We performed a comparison between Cisco ISE (Identity Services Engine), Forescout Platform, and Fortinet FortiNAC based on real PeerSpot user reviews.
Find out what your peers are saying about Cisco, HPE Aruba Networking, Forescout and others in Network Access Control (NAC)."The most valuable feature is the provisioning of the device so as to ensure that they are compliant with the security policy that we need to have."
"The most valuable feature is 801.1x and another very good feature is the TACACS."
"I like that Cisco ISE is easy to use."
"The live logs and live sessions for troubleshooting are the most valuable features because they provide a detailed report of any issues."
"Cisco ISE now competes with any other product in the space because of its centralized and unified highly secure access control with ISE."
"[One of the most valuable features] is just the ease of use. It's pretty simple to set up certs that we can add to our clients to make sure that they connect properly, [as is] whitelisting Mac addresses."
"Easy to use and provides good support"
"The best feature of the Cisco ISE platform is that it is compatible with Microsoft products."
"The scalability is good."
"Forescout Platform is stable, it is great."
"Forescout Platform's best feature is plug-in integration."
"We use the Forescout Platform for device visibility and control in our network. It's very helpful for tracking malicious or unusual activity. We use it to track which ports are open, which machines are running specific services, and to identify vulnerabilities. For example, there was a vulnerability related to SMB, and we could use the product to determine which machines inside our organization were allowing SMB traffic."
"The initial setup is easy, taking no more than two or three weeks."
"Obtaining visibility into the network and connected devices is very simple with this tool. It takes me three minutes to do a base deployment when all the parameters are available."
"I have noticed that in the last year the license model has changed from licensing the whole appliance to licensing the number of devices. It's more simple for a large installation, or a user to have CounterACT as their peripheral site in the company. It's a good choice to have changed the license policy."
"The threat prevention feature provides complete visibility."
"The most valuable feature of the solution is having visibility over the IoT devices on the network."
"Provides good performance, is easy to use and configure."
"The initial setup was easy and straightforward."
"The interface is good and simple to use."
"This solution is very easy to implement and use. The interface is user-friendly."
"Compared to other NAC vendors, Fortinet’s user interface is more user-friendly."
"The product's most valuable feature is its ability to protect devices connected to network service."
"Fortinet FortiNAC offers several valuable features, including data security, 99 percent uptime with VPN connections, MAC filtering, and traffic prioritization."
"The templates could be better. When you have to do certs, especially with X.500 certs, it isn't very intuitive."
"If Cisco could grant more control, the features could be more focused on network and security administration, reducing the need for integration with other components."
"Documentation is probably the worst part of the software."
"When I work with customers to do my knowledge transfer, they're really overwhelmed with the navigation of the product and the number of things you can do with it. From a user interface standpoint, Cisco could focus on making certain tasks a bit more guided and easier for customers to walk through. That is, a user-friendly interface and streamlined workflows would be great."
"ISE is a little clunky. The front-end feels like it is from the 1980s."
"I believe that Cisco can improve the way its policies are built because it's a little complex."
"The ISE software needs to be improved so that it is easier to administer."
"The pricing is fair."
"As a user, if I am using a laptop that is Wi-Fi connected, Forescout identifies my port connectivity as one user license, and if I take that same laptop with the same username to a wired network, which is also the same network that is used for the Wi-Fi connection, Forescout detects it as a separate license."
"The cost is too high."
"Better integration with third-party vendors is needed because as it is now, the list of third-party solutions that we can integrate and automate is quite limited."
"Forescout Platform could improve the vulnerability management as well as the control on the endpoint, which needs to be connected to my network."
"More detailed analysis during the authentication process, especially for troubleshooting access issues. We have found that troubleshooting RADIUS controls is quite arduous, as it is today. A trace function could easily resolve this by providing a means by which access issues from a certificate to passwords or accounts could easily be identified and remediated."
"Forescout Platform sometimes returns false positives, so there's some fine-tuning to be done there."
"Regarding pricing, there is room for improvement to enhance competitiveness with other vendors and solutions."
"Two things can be improved in the Forescout Platform. First of all, the support for some certain proprietary protocols from other vendors, but they are very widely used. If the TechEx from Cisco, was added to Forescout, then it will be a full solution for me."
"The user interface and the product's intuitiveness could be improved."
"I think the network devices need to give more information."
"One of the biggest issues with Fortinet FortiNAC is that it is not intuitive and has a high learning curve."
"I hope that Fortinet can add a feature with a remediation mechanism when you find a broken piece so that you can click on something and download the needed update or resolve the firewall issue more easily. Currently, we have to use an external remediation server to download updates."
"The platform must enable troubleshooting."
"The implementation process needs improvement. Right now, it's somewhat complicated. They could create some templates to facilitate implementation. Right now everything is done manually, and it just takes a really long time at the initial setup."
"The training from Fortinet FortiNAC could improve. Fortinet has to plan for better training for its partners. Additionally, device management should have more integration with other devices, such as new and third-party devices."
"This solution could be more agile."
More Cisco ISE (Identity Services Engine) Pricing and Cost Advice →