"The user management has been very easy for the most part."
"Being able to sort on device types or devices with open ports is helpful when narrowing down assets of possible misconfigured devices that may be vulnerable on the network. We can take action on those devices based off of corporate policy."
"Forescout Platform provides multiple features. They have a very effective device fingerprinting in their cloud. You do not need to add any devices manually, such as in Mac devices. Other solutions you have to add IoT devices and OT devices manually. This is one of the major areas that Forescout Platform is excelling in."
"Being able to actively identify the client without a certificate allows you to control every device on your network regardless of the make, model, and software running. This allows for end-to-end security."
"The user interface is quite simple."
"We think it's simple. We think it's very useful and we really like reports and everything."
"It allows for good detection of all the vendor products we have on-site."
"The most valuable feature is the ease of deployment, which does not require the use of an agent."
"Patching is definitely the most valuable feature. It gives us good, centralized software, which comes in very handy since we are doing 400 servers at a time. It enables us to manage all the servers, and to deal with the application team regarding reboots and scheduling."
"I can reach people now that I couldn't have reached previously. We are saving about 25 percent in time."
"You don't have to be an advanced user. Rather, in terms of ease of use, this product is right where it needs to be."
"The big pros of Quest KACE Systems Management are its simple interface, and simple, direct management. It's very easy to maintain and manage the device, and it's easy to get it up and running. You can have it up and running in an hour..."
"The scripting part increases IT productivity because of the specialized software in our environments for students' courses. You need to use software which is not programmed by developers. A lot of software for building houses or other things is developed by normal guys, who do not have much skill in programming. When you need to install this type of software, it is very difficult. You have to install registry keys, etc. For that, it is very good to use the scripting part of this solution. So, you can automate this part as well."
"Pretty much all of the features are valuable. The inventory is very helpful to be able to keep track of our devices. The deployments make it easy to deploy new software packages or upgrade packages. The help desk is also a great tool for tracking problems and problem tickets."
"The most valuable feature of KACE is the mass package deployment. There are a lot of endpoint management solutions in the market. The way KACE responds is with the installation management feature, which is done in a very intelligent way, as well as scripting. It's wow. It's really wow. On top of that, there is a mass undeployment feature as well."
"With KACE, we were able to have a simplification of the software deployment management with more granularity and flexibility."
"As a user, if I am using a laptop that is Wi-Fi connected, Forescout identifies my port connectivity as one user license, and if I take that same laptop with the same username to a wired network, which is also the same network that is used for the Wi-Fi connection, Forescout detects it as a separate license."
"The biggest disadvantage is the pricing."
"They need to handle their Tier 1 cases differently. The biggest negative regarding Forescout is their support. Not having the ability to get instantly transferred to a support engineer for Tier 1 cases is pretty ridiculous."
"The licensing costs are quite high. With the amount of hardware we have, we need too many licenses to make the product effective and it's ultimately just too costly."
"When adding what is in scope to a policy, it would be nice if you could select multiple policies instead of one policy at a time to add what is in the scope for network segmentation. I have found that during the install and configuration of the policies that if you want to modify multiple policies or enable multiple policies that you need to define what is in the scope (IP range or segments) one rule at a time. This caused some slow downs when implementing policies."
"It's scalable, but not without a big investment. It doesn't do so well at the branch. At the home office, it does okay and not so well at the branch."
"The reporting feature needs improvement."
"The solution could always improve by adding more features to make it more robust."
"The GUI needs some work. I love all that it can do, however, it can be just be so cluttered at times."
"I still need better communication about which processes are really due and which processes are currently being processed. According to the initial setup service provider, there is still no real management or overview on KACE where you can really see 100 percent of what is going on as well as what is going to be processed next and whether I can influence the overall process. It could really help me if I knew, e.g. exactly in 10 minutes my colleague will be supplied with this or that software. I haven't found this yet. If they could add this, that would be cool. It is still missing and I haven't yet found something like this."
"There isn't a lot they need to improve with the solution itself at this point. It is pretty close to providing a single pane of glass for everything that we need for endpoint management specifically on all devices. There is very little that it doesn't provide for us, and for those, we have to go to other methods. There are some of the patching solutions that it doesn't take care of for us. So, we have to do those manually on the devices, and that's really the biggest thing. It doesn't do patching really well for non-Microsoft applications. The major application updates, particularly Windows updates, don't function nearly as well, but, for the vast majority of things, it does just fine. If they could improve in this aspect, that'd be great, but I don't know if they're going to be able to do that."
"There is always room for improvement. However, the system does most of what we need at this moment."
"Its dashboard needs improvement. Currently, there is no way to modify the dashboard. There should be more flexibility so that we can create views according to our use case."
"I would like them to implement VBScript language in KACE Systems Management. Currently, we can only use PowerShell."
"When we have to do a rebuild on these machines, although it is rare, I would like to be able to do more than 10 at a time. With the current limit, it slows me down because I have to set up 10, then the next 10, and so forth."
"The K1000 doesn't communicate well with some clients without SMB. There are some issues with getting things to image correctly because they rely on SMB, and SMB is a protocol that is being removed due to security reasons. Organizations are trying to rely less and less on SMB. I know Quest is aware of it. They've talked about having a new version that wouldn't rely on SMB for connection to the clients, but they haven't gotten there yet."
ForeScout offers Global 2000 enterprises and government organizations the unique ability to see devices, including non-traditional devices, the instant they connect to the network. Equally important, ForeScout lets you control these devices and orchestrate information sharing and operation among disparate security tools to accelerate incident response. Unlike traditional security alternatives, ForeScout achieves this without requiring software agents or previous device knowledge. The company’s solutions integrate with leading network, security, mobility and IT management products to overcome security silos, automate workflows and enable significant cost savings.
The KACE Systems Management Appliance provides a growing organization with comprehensive management of network-connected devices, including servers, PCs, Macs, Chromebooks, tablets, printers, storage, networking gear and the Internet of Things (IoT). KACE can fulfill all of the organization's systems management needs, from initial deployment to ongoing management and retirement.
Forescout Platform is ranked 4th in Endpoint Compliance with 19 reviews while Quest KACE Systems Management is ranked 5th in Endpoint Compliance with 27 reviews. Forescout Platform is rated 8.6, while Quest KACE Systems Management is rated 8.8. The top reviewer of Forescout Platform writes "Identifying potentially unwanted devices on the network has saved the organization time and money". On the other hand, the top reviewer of Quest KACE Systems Management writes "We can see everything for the endpoint management of devices using a single interface". Forescout Platform is most compared with Cisco ISE (Identity Services Engine), Aruba ClearPass, Fortinet FortiNAC, Armis and Portnox CORE, whereas Quest KACE Systems Management is most compared with Microsoft Endpoint Configuration Manager, Microsoft Windows Server Update Services, BigFix, Red Hat Ansible Automation Platform and Ivanti Patch for Linux, UNIX, Mac. See our Forescout Platform vs. Quest KACE Systems Management report.
See our list of best Endpoint Compliance vendors.
We monitor all Endpoint Compliance reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.