Try our new research platform with insights from 80,000+ expert users

Cisco Duo vs Prisma Access by Palo Alto Networks comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 28, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Ranking in ZTNA as a Service
7th
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
19
Ranking in other categories
Secure Web Gateways (SWG) (5th), Internet Security (3rd), Web Content Filtering (1st), Cloud Access Security Brokers (CASB) (7th), Secure Access Service Edge (SASE) (8th)
Cisco Duo
Ranking in ZTNA as a Service
3rd
Average Rating
8.8
Reviews Sentiment
7.0
Number of Reviews
116
Ranking in other categories
Single Sign-On (SSO) (3rd), Authentication Systems (2nd), Access Management (3rd), Cisco Security Portfolio (1st), Multi-Factor Authentication (MFA) (1st)
Prisma Access by Palo Alto ...
Ranking in ZTNA as a Service
2nd
Average Rating
8.2
Reviews Sentiment
6.9
Number of Reviews
65
Ranking in other categories
Secure Web Gateways (SWG) (4th), Cloud Access Security Brokers (CASB) (1st), Enterprise Infrastructure VPN (5th), Secure Access Service Edge (SASE) (1st)
 

Mindshare comparison

As of March 2026, in the ZTNA as a Service category, the mindshare of iboss is 2.4%, up from 1.7% compared to the previous year. The mindshare of Cisco Duo is 2.3%, down from 2.3% compared to the previous year. The mindshare of Prisma Access by Palo Alto Networks is 11.3%, down from 15.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
ZTNA as a Service Mindshare Distribution
ProductMindshare (%)
Prisma Access by Palo Alto Networks11.3%
Cisco Duo2.3%
iboss2.4%
Other84.0%
ZTNA as a Service
 

Featured Reviews

reviewer2701851 - PeerSpot reviewer
Managing Director
Enhances web security with a single pane of glass and flexible deployment
I don't see any need for improvement; one of the really good things about iboss as a company is that they listen to customer feedback. I have suggested enhancements, and they are responsive, making changes for the better, and they do a lot of testing. To improve iboss, although we haven't used it, we considered the VPN solution that comes with the highest tier licensing, which includes DLP and various other add-ons. We prefer using another product which automatically logs you back onto your network when turning on your PC. With iboss, the connection is manual, which doesn't meet our needs. Additionally, sizing can be tricky because, although the initial recommendations may seem adequate, actual usage may require more gateways than anticipated.
Charles Slaustas - PeerSpot reviewer
Information Technology Contractor at Insight global
Supports seamless authentication for users across multiple organizations and personal portals
The features I use in Cisco Duo include Duo Pushes to confirm my identity to the device, and eventually as MFA security was increased, I actually had to use exchange passcodes. Sometimes, I have to go into the site and get into Cisco Duo to retrieve the passcode, and many of them have been two-factor, where the sites send a passcode that I have to enter into Cisco Duo. It has been more of the latter. I have not seen issues with lagging or crashing on Cisco Duo's end; it was usually on the client end, often because someone set up a bad upgrade or there were connection issues with the Cisco Duo cloud through the administrative site.
IgorPinter - PeerSpot reviewer
Director at PULSEC
Zero-trust access has improved remote security and now simplifies cloud-based firewall management
Regarding the integration part for Prisma Access by Palo Alto Networks, the integration with identity providers is pretty much good. It is basically firewall as a service, so it performs well. I completed the integration without any issues. What Palo Alto Networks can do better for Prisma Access by Palo Alto Networks is probably to have the point of presence available in more locations. The point of presence from the Serbia region has the nearest POP in Frankfurt, which is an issue since it is your gateway—when you start browsing the internet, you go through a commercial connection in Germany. They definitely need to spread the service in other countries.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Technical support is pretty sharp and very responsive."
"I would rate the technical support of iboss a solid 10 without a shadow of a doubt."
"From a corporate perspective, I understand that it's important to keep the company data safe."
"The security aspect of the solution, particularly the malware behind it, is excellent."
"iboss has significantly lowered the number of security incidents. It is crazy how much it blocks and how much it is aware of the outside danger."
"We chose iboss for both zero trust and proxy (SWG) because their SWG was superior."
"This product is solid, fairly easy to use, and reliable."
"Granular setup, which was able to set different levels of filters using the OUs in the AD."
"Cisco is the perfect product for our current size, and I don't think we'll have problems with scalability as we grow."
"The feature of Cisco Duo that I appreciate most is the push notifications. They are great."
"It has definitely reduced embedding. We found a lot of problems with attackers being able to compromise accounts. Now, when they try to access accounts, they are not able to do so because there is an added layer of protection. Once we know that a username and password are compromised, we just reset the password to protect the company."
"It was a simple way of providing two-factor authentication for remote access when we hit the COVID pandemic. It was very easy and quick to get it going."
"It's easy to deploy. It's easy to manage. It's easy to integrate with other applications."
"It's pretty easy for users to figure it out."
"Cisco Duo seems very scalable—in my experience, I started with a small-medium business, and in my last contracting position, it was a large one for a major worldwide airline that had hundreds of thousands of devices that could use Cisco Duo, and it scaled very well."
"The Verified Duo Push feature is valuable. It gives an extra level of security beyond just the regular push."
"My advice for those who are looking for a SaaS solution is to use Prisma; it's one of the best solutions in the industry at the moment, simpler and really easy to deploy, with a very trustworthy support team from Palo Alto."
"There are plenty of features this solution provides and the most valuable would be the complete security protection we are receiving, including similar security to the Palo Alto AWS solution with features such as a firewall and machine learning AI, while the cloud server provides maximum uptime, controls, and overall strong security."
"The solution's most valuable features were the model's reduced complexity on the client side and its capability to provide security."
"It is easy to use, easy to integrate, and is stable. It's scalable as well."
"The solution has all its capabilities in a single cloud delivery platform which is great and it provides overall good protection."
"The visibility perspective is pretty cool. If I want to know how much data is being used for a specific project, I can look at how much data has been used, from which region, and which users have been connected. That visibility is very good so that I can see how many licenses we have and how many are used."
"Overall, the security provided by Prisma Access is very good."
"The stacked policies, event policies, and routing policies are easy to understand for someone with general knowledge."
 

