AWS CloudFormation vs AWS Config comparison

Cancel
You must select at least 2 products to compare!
Microsoft Logo
6,490 views|4,668 comparisons
91% willing to recommend
Amazon Web Services (AWS) Logo
1,281 views|821 comparisons
95% willing to recommend
Amazon Web Services (AWS) Logo
405 views|294 comparisons
100% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between AWS CloudFormation and AWS Config based on real PeerSpot user reviews.

Find out in this report how the two Configuration Management solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
To learn more, read our detailed AWS CloudFormation vs. AWS Config Report (Updated: March 2024).
768,886 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"Maturity makes it a stable product.""While Microsoft Intune boasts a wide range of features, its user-friendliness and bundled licensing cost are key considerations for me.""The one feature we find most useful is the Mobile Application Manager. There are two types, we have the complete MDM and the Mobile Application Manager(MAM). We don't give our users phones, it is their own personal phone, and we need to allow them to have access to the company detail on their phone. We need to create a balance between their own personal data and the company data. We deploy the Mobile Application Manager for them so that we won't be able to interfere with their own personal data.""The main advantage is that Intune performs its intended functions effectively.""Stable solution at a good price.""While I don't think you can ever have full visibility and control, Intune certainly allows us to see the applications being used and tells us if things like Windows patches aren't applied to machines. It does a good job. That visibility makes life a little easier.""It is helpful for managing devices anytime and any place without requiring dependency on the local networks.""Fortunately, now everything is streamlined into a single, unified platform."

More Microsoft Intune Pros →

"The solution has helped with automation. I don't have to worry about provisioning machines and ensuring everything is set up. AWS CloudFormation takes care of the entire infrastructure for me.""The reusability of the solution is valuable.""Versioning makes our work easy.""The CloudFormation template can be reused to create multiple stacks, reducing duplications and improving our infrastructure.""The integration of the solution is very good.""There is a cost-benefit to using CloudFormation that comes about because of the automation that it provides.""It is easy to work from the console and deploy new database services.""Automations make it pretty easy to provision AWS, development, or deployment environments."

More AWS CloudFormation Pros →

"Installing the instances and performing upgrades is smooth and clean.""The initial setup is super easy, it takes like two minutes. Literally a one-click deployment.""The solution is scalable and provides over 100 rules."

More AWS Config Pros →

Cons
"The solution could improve by having better integration with Apple.""Intune doesn't provide much control over Windows servers. It's something we struggle with.""There should be more focus on mobile device security and integration.""There needs to be more support for Mac operating systems.""One big problem with Microsoft is that they're changing the names of the products quite often, or they're quite consistently doing so. Intune is now Endpoint administration. Constantly switching the user interface or the administrative interface makes it quite hard to keep pace. If you are on a two-week holiday and you come back and look at the same screen you have looked at for the last couple of months, it looks different, which is annoying. Changing things around all the time doesn't make it easy.""The backend of Microsoft Intune needs to be improved. We have seen a little bit of delay as compared to other MDM solutions. That needs to be improved. A little bit more granularity should also be added""In terms of what can be improved, I am looking for better enhancements regarding Apple management, not only on the mobile device, but also on the laptop.""The reporting could be improved, as it's pretty poor compared to other products of this type."

More Microsoft Intune Cons →

"Provisioning a large environment or a large number of services takes a bit more time than with Terraform.""If you are a developer or a more technical person, it's very difficult to learn the complete syntax or because CloudFormation includes a new way to write infrastructure code.""One area where AWS CloudFormation could improve is by offering more flexibility in creating custom templates.""Creating the inline policies is not great.""It would help all users if AWS improved the auto-generation of the CloudFormation file.""The product should be made cloud-agnostic, allowing users to deploy the same environment with minimal tweaks across different cloud platforms, similar to Terraform. Additionally, it would be beneficial to have the ability to manage templates outside of the AWS environment.""Including certain examples of templates would be advantageous.""They could improve the product's capability to handle circular dependencies more effectively."

More AWS CloudFormation Cons →

"There is room for improvement in built-in tools, they are not up to the mark.""The solution is missing a configuration that can assist us when writing our programming languages.""The reboot process for AWS instances could be improved. Microsoft Azure does not have this problem, so AWS could consider making their instances more robust. You would not need to reboot your instances frequently to replace the hardware and stuff. They can look for a better approach or mechanism to improve in the future. The concern is that you need to plan for the outage when you reboot an instance. You need to have a maintenance window where you can properly reboot the instance without affecting your application. When Amazon announces that you need to reboot an instance and are not ready, this becomes a problem."

