Try our new research platform with insights from 80,000+ expert users

Cisco Identity Services Engine (ISE) vs macmon Network Access Control comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 5, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cisco Identity Services Eng...
Ranking in Network Access Control (NAC)
1st
Average Rating
8.2
Reviews Sentiment
6.7
Number of Reviews
142
Ranking in other categories
Cisco Security Portfolio (1st)
macmon Network Access Control
Ranking in Network Access Control (NAC)
9th
Average Rating
8.6
Reviews Sentiment
6.8
Number of Reviews
3
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of May 2025, in the Network Access Control (NAC) category, the mindshare of Cisco Identity Services Engine (ISE) is 25.8%, down from 31.3% compared to the previous year. The mindshare of macmon Network Access Control is 2.7%, up from 1.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Network Access Control (NAC)
 

Featured Reviews

SunilkumarNaganuri - PeerSpot reviewer
Enhanced device administration hindered by complex deployment and security limitations
Cisco Identity Services Engine (ISE) needs to improve the profiling preauthentication. They are very poor in asset classification and should focus on improving the preauthentication profiling, especially for NAC use cases. This will give them a roadmap for software-defined access (SDA) use cases and network segmentation. Threat detection capabilities are very weak. Additionally, the product is vulnerable and has many bugs.
Yusuf Oezeren - PeerSpot reviewer
A robust solution that provides protection to effectively control the access to your network
The single sign-on process can be improved and the interface should be made more user-friendly. The interface is user-friendly but, for example, when we have new people starting to work, they never work with NetOne and it is a bit hard to expand in certain places. In addition, when I have to pull the last corrected MAC address, I need to put the space between it in order to find the address. If I don't put it in there, I don't get any resources. This needs improvement. They should maybe add integration with LanSuite. We can include it to see the direct information we get from our LAN Tree. If I click on the MAC address, I will then directly get the hostname, and that will open a tap-in line so I see what the last update was.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The solution is great for establishing trust for every access request no matter where it comes from."
"I like the guest access feature, which has been important for us."
"Using this solution gives us the ability to allow proper access to the network."
"Cisco offers automation, visibility, and control as well as third party integration capabilities."
"When we use ISE, one of the helpful things is that I can go through the dashboard and get every step along the way of how a device was authenticated. If it's failing, why did it fail? Why is it unauthorized? If there's an error, what is the error and how can I fix that error? If it's something that, if they should be passing, why are they failing?"
"The implementation is very simple."
"It is a good product for what it does...So, it is one of the most critical systems that we have."
"TACACS and .1X security are the most valuable features. TACACS acts for user control, so no one can authenticate to our network devices, and .1X is to validate that unauthorized devices are plugged into our network."
"The API is a great way to get information from other tools."
"We use it with our Cisco switches so we can see which switch it is actually connected to."
"The ease of connecting with the client is valuable for me."
 

Cons

"Cisco ISE is very complex and not very easy to deploy."
"I'd like to see the logging be a bit more robust in terms of what it has baked in. If I want to do any in-depth searching, I have to export all the logs to an external platform like Elastic or LogRhythm and then parse through them myself. It would be nice if I could find what I want, when I want it, on the platform itself."
"Cisco ISE does not recognize devices and that is an issue we faced during its integration with our existing devices."
"I would like the product to include support for OSVS version three."
"The initial setup process is complex since there are so many big components."
"The upgrades could be better. Every time we try to do an upgrade, we have problems. It's a pain."
"Whenever we see the authentication logs, we can't see what device we're logging into... We can see who logged in, but we can't see the IP address of the device... I'm sure that's available. We just haven't figured out how to properly deploy it."
"The UI and UX could be more seamless and easier to use."
"The service macmon offers is already great."
"The solution must allow users to filter files based on dates."
"The single sign-on process can be improved and the interface should be made more user-friendly."
 

Pricing and Cost Advice

"If you go directly with Cisco for the implementation it's very, very expensive."
"The price is a bit on the high side."
"I have complaints. I don't enjoy the licensing model. Once we moved from 2.7 to 3.1, switching from Base, Plus, and Apex to Essential and Advantage in Premier, we went from a perpetual, with our base licenses, to now a subscription-base. So, we will have to renew those licenses every year, and I'm not a fan of that for our base licenses. Apex/Premier, we already expected, which is fine, but for basic connectivity, I am not a fan of that."
"It is fairly expensive and that's part of why we have implemented it in the type of 'hack' that we did, to service multiple clients."
"Cisco is expensive, but it's the cost for all the functions and value it brings. Functions like internet solutions, integrations, security, and many more features are important, but it's expensive for some clients."
"This solution requires an annual license and it is a bit expensive than competitors."
"If you're not going through an agreement, it's very expensive."
"We are running Version 2.9 because Version 2.9 of the ISE has a persistent license — it's a one-time payment. The latest version (3.1) is only available if you do a yearly subscription."
"The solution is not expensive."
report
Use our free recommendation engine to learn which Network Access Control (NAC) solutions are best for your needs.
850,671 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
24%
Computer Software Company
14%
Financial Services Firm
8%
Government
7%
Computer Software Company
14%
Manufacturing Company
13%
Educational Organization
7%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

Which is better - Aruba Clearpass or Cisco ISE?
Aruba ClearPass is a Network Access Control tool that gives secure network access to multiple device types. You can adapt the policies to VPN access, wired, or wireless access. You can securely ...
What are the main differences between Cisco ISE and Forescout Platform?
OK, so Cisco ISE uses 802.1X to secure switchports against unauthorized access. The drawback of this is that ISE cannot secure the port if a device does not support 802.1x. Cameras, badge readers, ...
How does Cisco ISE compare with Fortinet FortiNAC?
Cisco ISE uses AI endpoint analytics to identify new devices based on their behavior. It will also notify you if someone plugs in with a device that is not allowed and will block it. The user exper...
What do you like most about macmon Network Access Control?
The ease of connecting with the client is valuable for me.
What needs improvement with macmon Network Access Control?
There is no information on the protocol where the clients stop to authenticate. There are some policies, but I don't know whether the device stopped on the authentication or authorization levels. I...
 

Also Known As

Cisco ISE
macmon NAC
 

Overview

 

Sample Customers

Aegean Motorway, BC Hydro, Beachbody, Bucks County Intermediate Unit , Cisco IT, Derby City Council, Global Banking Customer, Gobierno de Castilla-La Mancha, Houston Methodist, Linz AG, London Hydro, Ministry of Foreign Affairs, Molina Healthcare, MST Systems, New South Wales Rural Fire Service, Reykjavik University, Wildau University
More than 1,500 installations in all over Europe in all industries: Stepchange, Volkswagen, Vivantes Healthcare, MBDA Weapons, APS engineering, Alfred Ritter GmbH (Ritter Sport), Haßberg-Kliniken, 1. FSV Mainz 05 eV., Siempelkamp, AEB etc.
Find out what your peers are saying about Cisco Identity Services Engine (ISE) vs. macmon Network Access Control and other solutions. Updated: April 2025.
850,671 professionals have used our research since 2012.