Cons

"SSL decryption: We had issues with learners using apps instead of using web browsers. This type of encryption is tough for any appliance in a BYOD environment."
"Our biggest problem with their service was it did not recognize the device and filtering did not always work correctly."
"Sometimes the agent stops working in iboss, and we have to reinstall the agent."
"To scale up, a new iboss Node Blade Chassis must be purchased."
"Iboss is growing so fast that it is often hard for them to keep up with the challenges."
"The solution could be stronger on the integration side and offer more cloud applications like G Suite or Oracle."
"It is stable, but due to growth, it can sometimes be less stable than wanted."
"One thing I would like to see differently with their Zero Trust platform is that some of the AI aspects related to high-risk activities have more false positives."
"I think the prices of Cisco Duo are quite fair, but the main problem is that Microsoft Authenticator is built-in with Microsoft 365, so everyone is switching to that and not using Cisco Duo because it is a standalone product that costs extra, despite the price being fair."
"Duo has some issues that we're trying to work through. For example, if I install it on a WordPress site and another admin needs to log in, they can't because Duo hasn't been set up for them. It doesn't appear that I can add permissions on a user-by-user basis. It's not obvious."
"Cisco Duo could be improved, possibly by adding features for the healthcare space. If you're selling something to a healthcare provider, there needs to be consideration for how to launch Cisco Duo with a handheld device that is not native, where you can install the application."
"Cisco Duo could be improved with more interesting rules or correlation rules between all the data sources such as Windows and Azure."
"Its documentation must be in French because we are a French-speaking country. They should also provide more training documentation. Its management interface should also be improved. They should also improve its update period. If I compare its update period with other products such as Palo Alto firewalls, this solution is really slow in updates."
"When you come to the push in Duo Security, there are some integrations where you have to use the code instead of the push functionality."
"Removing the need for a password would be a positive change as well as the ability to cover all the different enterprise applications. They don't have coverage for everything."
"The dashboard needs to be improved."
"They can add some new characteristics. For example, when an incident triggers, they can automatically send a template for a particular match that is related to the policy. We don't have that right now. It is something to improve. There could be more automation for certain actions. For example, for a particular group, it can send an administrator alert to their manager. It was one of the concerns of our customers."
"It wasn't so satisfying to work with it. There is room for improvement in the policy management. It is difficult to cover the entire scenery through Palo Alto products."
"When it comes to integration mechanisms, Prisma SaaS does not support reverse proxy type of integrations."
"Their next release should provide solutions for the mobile environment."
"They automatically update and they should give us time to fully understand what they're updating so that we can make sure it doesn't impact production."
"Its security is good. Everything is good, but the way the dashboard responds can be improved. It takes time to implement a policy. If you change only two or three lines and push the policy to make the change work, it takes 20 to 30 minutes even for a small change. That is something very irritating from the implementation perspective."
"It's not really Prisma's fault, but when you try to create exceptions you don't really have those abilities. You cannot say, on the management platform, "Hey, for these users I want to create these exceptions." That is one thing that I have gotten some complaints about, and we have faced some challenges there."
"One thing that would help is if we could get a guide. With Cisco, for example, you can just type the problem regarding your Cisco product and you will easily get your solution. In Palo Alto, however, it's not easy to find the solutions."
 

