Try our new research platform with insights from 80,000+ expert users

Cisco Duo vs Prisma Access by Palo Alto Networks comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 28, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Ranking in ZTNA as a Service
7th
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
19
Ranking in other categories
Secure Web Gateways (SWG) (5th), Internet Security (3rd), Web Content Filtering (1st), Cloud Access Security Brokers (CASB) (7th), Secure Access Service Edge (SASE) (8th)
Cisco Duo
Ranking in ZTNA as a Service
4th
Average Rating
8.8
Reviews Sentiment
7.1
Number of Reviews
113
Ranking in other categories
Single Sign-On (SSO) (3rd), Authentication Systems (2nd), Access Management (4th), Cisco Security Portfolio (2nd), Multi-Factor Authentication (MFA) (1st)
Prisma Access by Palo Alto ...
Ranking in ZTNA as a Service
2nd
Average Rating
8.2
Reviews Sentiment
6.9
Number of Reviews
66
Ranking in other categories
Secure Web Gateways (SWG) (4th), Cloud Access Security Brokers (CASB) (1st), Enterprise Infrastructure VPN (5th), Secure Access Service Edge (SASE) (1st)
 

Mindshare comparison

As of February 2026, in the ZTNA as a Service category, the mindshare of iboss is 2.3%, up from 1.6% compared to the previous year. The mindshare of Cisco Duo is 2.3%, down from 2.4% compared to the previous year. The mindshare of Prisma Access by Palo Alto Networks is 11.5%, down from 15.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
ZTNA as a Service Market Share Distribution
ProductMarket Share (%)
Prisma Access by Palo Alto Networks11.5%
Cisco Duo2.3%
iboss2.3%
Other83.9%
ZTNA as a Service
 

Featured Reviews

reviewer2701851 - PeerSpot reviewer
Managing Director
Enhances web security with a single pane of glass and flexible deployment
I don't see any need for improvement; one of the really good things about iboss as a company is that they listen to customer feedback. I have suggested enhancements, and they are responsive, making changes for the better, and they do a lot of testing. To improve iboss, although we haven't used it, we considered the VPN solution that comes with the highest tier licensing, which includes DLP and various other add-ons. We prefer using another product which automatically logs you back onto your network when turning on your PC. With iboss, the connection is manual, which doesn't meet our needs. Additionally, sizing can be tricky because, although the initial recommendations may seem adequate, actual usage may require more gateways than anticipated.
Charles Slaustas - PeerSpot reviewer
Information Technology Contractor at Insight global
Supports seamless authentication for users across multiple organizations and personal portals
The features I use in Cisco Duo include Duo Pushes to confirm my identity to the device, and eventually as MFA security was increased, I actually had to use exchange passcodes. Sometimes, I have to go into the site and get into Cisco Duo to retrieve the passcode, and many of them have been two-factor, where the sites send a passcode that I have to enter into Cisco Duo. It has been more of the latter. I have not seen issues with lagging or crashing on Cisco Duo's end; it was usually on the client end, often because someone set up a bad upgrade or there were connection issues with the Cisco Duo cloud through the administrative site.
IgorPinter - PeerSpot reviewer
Director at PULSEC
Zero-trust access has improved remote security and now simplifies cloud-based firewall management
Regarding the integration part for Prisma Access by Palo Alto Networks, the integration with identity providers is pretty much good. It is basically firewall as a service, so it performs well. I completed the integration without any issues. What Palo Alto Networks can do better for Prisma Access by Palo Alto Networks is probably to have the point of presence available in more locations. The point of presence from the Serbia region has the nearest POP in Frankfurt, which is an issue since it is your gateway—when you start browsing the internet, you go through a commercial connection in Germany. They definitely need to spread the service in other countries.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"We chose iboss for both zero trust and proxy (SWG) because their SWG was superior."
"I would rate the technical support of iboss a solid 10 without a shadow of a doubt."
"Iboss is a solution that prevents advanced persistent threats, and has a zero tolerance for attacks."
"It was a very easy product to install. It can be deployed very fast."
"The solution has massively improved our security posture, giving us full visibility into what our staff does online."
"iboss is among the few products providing inline filtering where no application is needed on the device. It operates on the network side and is not device-based. This feature was one of the main reasons why we stayed with them for so long."
"The security aspect of the solution, particularly the malware behind it, is excellent. That's something that really helped us out. It's not just a simple proxy that just blocks the insights of potential threats that come on behind it. They do malware detection and that helps us a lot."
"iboss has significantly lowered the number of security incidents. It is crazy how much it blocks and how much it is aware of the outside danger."
"The two-factor login is great. I receive a message and just have to press okay."
"Cisco Duo seems very scalable—in my experience, I started with a small-medium business, and in my last contracting position, it was a large one for a major worldwide airline that had hundreds of thousands of devices that could use Cisco Duo, and it scaled very well."
"The most valuable feature is the ability for users to connect securely to the office using the VPN."
"Cisco Duo helps minimize the risk of attack vectors and prevents unauthorized access to our data since it's tied with multi-factor authentication, which helps block threats."
"Cisco Duo is very easy to deploy and the documentation is very thorough, which makes deployment straightforward."
"What I appreciate the most is that you can push a notification with your phone and log in to your computer."
"Regarding the valuable features, I would say that Duo Security is easy to use, has speed, and is dependable."
"The winning point for Cisco Duo over others is its simplicity; it is just a security solution in a box, and it integrates very easily."
"It protects all app traffic so that users can gain access to all apps. Unlike other solutions that only work from ports 80 and 443, which are predominantly for web traffic, Prisma Access covers all protocols and works on all traffic patterns... The most sophisticated attacks can arise from sources that are not behind 80/443."
"It's quite reliable and performs well for users."
"The tool's consolidation is pretty quick."
"It is easy to use, easy to integrate, and is stable. It's scalable as well."
"The most valuable feature of Prisma Access is its ability to provide enterprise-class security for both Internet and internal application access."
"The product's initial setup phase is simple."
"I like it because it's very easy to use. You install the client and you have to know your gateway, but that's something we give to our users. Beyond that, it takes about three seconds to train them on how to use it. And it just works well. That's great for us because it means less administrative time."
"Prisma Access is very stable, and I am very much satisfied with its stability, rating it nine to ten out of ten."
 