More AWS Config Cons →

Pricing and Cost Advice
  • "Consider the Microsoft Enterprise Mobility Suite rather than choosing specific sub-components, e.g. only Microsoft Intune."
  • "There is a cost benefit of using Microsoft Intune because of the packaging with other Microsoft products."
  • "Microsoft Intune is a cost effective choice. It is less expensive than other products on the market."
  • "The purchase of the product was handled by someone else."
  • "I have no comment on pricing of the solution."
  • "The product is offered as part of a Microsoft standard bundle. The pricing can be competitive to Airwatch, and Maas360."
  • "For Microsoft 365 E5 clients, cost is not an issue as this product is one of the benefits."
  • "The price of Intune is included with the license for Office 365, so we don't have to pay anything extra for it."
  • More Microsoft Intune Pricing and Cost Advice →

  • "This solution is free to use and does not require a license."
  • "AWS CloudFormation doesn't have any cost because it's only the resources that you deploy with the solution that'll incur costs."
  • "If you compared serverless and container-based, serverless is less expensive. If you use certain instances the price can increase and become too expensive."
  • "The price of the solution is good because it is scalable."
  • "The solution's cost is normal, neither cheap nor expensive."
  • "The pricing is not notably high."
  • "The product is free."
  • "The tool is free for the AWS environment."
  • More AWS CloudFormation Pricing and Cost Advice →

  • "The solution charges us per hour. There's no license."
  • "It is a very expensive tool. AWS pricing for Config is not fixed and depends on your organization's size and complexity."
  • More AWS Config Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Configuration Management solutions are best for your needs.
    768,886 professionals have used our research since 2012.
    Questions from the Community
    Top Answer:Microsoft Intune is a great tool for managing a mobile device fleet while keeping access control. The solution makes it… more »
    Top Answer:Microsoft Intune is a great configuration management tool and has a lot of good things going for it. Here are some of… more »
    Top Answer: Microsoft Intune offers not only an easy-to-deploy data protection and productivity management solution, but also… more »
    Top Answer:The reusability of the solution is valuable.
    Top Answer:The solution must enable more hands-on designing of the templates. We take the backend services and design the… more »
    Top Answer:The initial setup is super easy, it takes like two minutes. Literally a one-click deployment.
    Top Answer:There is room for improvement in built-in tools, they are not up to the mark. Some of the built-in inbound rules feel… more »
    Top Answer:It tracks configuration changes across all your AWS resources. Imagine it as a log of every tweak and setting… more »
    Comparisons
    Also Known As
    Intune, MS Intune, Microsoft Endpoint Manager
    CloudFormation
    Learn More
    Overview

    Microsoft Intune is a comprehensive cloud-based service that allows you to remotely manage mobile devices and mobile applications without worrying about the security of your organization’s data. Device and app management can be used on company-owned devices as well as personal devices.

    In an increasingly mobile workforce, Microsoft Intune keeps your sensitive data safe while on the move. Microsoft Intune makes it possible for your team members to work anywhere using their mobile devices. Microsoft Intune provides both the flexibility and the control needed for securing all your data on the cloud, no matter where the device with the data is located.

    Microsoft Intune Device Management Key Features

    With Microsoft Intune Device Management you can:

    • Ensure devices and apps are compliant with your security requirements.
    • Rapidly deploy and authenticate apps on all company devices.
    • Remotely access devices to troubleshoot issues or to remove data from them.
    • Generate reports for all devices in the system.
    • Monitor the way users access and share information to protect company information.
    • Set rules and configure settings on personal and organization-owned devices to access data and networks.
    • Create user groups and device groups, allowing you to rapidly access many users and devices simultaneously.

    Mobile Application Management

    Mobile application management in Intune is designed to protect your organization’s data at the application level.

    With Microsoft Intune Application Management you can:

    • Configure apps to run with specific settings enabled.
    • Update existing apps that are already on the device.
    • See reports on which apps are used and monitor their usage.
    • Selectively wipe organization data from apps.
    • Add mobile apps to user groups and devices.