Pricing and Cost Advice

"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"The overall pricing for iboss is very competitive and transparent."
"It is expensive compared to one of its competitors."
"It is probably in line with other solutions, but I do not deal with the financial side."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"It has a fair pricing model. I know they have different tiers, but it would be nice to have different types of licenses for certain groups of users in our organization. That way, we wouldn't have to lump everybody into one group. That would be also one complaint."
"Cisco has the most expensive products because market leaders tend to charge a lot."
"Our licensing fee is currently on an annual basis."
"It was very reasonable."
"Price wise, it's not cheap, but it's not expensive at all either. It's in the middle."
"Overall, the pricing is fair. Customers can wrap it into their Enterprise Agreement, making it easier for them to solve their issues."
"The licensing is very good because it does not cost a lot of money. It's affordable for all-sized customers, including enterprises. There is an additional cost for premium support."
"I rate the product pricing a seven out of ten."
"Prisma SaaS is more expensive than similar solutions but I think it's worth it."
"Prisma is in the middle of the road. It's not the most expensive, but it's not the cheapest. There aren't any additional costs, to my knowledge. I know they have some extra modules, but we didn't use them."
"It is not cheap. It is expensive. The good thing is that you are able to pay for what you need, but overall, it is not cheap. The pricing is not based on packages. You pay based on the features. If you want DLP, you only pay for DLP. They are very flexible. It is not cheap, but the licensing is flexible. There are no additional costs in addition to the standard licensing fees."
"The solution is expensive."
"They price their products using credit modules."
"The price has been good for the ROI during these difficult times for the cruise industry. There are no hidden costs; what the product offers is what you get."
"The licensing fees are paid on a yearly basis and for what we get, the price is good."
"Actually the solution is very expensive. I don't know the particulars since the purchasing team dealt with it."
report
Use our free recommendation engine to learn which ZTNA as a Service solutions are best for your needs.
885,264 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Computer Software Company
9%
Manufacturing Company
9%
Comms Service Provider
6%
Manufacturing Company
11%
Financial Services Firm
8%
Comms Service Provider
8%
Computer Software Company
7%
Financial Services Firm
11%
Manufacturing Company
10%
Computer Software Company
9%
Government
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise6
Large Enterprise6
By reviewers
Company SizeCount
Small Business41
Midsize Enterprise24
Large Enterprise54
By reviewers
Company SizeCount
Small Business24
Midsize Enterprise21
Large Enterprise27
 

Questions from the Community

What needs improvement with iboss?
For zero trust implementation, we encountered complexity issues, especially with a large infrastructure company Exxon...
What is your primary use case for iboss?
Previously when I used iboss, we did the POC for iboss for ExxonMobil. Four or five people wanted to move from our ol...
What is your experience regarding pricing and costs for iboss?
Regarding pricing, setup costs, and licensing, iboss is not cheap, and that's my only concern. There are cheaper alte...
How does Duo Security compare with Microsoft Authenticator?
We switched to Duo Security for identity verification. We’d been using a competitor but got the chance to evaluate Du...
What is your experience regarding pricing and costs for Duo Security?
I cannot speak to the financial planning of the organization, but I can confirm that Cisco Duo falls within the secur...
What needs improvement with Duo Security?
Areas that have room for improvement in Cisco Duo include pricing, as Cisco is quite expensive, and the fact that Cis...
What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure ac...
What do you like most about Prisma Access by Palo Alto Networks?
The most valuable features of the solution are in the areas of the secure remote access it provides while also being ...
What is your experience regarding pricing and costs for Prisma Access by Palo Alto Networks?
From my experience, Palo Alto is more expensive compared to solutions like Netskope and Triscale.
 

Also Known As

iBoss Cloud Platform
Duo Security
Palo Alto Networks Prisma Access, Prisma Access, GlobalProtect, Palo Alto GlobalProtect Mobile Security Manager, Prisma SaaS by Palo Alto Networks, Prisma Access
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Information Not Available
Concord Hospital, State of Colorado, Essilor International, RheinLand Versicherungsgruppe, University of Westminster, Universidade Nove de Julho, SPAR Austria, CAME Group, ZipRealty, Greenhill & Co., IKT Agder, Aviva Stadium, Animal Logic, Management & Training Corporation, Brigham Young University Hawaii, School District of Chilliwack
Find out what your peers are saying about Cisco Duo vs. Prisma Access by Palo Alto Networks and other solutions. Updated: March 2026.
885,264 professionals have used our research since 2012.