Cons

"I am currently doing a PoC of the zero trust aspect of it. Compared to other similar solutions, it is hard to get around each feature. It takes a while to get used to it."
"The solution could be stronger on the integration side and offer more cloud applications like G Suite or Oracle."
"File integrity monitoring would be very advantageous as an additional feature."
"The dashboards for local use could be better."
"Sometimes the agent stops working in iboss, and we have to reinstall the agent."
"Iboss is growing so fast that it is often hard for them to keep up with the challenges."
"For zero trust implementation, we encountered complexity issues, especially with a large infrastructure company ExxonMobil."
"To scale up, a new iboss Node Blade Chassis must be purchased."
"For upgrades, there should be a better notification of when they're coming out. We always have a testing phase, so we need to be ahead of it. It takes us longer before we can upgrade to the newest version."
"Regarding the pricing, setup costs, and licensing, I find that for some companies using Azure, they question why they should switch when they already have Microsoft Authenticator, which can make it commercially challenging when explaining why they need to transition to Cisco Duo."
"Compared to other vendors, Cisco Duo is on the pricey end."
"To improve Cisco Duo, the biggest consideration is the licensing standpoint; the most common issue I've found is customers not setting up the Active Directory sync properly, leading to inflated licensing usage when they try to delete inactive users that are still being charged."
"Cisco Duo could be improved, possibly by adding features for the healthcare space. If you're selling something to a healthcare provider, there needs to be consideration for how to launch Cisco Duo with a handheld device that is not native, where you can install the application."
"I think the prices of Cisco Duo are quite fair, but the main problem is that Microsoft Authenticator is built-in with Microsoft 365, so everyone is switching to that and not using Cisco Duo because it is a standalone product that costs extra, despite the price being fair."
"It is easy to use when logging in, but at times, there's a delay in getting the pop-up on a phone, requiring users to occasionally retry authentication depending on backend services."
"It already integrates with lots of products, but it can integrate with more products. There should be easy integration with Cisco products because sometimes, it can be quite complicated."
"I would like the solution to support a different type of authentication. We can't configure a secondary method for our portal."
"There should be a dedicated portal or SASE-based solution. They're trying to add a plugin but it needs a dedicated portal because it is now an enterprise solution for multiple organizations. People should be able to directly log in to a dedicated page for Prisma Access, rather than going into a Panorama plugin, and always having to update the plugin."
"Palo Alto Prisma 10 came out over a year ago. Palo Alto added this identity management feature. The legacy way Palo Alto selected which user is sitting on an IP address it passes through has been clunky."
"Lacks a hybrid model which has API plus in-line security."
"There can be some latency issues with the solution that should be improved."
"The initial support team is not very good. Most of the time, I have found that they are one to three years experienced only. They don't have network expertise. They know about Palo Alto products but don't know how to troubleshoot the issues. We have to guide them most of the time to troubleshoot correctly since their approach is not developed."
"The one thing that I've been a little bit disappointed with is when we have had to open cases with Palo Alto about Prisma Access issues. Versus their other platforms, like their firewalls, where we tend to get really quick responses and very definitive answers, the few tickets I've had to open for Prisma Access have taken them longer to respond to. And they haven't necessarily given me the kind of answer I was looking for, meaning a fix to the problem."
"There is some particular traffic that the security team wants to filter out and apply their own policies and they cannot."
 

