We use the Forescout Platform for radius authentication, as well as visibility control and enforcement. Such as discovery, classification, control, and orchestration for all possible use cases.
Service Line Manager (Service Operations Expert) - Network Access Control at a pharma/biotech company with 10,001+ employees
Good visibility, control, and orchestration
Pros and Cons
- "This is clearly the best product for the NAC use cases in this field for Forescout."
- "As a product, there is nothing to complain about. However, they should improve their overall support. You need that level of knowledge, that level of information is clearly not available. First and foremost, that information is not accessible. The second point to mention is that once you purchase the later support and services. That is, they will continue to charge you for every service."
What is our primary use case?
What is most valuable?
This is clearly the best product for the NAC use cases in this field for Forescout. It is difficult to implement. I wouldn't say it's complicated in that sense. It all depends on who is using it.
If people don't understand the product, it's obviously complicated because it has multiple components that are difficult to mix and match and bring into the environment, which we faced a couple of years ago. But now that we know how the products and different licensing models work, we can bring in the right components, such as modules and all. It's kind of like once you know the product is simple. Otherwise, you must understand that this is somewhat complicated.
What needs improvement?
The product is excellent. As a product, there is nothing to complain about. However, they should improve their overall support.
Let me provide an example. Assume you are in the United Kingdom, and you are also familiar with the cars in your neighborhood, and any manufacturer you have heard of. And let's say Forescout is one of the niche products, similar to Rolls-Royce. You know that Rolls-Royce is good, but you need some kind of information accessibility to use that.
The comfort is good, and you can obviously drive it, but you need to understand all of the features. You need that level of knowledge, that level of information is clearly not available.
First and foremost, that information is not accessible.
The second point to mention is that once you purchase the later support and services. That is, they will continue to charge you for every service.
Things they should have told you ahead of time are that if you run into problems during the deployment, they will keep asking you to engage the product's professional services, which they will charge you for.
And from the standpoint of support, they should be adaptable. When they are aware that customers have made significant investments in these expensive licenses. And it is expected that they will receive adequate assistance. That is where they are falling short.
You own a Rolls-Royce, but you are having trouble making the most of its features and functions.
For how long have I used the solution?
I have been working with Forescout Platform for five or six years.
I am working with the latest version.
Buyer's Guide
Forescout Platform
June 2025

Learn what your peers think about Forescout Platform. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
856,873 professionals have used our research since 2012.
What do I think about the stability of the solution?
Forescout Platform is a stable solution.
If you do it correctly in terms of configuration and deployment. If you know the necessary prerequisites, yes it is very stable.
What do I think about the scalability of the solution?
The Forescout Platform is scalable.
We are using it, and we have currently rolled out this solution to 55% of our organization.
We have approximately 400,000 users.
Which solution did I use previously and why did I switch?
We also use Cisco ISE. I am working with the latest version which is version 3.1.
What's my experience with pricing, setup cost, and licensing?
It is expensive and there are extra costs for the support.
The price depends on your environment. We do get a discount.
It is expensive because you have to pay for their CSM, the customer's access manager, and their professional services on top of that, and they charge you roughly $400 per hour, which is overhead. I find it to be expensive.
What other advice do I have?
It is purely based on the use case. If they have any issues with OT or IoT, this is the best solution. Otherwise, they can rely on other products if they are a typical non-manufacturing or non-healthcare organization.
ISE is also extremely expensive. They can look for anything cheaper than this. It is dependent on the use cases.
Because IoT and OT products are widely used in healthcare and manufacturing, and Forescout is the best.
I would rate Forescout Platform an eight out of ten. They mostly fail to provide support during and after deployment.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.

Lead Technologist at Booz Allen Hamilton
Effective asset management, but user experience and technical support could be improved
Pros and Cons
- "It's one of the tools that has given the federal government visibility into network devices and everything."
- "I believe that the overall user experience has not always been preferable."
What is our primary use case?
