a full-blown DLP solution such as Forcepoint or Symantec gives you DLP coverage for multiple channels. Zscaler Cloud DLP doesn't give you coverage for email, fax, and USB channels, and this is the only challenge or room for improvement in the solution. It's just an extension on top of what you're buying on the proxy, so it's just an added layer, and it doesn't cover DLP on a very broad level. I'm unsure if Zcaler is in the business of competing with a full-blown DLP solution, and if there's a plan to expand the features of Zscaler Cloud DLP beyond the web channel because you'll have to deploy a full-blown agent for it. I'm unsure if this is on the cards because the solution is just an added layer that you get with your proxy. I've asked the Zcaler team whether there's a plan to go full DLP in the future, but I didn't get a positive response. There isn't any feature I'd like added to Zscaler Cloud DLP currently, because anything you could think of that should be in cloud or SaaS solutions is already there, except for machine learning, as it's the only functionality that seems to be lacking in the solution. Machine learning is an additional policy available in other DLP solutions in the market, but my team didn't find it in Zscaler Cloud DLP."
"Zscaler Private Access's reporting is poor. We should have more insight into the reports regarding what is blocked and allowed."
"Occasionally, there are certain delays in report generation."
"It's an expensive solution."
"The area that requires improvement is their support. The current support is lacking."
"I rate it a seven because I am still working through some kinks from a performance and a support perspective."
"There could be more DLP-related features. Additionally, there needs to be flexibility for integrating ISP features."
"Zscaler Private Access also needs improvement in terms of its interface and security."
 

Pricing and Cost Advice

"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"It is probably in line with other solutions, but I do not deal with the financial side."
"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"It is expensive compared to one of its competitors."
"The overall pricing for iboss is very competitive and transparent."
"Users need to pay a yearly license for three, five, seven, or ten years based on their requirements."
"It has been relatively reasonable for what it does. Some of the additional license costs based on the advanced next-generation firewall functions are quite high, and they should have certain features ready and available as a baseline rather than having to purchase additional licenses for it. Overall, the cost seems reasonable."
"The cost is expensive. It depends on the number of users."
"Zscaler Private Access is extremely expensive."
"Pricing for Zscaler Private Access is moderate. It's acceptable, though I can't give you the exact price currently. It's not too expensive, and on a scale of one to five, I would rate it a four out of five in terms of pricing."
"The product is a bit expensive."
"The price is competitive."
"Zscaler CASB is an expensive solution."
"The solution is expensive."
report
Use our free recommendation engine to learn which Secure Access Service Edge (SASE) solutions are best for your needs.
902,270 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Manufacturing Company
9%
Computer Software Company
8%
Construction Company
7%
No data available
Financial Services Firm
12%
Manufacturing Company
10%
Computer Software Company
8%
Outsourcing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business7
Midsize Enterprise7
Large Enterprise9
No data available
By reviewers
Company SizeCount
Small Business16
Midsize Enterprise12
Large Enterprise46
 

Questions from the Community

What needs improvement with iboss?
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent ...
What is your primary use case for iboss?
We used iBoss mainly for Internet Access by having an Agent on Windows laptops Primarily because when we try to use i...
What is your experience regarding pricing and costs for iboss?
I am not involved in pricing, but as per the information I have, during that time, the Blue Coat proxies we were usin...
What needs improvement with Aruba ESP?
The scenario has totally changed after COVID. Earlier, people used to work from office culture, but now it has shifte...
What is your primary use case for Aruba ESP?
I am working for the SASE portfolio as a product manager, so I cannot give any comment on other products. If there ar...
What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure ac...
What is your experience regarding pricing and costs for Zscaler Cloud DLP?
It's an affordable solution. I would rate the pricing a six out of ten. Once after deployment, you start bundling up ...
What is your primary use case for Zscaler Cloud DLP?
In Qatar industries, the legacy systems like the Bluecoat Proxy is still being used, these solutions work at a limite...
 

Also Known As

iBoss Cloud Platform
No data available
Zscaler SASE, Zscaler DLP, Zscaler CASB, Zscaler CSPM, Zscaler Browser Isolation, Zscaler Posture Control
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Information Not Available
Siemens, AutoNation, GE, NOV
Find out what your peers are saying about Aruba ESP vs. Zscaler Zero Trust Exchange Platform and other solutions. Updated: June 2026.
902,270 professionals have used our research since 2012.