    As part of Microsoft's Enterprise Mobility + Security (EMS) suite, Intune integrates with Microsoft Entra ID for access control and with Azure Information Protection for data protection. It also integrates with Microsoft 365 Applications.

    Reviews from Real Users

    Microsoft Intune stands out among its competitors for a number of reasons. Two major ones are its ability to secure all devices under its management and the flexibility that the solution offers its users.

    A computing services manager notes, "Its security is most valuable. It gives us a way to secure devices, not only those that are steady. We do have a few tablets and other devices, and it is a way for us to secure these devices and manage them. We know they're out there and what's their status. We can manage their life cycle and verify that they're updated properly."

    The head of IT engineering at a financial services company writes, "The one feature we find most useful is the Mobile Application Manager. There are two types: we have the complete MDM and the Mobile Application Manager (MAM). We don't give our users phones, it is their own personal phone, and we need to allow them to have access to the company details on their phone. We need to create a balance between their own personal data and the company data. We deploy the Mobile Application Manager for them so that we won't be able to interfere with their own personal data."

    AWS CloudFormation provides a common language for you to model and provision AWS and third party application resources in your cloud environment. AWS CloudFormation allows you to use programming languages or a simple text file to model and provision, in an automated and secure manner, all the resources needed for your applications across all regions and accounts. This gives you a single source of truth for your AWS and third party resources.

    AWS Config is a service that enables you to assess, audit, and evaluate the configurations of your AWS resources. Config continuously monitors and records your AWS resource configurations and allows you to automate the evaluation of recorded configurations against desired configurations. With Config, you can review changes in configurations and relationships between AWS resources, dive into detailed resource configuration histories, and determine your overall compliance against the configurations specified in your internal guidelines. This enables you to simplify compliance auditing, security analysis, change management, and operational troubleshooting.

    Sample Customers
    Mitchells and Buzzers, Callaway
    Nextdoor, Coinbase, Expedia
    Flatiron, Prezi, iZettle, British Gas, Burt, Autodesk, FanDuel
    Top Industries
    REVIEWERS
    Financial Services Firm19%
    Computer Software Company18%
    Comms Service Provider10%
    Energy/Utilities Company5%
    VISITORS READING REVIEWS
    Educational Organization23%
    Computer Software Company12%
    Government7%
    Financial Services Firm7%
    REVIEWERS
    Computer Software Company30%
    Construction Company10%
    Wellness & Fitness Company10%
    Non Profit10%
    VISITORS READING REVIEWS
    Financial Services Firm18%
    Computer Software Company13%
    Comms Service Provider7%
    Educational Organization6%
    VISITORS READING REVIEWS
    Financial Services Firm21%
    Government10%
    Healthcare Company10%
    Computer Software Company9%
    Company Size
    REVIEWERS
    Small Business38%
    Midsize Enterprise14%
    Large Enterprise48%
    VISITORS READING REVIEWS
    Small Business20%
    Midsize Enterprise33%
    Large Enterprise47%
    REVIEWERS
    Small Business37%
    Midsize Enterprise23%
    Large Enterprise40%
    VISITORS READING REVIEWS
    Small Business22%
    Midsize Enterprise9%
    Large Enterprise69%
    VISITORS READING REVIEWS
    Small Business13%
    Midsize Enterprise10%
    Large Enterprise77%
    Buyer's Guide
    AWS CloudFormation vs. AWS Config
    March 2024
    Find out what your peers are saying about AWS CloudFormation vs. AWS Config and other solutions. Updated: March 2024.
    768,886 professionals have used our research since 2012.

    AWS CloudFormation is ranked 9th in Configuration Management with 26 reviews while AWS Config is ranked 16th in Configuration Management with 3 reviews. AWS CloudFormation is rated 8.2, while AWS Config is rated 9.0. The top reviewer of AWS CloudFormation writes "Pretty easy setup with great automations for provisioning that save time and money". On the other hand, the top reviewer of AWS Config writes "A cloud solution to host application with smooth instance installation and performance upgrade". AWS CloudFormation is most compared with AWS Systems Manager, Spring Cloud, Red Hat Ansible Automation Platform, Red Hat Satellite and Chef, whereas AWS Config is most compared with AWS Systems Manager. See our AWS CloudFormation vs. AWS Config report.

    See our list of best Configuration Management vendors.

    We monitor all Configuration Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.