Try our new research platform with insights from 80,000+ expert users
reviewer1348911 - PeerSpot reviewer
Sr. Network Engineer at William Blair & Company
Real User
Monitors network access globally and improves overall security while reducing risk
Pros and Cons
  • "Forescout CounterACT has allowed us to better open our access and control wireless access globally from our HQ. This allows us to monitor the network access for every office globally. This has improved overall security, reducing risk and opening up the opportunity to provide greater end user flexibility."
  • "More detailed analysis during the authentication process, especially for troubleshooting access issues. We have found that troubleshooting RADIUS controls is quite arduous, as it is today. A trace function could easily resolve this by providing a means by which access issues from a certificate to passwords or accounts could easily be identified and remediated."

What is our primary use case?

To be able to improve security within our network. We needed Network Access Control (NAC). As such, we reviewed the available vendors who could provide this service to us and selected the Forescout CounterACT (CA) product primarily because we needed to be able to position the product in several regional locations. At the same time, we managed and controlled it locally and dynamically where we have it responding to a single control center. While we have implemented today strictly for wireless access, we will be extending that to include wired access in the future.

How has it helped my organization?

NAC: Forescout CounterACT has allowed us to better open our access and control wireless access globally from our HQ. This allows us to monitor the network access for every office globally. This has improved overall security, reducing risk and opening up the opportunity to provide greater end user flexibility. 

What is most valuable?

The key feature we use is AD integration. That feature needs the least amount of attention once set up. 

Monitoring and logging are the pieces that we use most day-to-day. These are used by both our network and security teams to ensure proper operation with minimal risk. Whether machines attempting access are firm managed, vendors visiting, or IoT, all are available within the CA appliance. We plan to extend the use to further support growth functionalities and new work from home initiatives going forward.

What needs improvement?

Better reporting and analysis of access (based on client) would be helpful. Also, a tool that allows tracing a user through the rules to authentication.

More detailed analysis during the authentication process, especially for troubleshooting access issues. We have found that troubleshooting RADIUS controls is quite arduous, as it is today. A trace function could easily resolve this by providing a means by which access issues from a certificate to passwords or accounts could easily be identified and remediated.

Buyer's Guide
Forescout Platform
June 2025
Learn what your peers think about Forescout Platform. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
860,592 professionals have used our research since 2012.

For how long have I used the solution?

Two years.

What do I think about the stability of the solution?

ForeScout CA has proven itself to be very solid.

What do I think about the scalability of the solution?

It is very scalable with a lot of features that we aren't even using yet today.

How are customer service and support?

Technical support has been great. They are very knowledgeable, helpful, and considerate.

Which solution did I use previously and why did I switch?

We used Cisco ISE but found that it did not have the flexibility that we needed within our organization.

How was the initial setup?

Setup was anything but straightforward, but this had nothing to do with Forescout. This is the nature of NAC solutions in general. 

Setup takes significant preplanning. Don't expect to just drop it in, then have it up and running, even if you already use an alternative NAC product. However, it is worth it.

What about the implementation team?

We used a Professional Services engagement from Forescout, but still experienced a lot of issues.

What was our ROI?

I don't know.

What's my experience with pricing, setup cost, and licensing?

The fact that we were allowed to spin up as many servers as we had need of to support our geographic requirements while paying for licensing as an enterprise truly set Forescout apart from the crowd and improved the way we could design our access.

Which other solutions did I evaluate?

We had ISE. As that product reached EOL, we considered whether there were alternatives to a NAC that we should consider but felt that a NAC is a security requirement.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
KimeangSuon - PeerSpot reviewer
KimeangSuonPre-Sale Consultant at Yip In Tsoi Co., LTD.
Real User

It is a great feature for devices visibility and save me a lot time to find view information as detail from BYOD to network access, and eyeExtend Module help me a lot for integrate with other third-party to improve orchestration. 