Pricing and Cost Advice

"It is expensive compared to one of its competitors."
"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"The overall pricing for iboss is very competitive and transparent."
"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"It is probably in line with other solutions, but I do not deal with the financial side."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"It falls in line with everything else."
"Their pricing model is a little bit weird. Currently, there is no price advantage in signing up for yearly contracts. There are no additional costs to the standard licensing costs."
"Cisco has the most expensive products because market leaders tend to charge a lot."
"The cost was reasonable. Licensing was pretty straightforward for a change."
"I believe the licensing model is excellent as it offers flexibility to our customers, allowing them to adopt a crawl, walk, or run approach."
"Price wise, it's not cheap, but it's not expensive at all either. It's in the middle."
"Price-wise, the solution has been very, very reasonable...Licensing is the last thing I think about Duo Security because it's so easy, and I had no problems with it."
"It's very simple. Its price is fair. We use the hardware tokens as well. You get what you pay for. In terms of licensing, Cisco has very complicated products, but Duo Security was surprisingly easy."
"There's no reason not to buy the enterprise version that gives you unlimited PoPs, but you must understand the limitations you impose on yourself if you do that. If you go crazy, that allowlist will be too big for Kubernetes clusters."
"The pricing for this solution is on the higher end."
"The initial prices of Prisma Access were okay. But as soon as you start deploying Palo Alto gear, the support prices and the recurring prices, which are the major operational costs, tend to increase over time."
"Compared to other products, the price is slightly high."
"Prisma Access by Palo Alto Networks has flexible licensing models with different categories. It comes with different features which can be removed if not needed. However, its pricing is high."
"They price their products using credit modules."
"The solution requires a license and the technical support has extra costs. The licensing model could improve."
"The solution is expensive."
report
Use our free recommendation engine to learn which ZTNA as a Service solutions are best for your needs.
882,961 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Computer Software Company
10%
Manufacturing Company
9%
Comms Service Provider
6%
Manufacturing Company
11%
Computer Software Company
8%
Financial Services Firm
8%
Comms Service Provider
8%
Financial Services Firm
11%
Manufacturing Company
11%
Computer Software Company
10%
Government
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise6
Large Enterprise6
By reviewers
Company SizeCount
Small Business41
Midsize Enterprise23
Large Enterprise53
By reviewers
Company SizeCount
Small Business24
Midsize Enterprise21
Large Enterprise27
 

Questions from the Community

What needs improvement with iboss?
For zero trust implementation, we encountered complexity issues, especially with a large infrastructure company Exxon...
What is your primary use case for iboss?
Previously when I used iboss, we did the POC for iboss for ExxonMobil. Four or five people wanted to move from our ol...
What is your experience regarding pricing and costs for iboss?
Regarding pricing, setup costs, and licensing, iboss is not cheap, and that's my only concern. There are cheaper alte...
How does Duo Security compare with Microsoft Authenticator?
We switched to Duo Security for identity verification. We’d been using a competitor but got the chance to evaluate Du...
What is your experience regarding pricing and costs for Duo Security?
Compared to other vendors, Cisco Duo is on the pricey end. However, the other vendors do not have the wide range of f...
What needs improvement with Duo Security?
The primary issue is adoption. When I used to work for Deloitte, I did consulting and advisory for at least 95 of the...
What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure ac...
What do you like most about Prisma Access by Palo Alto Networks?
The most valuable features of the solution are in the areas of the secure remote access it provides while also being ...
What is your experience regarding pricing and costs for Prisma Access by Palo Alto Networks?
From my experience, Palo Alto is more expensive compared to solutions like Netskope and Triscale.
 

Also Known As

iBoss Cloud Platform
Duo Security
Palo Alto Networks Prisma Access, Prisma Access, GlobalProtect, Palo Alto GlobalProtect Mobile Security Manager, Prisma SaaS by Palo Alto Networks, Prisma Access
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Information Not Available
Concord Hospital, State of Colorado, Essilor International, RheinLand Versicherungsgruppe, University of Westminster, Universidade Nove de Julho, SPAR Austria, CAME Group, ZipRealty, Greenhill & Co., IKT Agder, Aviva Stadium, Animal Logic, Management & Training Corporation, Brigham Young University Hawaii, School District of Chilliwack
Find out what your peers are saying about Cisco Duo vs. Prisma Access by Palo Alto Networks and other solutions. Updated: February 2026.
882,961 professionals have used our research since 2012.