We use the Forescout Platform primarily for asset management.
How has it helped my organization?
The federal government's continuous diagnostics and mitigation programs are the focus of the current project I'm working on.
It's one of the tools that has given the federal government visibility into network devices and everything.
What needs improvement?
The most common complaint I hear about Forescout is about their technical support.
Some sort of highly scalable platform, such as a private cloud, that can be distributed across a network quickly and grow rapidly, would be beneficial.
I believe that the overall user experience has not always been preferable.
For how long have I used the solution?
I have been working with Forescout Platform since 2018.
I haven't had enough direct experience with the current project to know, but I know the federal government has a variety of various stages of Forescout deployment, but I believe it's just different versions of the CounterACTs appliances and such.
What do I think about the stability of the solution?
It has a place in terms of stability. I believe Forescout is likely to compete with other NAC tools used by agencies, such as Cisco ISE and new EDR tools that are entering the market. I believe, will be considered. But, overall, the asset management, is effective.
What do I think about the scalability of the solution?
In terms of our deployment, it's basically just buying more CounterACT appliances whenever we need to scale up. It can be done, but it's not scalable in the way that a cloud deployment is, it's somewhere in the middle.
We have a large number of users, in our organization.
It has been implemented in a large number of federal agencies, including the Departments of Health and Human Services, Agriculture, and the Treasury. It's quite large.
I believe that the current state should be maintained. I don't believe there are any major plans to increase our usage. Maybe just upgrades or future license upgrades, or something like that.
How are customer service and support?
Technical support needs improvement. They are not very responsive to existing customers.
My interactions with them have been satisfactory, but I've heard from federal agencies that they had difficulties because they brought it to us.
Which solution did I use previously and why did I switch?
When we arrived, Forescout was still in the process of being deployed. I don't believe they had the kind of capability that Forescout provides prior to our arrival. If anything, they had different NAC tools.
How was the initial setup?
Because of the way it is deployed, the initial setup was complex.
I would rate the initial setup a three out of five.
It took a long time to complete. It's a massive deployment, depending on the agency, it could take at least six months to get it up and running and collect the data we require. Some of it is still ongoing.
What about the implementation team?
To my knowledge, Forescout did the majority of the deployment.
We are Forescout Platform integrators, consultants, and partners.
Most agencies, I believe, have NAC engineers who manage it, and they most likely have training skillsets for it. I would say that most shops require two to three, three to four people to maintain.
What was our ROI?
In terms of ROI, I've never seen any data.
What's my experience with pricing, setup cost, and licensing?
I don't have pricing information.
There are no additional costs that I am aware of.
Which other solutions did I evaluate?
They evaluated other solutions before choosing the Forescout Platform.
What other advice do I have?
Before you begin deploying it, I would suggest that you define how you intend to use it. Just have an end state in mind so that you can build towards it and ensure you have all the functions you need for the design in place. Whatever you want to do with the data that comes out of it, try to define it first.
I would rate Forescout Platform a six out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer:
Buyer's Guide
Forescout Platform
June 2025

Learn what your peers think about Forescout Platform. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
856,873 professionals have used our research since 2012.
Senior Manager Network Design at MEEZA, Managed IT Services Provider
Effortlessly deployable with amazing technical support
Pros and Cons
- "Ease of deployment There's a great support team that becomes actively engaged whenever we encounter issues. Their technical support is amazing. Good documentation is available. The product is stable. The solution is highly scalable. I recommend using the solution because it gives verified control over the environment. It has a great visibility feature."
- "It does not support the TACACS+ protocol."
What is our primary use case?
We use the solution for network admission control. It manages the admission of endpoints to the networks.
What is most valuable?
Firstly, I like the stability. Secondly, the ease of deployment— it's not complex. Thirdly, there's a great support team that becomes actively engaged whenever we encounter issues. Their technical support is amazing. Fourthly, good documentation is available. We have detailed information about the product.