System Engineer at Maticmind S.p.A.
Real User
Very good features, an easy initial setup, with a recently improved licensing model
Pros and Cons
  • "I have noticed that in the last year the license model has changed from licensing the whole appliance to licensing the number of devices. It's more simple for a large installation, or a user to have CounterACT as their peripheral site in the company. It's a good choice to have changed the license policy."
  • "For the user, the policy that they have implemented sometimes needs adjustments. Sometimes the features that the customer asks for aren't involved in the main installation, and I need to bolt an add-on in. However, I never know if this policy is the right one when I do this."

What is our primary use case?

In both the environment I have used CounterACT to permit guests access and recognize automatically domain/white list members

How has it helped my organization?

It permit to treats the access policy without lists of macaddresses but by mean a dynamic policy

it permits to discover and classify a lot of devices that the organization forgets to have to manage




What is most valuable?

The last two or three versions that have been released on CounterACT Forescout have allowed for the possibility to search for any kind of device. Before that, I could only search for guest domain users.

What needs improvement?

For the user, the policy that they have implemented sometimes needs adjustments. Sometimes the features that the customer asks for aren't involved in the main installation, and I need to bolt an add-on in. However, I never know if this policy is the right one when I do this.

For how long have I used the solution?

I've been using the solution for five years.

What do I think about the stability of the solution?

It is a very good product.

What do I think about the scalability of the solution?

Very good policy has been released with the for device licenses that permit to "paint" the better solution using virtual appliances.

How are customer service and technical support?

It has very good support, it is very easy to contact the country post-selling engineer.

How was the initial setup?

The initial setup is very, very simple. It's more complex to tune the product in the company environment and usually, that requires two days. I need a few days to tune the product correctly. I do also need to do a lot of tests during the initial implementation.

What about the implementation team?

We implemented together vendor team.

What's my experience with pricing, setup cost, and licensing?

I have noticed that in the last year the license model has changed from licensing the whole appliance to licensing the number of devices. It's more simple for a large installation, or a user to have CounterACT as their peripheral site in the company. It's a good choice to have changed the license policy.

Which other solutions did I evaluate?

no, I have used only forescout and I haven't need to use anything else

What other advice do I have?

I have installed the solution for two customers. For one, I have used the CounterACT CT 1000. In another environment, I did a more complex installation and I have used the appliances and management in a tray.

Forescout is a very good company that delivers very good features. I love it. I'd rate it nine out of ten.

Which deployment model are you using for this solution?

On-premises

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company has a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Forescout Platform
June 2025
Learn what your peers think about Forescout Platform. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
860,592 professionals have used our research since 2012.
it_user1297917 - PeerSpot reviewer
Chief Executive Officer at a tech services company with 11-50 employees
Consultant
Offers full visibility of devices in the local network but is pricey
Pros and Cons
  • "We really like that we get full visibility of devices in the local network."
  • "It's scalable, but not without a big investment. It doesn't do so well at the branch. At the home office, it does okay and not so well at the branch."

What is our primary use case?

To find out what devices are in the network for our clients. We manage client's networks, so we have it on the client's network and they use it so they can make sure they know who's on the network and if it's secure.

What is most valuable?

We really like that we get full visibility of devices in the local network.

What needs improvement?

It could be better, they could work on the wide-area network and easier because it's a bit clumsy at the moment when we go on to a remote site. It works well in the head office but we've had challenges trying to install it across other sites. So pricing and support for branch offices. The interface is okay for the local office, but it's hard to get visibility from remote branches.

For how long have I used the solution?

We have been using the Forescout Device and Visibility Control Platform for about two years.

What do I think about the stability of the solution?

The Forescout Platform is very stable.

What do I think about the scalability of the solution?

It's scalable, but not without a big investment. It doesn't do so well at the branch. At the home office, it does okay and not so well at the branch.

How are customer service and technical support?

We have used technical support, it's been fine.

How was the initial setup?