What needs improvement?
For sales purposes, the product has limitations. It does not support the TACACS+ protocol. This creates a need for another product to work with.
For how long have I used the solution?
I have been using this solution for the past two and a half years.
What do I think about the stability of the solution?
The product is stable. Once you deploy it, you don't need to touch it again.
What do I think about the scalability of the solution?
The solution is highly scalable. I currently use it for corporate use within my company and for other clients. We have three to four engineers for deployment and maintenance tasks.
How are customer service and support?
We have rarely contacted customer service and support, as the website is straightforward.
How was the initial setup?
The initial setup was straightforward and not complex. The deployment process took six weeks. It's shorter than the typical six months for similar products.
The deployment process involves an initial assessment, checking the security policy against the required tasks, preparing the network for deployment, and then the deployment itself.
What other advice do I have?
I recommend using the solution because it gives verified control over the environment. It has a great visibility feature. Also, it gives visibility on what's happening on the network. Proceed with the prerequisites, particularly the initial assessment. It has to be conducted properly. Otherwise, the solution might not follow a straightforward path.
The first step is the initial assessment, followed by the second step of collecting clear requirements. Clarity in requirements is crucial because the solution can be directed in any direction you tell it to go. Therefore, you need to know exactly what you need to do. Overall, I rate the product a nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Senior Information Security Engineer at United Bank for Africa
Highly customizable, flexible, and helpful support
Pros and Cons
- "The most valuable feature of the Forescout Platform it's highly customizable and flexible."
- "If older network devices are used there can be some compatibility issues while using the Forescout Platform. Additionally, if the switches that are deployed in your infrastructure are not captured properly to the endpoints there might be some difficulties with Forescout Platform trying to monitor the network traffic. Traffic management is an area the vendor should work on."
What is our primary use case?
I am using the Forescout Platform for access control, a central management dashboard of all endpoints, and blocking.
What is most valuable?
The most valuable feature of the Forescout Platform it's highly customizable and flexible.
What needs improvement?
If older network devices are used there can be some compatibility issues while using the Forescout Platform. Additionally, if the switches that are deployed in your infrastructure are not captured properly to the endpoints there might be some difficulties with Forescout Platform trying to monitor the network traffic. Traffic management is an area the vendor should work on.
For how long have I used the solution?
I have been using the Forescout Platform for approximately four years.
What do I think about the stability of the solution?
I rate the stability of the Forescout Platform a seven out of ten.
What do I think about the scalability of the solution?
We have security engineers and support workers using the solution.
I rate the scalability of the Forescout Platform a seven out of ten.
How are customer service and support?
I rate the support of the Forescout Platform a seven out of ten.
How would you rate customer service and support?
Positive
How was the initial setup?
The time frame for the implementation can vary depending on what needs to be configured. It is important to have support from the vendor for the setup, it is not easy.
What about the implementation team?
We used assistance support for the implementation of the solution.
What's my experience with pricing, setup cost, and licensing?
The solution is not priced low. There are no hidden costs.
I rate the price of the Forescout Platform a seven out of ten.
What other advice do I have?
One support person is enough for the maintenance of the solution if everything was set up correctly.
I would recommend this solution to others.
I rate the initial setup of the Forescout Platform an eight out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer:
Chief Executive Officer at Grand Ortus Solutions Pvt Ltd
Comprehensive and advanced cybersecurity excels in providing device visibility and control, robust integration capabilities
Pros and Cons
- "The standout strength of this solution lies in its unique capability to effectively manage unmanaged switches."
- "Regarding pricing, there is room for improvement to enhance competitiveness with other vendors and solutions."
What is our primary use case?
It enhances cybersecurity by allowing us to monitor and manage all connected devices on our network.
What is most valuable?
The standout strength of this solution lies in its unique capability to effectively manage unmanaged switches. In addition to its comprehensive feature set, it focuses on AAA for enhanced security and network control.
What needs improvement?
Incorporating additional features such as NetFlow DLP, would serve as valuable add-ons. Regarding pricing, there is room for improvement to enhance competitiveness with other vendors and solutions.
For how long have I used the solution?
I have been working with it for seven months.
What do I think about the stability of the solution?
I would rate its stability capabilities nine out of ten.
What do I think about the scalability of the solution?
Scaling it poses no challenges or obstacles. I would rate it nine out of ten.
What about the implementation team?
The deployment time varies based on the customer's network and its complexity. It could range from as little as five to seven days to one or two months, depending on factors such as the number of switches involved. I oversee a maintenance team comprising over 35 skilled individuals dedicated to network and security solutions. Our technical staff is well-rounded, with three experts specializing in Mac solutions, while others are adept in various network features such as routing and firewall management.
What's my experience with pricing, setup cost, and licensing?
The pricing structure should be enhanced.
What other advice do I have?
Overall, I would rate it nine out of ten.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company has a business relationship with this vendor other than being a customer:
Chief Information Officer at Amarel Ltd.
Robust solution with great asset management
Pros and Cons
- "Forescout Platform has made it possible to block people working near our construction sites who should not have access to our network."
- "Forescout Platform isn't flexible with connections to devices like printers and forces you to re-enter details like the MAC address after any breakdowns."
What is our primary use case?
I use Forescout Platform in the construction industry to monitor connections to our cloud for ERP and file services.
How has it helped my organization?
Forescout Platform has made it possible to block people working near our construction sites who should not have access to our network.
What is most valuable?
Forescout Platform's best feature is asset management.
What needs improvement?
Forescout Platform isn't flexible with connections to devices like printers and forces you to re-enter details like the MAC address after any breakdowns.
For how long have I used the solution?
I've been using Forescout Platform for about half a year.
What do I think about the stability of the solution?
Forescout Platform is stable.
What do I think about the scalability of the solution?
Forescout Platform is scalable.
Which solution did I use previously and why did I switch?
I previously used Portnox and ISE.
How was the initial setup?
Forescout Platform is very complex to implement because it has a lot of features, and all of them need to be configured.
What about the implementation team?
We used a third-party team.
What's my experience with pricing, setup cost, and licensing?
Forescout Platform isn't cheap, but it's the best solution for the environment I'm dealing with. We paid between $20,000 and $25,000 for a three-year license with maintenance.
Which other solutions did I evaluate?
I evaluated FortiNAC, and Forescout Platform is more robust and advanced.
What other advice do I have?
I'd give Forescout Platform a rating of nine out of ten.
Which deployment model are you using for this solution?
Private Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Pre-Sale Consultant at Yip In Tsoi Co., LTD.
Does not require upgrades to existing networks and integrates with products from multiple vendors
Pros and Cons
- "I can integrate Forescout with products from multiple vendors in my environment, and also, the integration is searchable. It can be used with 802.1X and non-802.1X to integrate with my existing network. I don't need to upgrade any existing networks in my system, and I don't need to replace existing devices to integrate with Forescout. I find value in not having to spend money upgrading existing devices and networks."
- "Other solutions have TACACS+, but Forescout does not. In the next release, I would like to see Forescout have accounting."
What is our primary use case?
Mostly, I use this solution for endpoint compliance, antivirus updates to block malicious traffic access to the internal network, and for visibility, to see who is connected to the network and the infrastructure.
What is most valuable?
I can integrate Forescout with products from multiple vendors in my environment, and also, the integration is searchable. It can be used with 802.1X and non-802.1X to integrate with my existing network. I don't need to upgrade any existing networks in my system, and I don't need to replace existing devices to integrate with Forescout. I find value in not having to spend money upgrading existing devices and networks.
What needs improvement?
Other solutions have TACACS+, but Forescout does not. In the next release, I would like to see Forescout have accounting.
For how long have I used the solution?
I've been working with this solution for around two years.
What do I think about the scalability of the solution?
The scalability varies. If you have 1000 endpoints, Forescout recommends the 2000 endpoint plan. Depending on the scalability you choose, the hardware and license can be extended.
We currently have three people who use this solution, including an
IT security person, an administrator, and a technical person.
How are customer service and support?
For technical support, they have ActiveCare Basic, ActiveCare Advanced, and ActiveCare Premium. Mostly, I have used ActiveCare Advanced for technical support requests, and they have responded depending on the severity and also my support plan.
How was the initial setup?
With regard to initial setup, it can take a bit to customize policies. Forescout requires in-depth knowledge to customize policies to monitor endpoint visibility.
It takes around one or two hours to deploy the software and have it up and running. This includes configuration and integration with the existing network. Customization takes a long time because some departments require more customization.
What about the implementation team?
I had a consultant do the deployment, and it could have been better.
What's my experience with pricing, setup cost, and licensing?
You can have a flexible license depending on your environment.
What other advice do I have?
If you are looking for a NAC solution and you want to integrate the existing network infrastructure without upgrades or without replacing existing devices, then you should go with Forescout. Also, if you don't want to run an agent in the endpoint, Forescout is the way to go because it does not require an agent. It is optional. If you are concerned about having to run too many agents in your endpoint and don't want to add an another agent, this solution is a good choice.
Because Forescout has flexible integration and flexible pricing, I would give it a general rating of nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Senior Cyber Security Engineer at Beta Information Technology
The solution has easy implementation and operation, along with a user-friendly GUI
Pros and Cons
- "The solution's implementation and operation are very easy."
- "The solution's customer support is bad and should be improved."
What is our primary use case?
I use the Forescout Platform for different customers from the enterprise, banking, and telecom sectors.
What is most valuable?
The solution's implementation and operation are very easy. The solution's GUI is very user-friendly. It doesn't have a lot of components. It has only one device or a few devices connected to one management with only one agent.
What needs improvement?
The solution's customer support is bad and should be improved. When our customers try to reach or discuss with the support team, they don't even answer.
For how long have I used the solution?
I have been using Forescout Platform for two years.
What do I think about the stability of the solution?
I rate Forescout Platform a seven out of ten for stability.
What do I think about the scalability of the solution?
I rate the solution an eight or nine out of ten for scalability.
How was the initial setup?
The solution’s initial setup is very easy.
What other advice do I have?
Overall, I rate Forescout Platform an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner

Buyer's Guide
Download our free Forescout Platform Report and get advice and tips from experienced pros
sharing their opinions.
Updated: June 2025
Product Categories
Network Access Control (NAC) IoT Security Endpoint Compliance Extended Detection and Response (XDR)Popular Comparisons
CrowdStrike Falcon
SentinelOne Singularity Complete
Microsoft Defender XDR
Cisco Identity Services Engine (ISE)
Cortex XDR by Palo Alto Networks
Fortinet FortiClient
Trellix Endpoint Security Platform
Aruba ClearPass
Trend Vision One Endpoint Security
Trend Vision One
Fortinet FortiNAC
Nozomi Networks
F5 BIG-IP Access Policy Manager (APM)
Buyer's Guide
Download our free Forescout Platform Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- PRICING FOR FORESCOUT CT10K APPLIANCE
- ForeScout vs. Cisco ISE
- What are the main differences between Cisco ISE and Forescout Platform?
- Comparison of Aruba Clearpass, Bradford Networks and Forescout NACs
- How would you compare Cisco ISE (Identity Services Engine) vs Forescout Platform?
- PRICING FOR FORESCOUT CT10K APPLIANCE
- When evaluating Network Access Control, what aspect do you think is the most important to look for?
- Which is the best choice of Zero Trust Network Access (ZTNA)?
- What is your recommended Network Access Control (NAC) solution for an enterprise?
- Cisco ISE (Identity Services Engine) vs Fortinet FortiNAC: which solution is better and why?