The initial setup of Forescout Device and Visibility Control Platform is fairly complex.

What's my experience with pricing, setup cost, and licensing?

The Forescout Device and Visibility Control Platform is quite expensive. I would recommend it depending on the environment, but I would tell them to look at things that depend on their environment. There is other software as well.

What other advice do I have?

I would rate the Forescout Device and Visibility Control Platform at a six out of ten.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Owner at Securnet
Real User
Has a valuable Bring Your Own Device feature and good usability
Pros and Cons
  • "We think it's simple. We think it's very useful and we really like reports and everything."
  • "The biggest disadvantage is the pricing."

What is our primary use case?

We are using the Forescout Platform mostly for the Bring Your Own Device features. So we like it very much. We like the dashboard, the usability, and the Bring Your Own Device feature. That's our main usage of the Forescout.

How has it helped my organization?

We are really adapted to the product. So we find it perfect.

What is most valuable?

Now that I'm used to it I don't see many places to improve it. We really like it as it is. We think it's simple. We think it's very useful and we really like reports and everything. We like it very much.

What needs improvement?

The biggest disadvantage is the pricing. I can see that the product has value. I see that the product is really good. I think that the pro is it's really stable, but price-wise, I think it's bad. But you have to pay for quality. But the pricing can be a little bit improved in my point of view. It will be harder to choose if we start comparing features and prices and when we made the initial choice. Our choice was based mainly on features. There was no price comparison involved. I think that it is not in the same landscape. The landscape has changed and there are a lot of contenders in this field. The price scale could be improved.

For how long have I used the solution?

I have worked with Forescout Device Visibility and Control Platform for two years.

What do I think about the stability of the solution?

The availability is one hundred percent available. So we don't have issues with that also, so very good.

What do I think about the scalability of the solution?

The installation is small enough, it's 500 users and there are no issues with the performance. So our escalation costs, we are small so it's perfect. I've had no issues. The availability is one hundred percent available. So we don't have issues with that also, so very good.

How are customer service and technical support?

Technical support was really great at the beginning of the setup. At the moment we don't use it because the product is very good. I cannot say if it's good or it's bad because we don't use it, we don't see any issues. It's very good. So for me, I cannot tell you if the support is fast or it's slow, or if it's good or bad because we don't use it. No, we don't use the support.

How was the initial setup?

The initial setup was straightforward. We have help from the manufacturer, so to put it in place it was straightforward. We have been using it for two years now with no issues.

What's my experience with pricing, setup cost, and licensing?

The pricing is really bad. We think that it's expensive. So the pricing part is expensive.

What other advice do I have?

I recommend doing a compression demo. If people use it, they will buy it. So they have to see the product in place. That's the main recommendation is to do a proof of concept. If they do, they will buy it. 

I would rate Forscout Device Visibility and Control Platform at a nine out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Chief Technology Officer at Penta Global Limited
Real User
Easy to use, quick to set up, and offers good management
Pros and Cons
  • "It allows for good detection of all the vendor products we have on-site."
  • "The solution could always improve by adding more features to make it more robust."

What is our primary use case?

Right now, we are looking to implement the solution in a hospital where a lot of people come to the lobby and are outsiders or guests. The VOD and guests' mobile phones will be able to connect to the Wi-Fi. This is the latest use case we are working on.

What is most valuable?

The solution offers very good management.

It allows for good detection of all the vendor products we have on-site.

The solution is very similar to other solutions, so it's not hard to figure out how to use it.

What needs improvement?

The solution could always improve by adding more features to make it more robust.

For how long have I used the solution?

I deployed the solution for one project about a year and a half ago. I may implement another one for another project this year.

What do I think about the scalability of the solution?

The scalability is quite good. It does depend on the complexity of the setup, but for our purposes, we've never run into any issues.

How are customer service and technical support?

We've never had to contact technical support. We've never had a need to do so yet. I can't speak to the level of service they provide. We have our own team in-house that will troubleshoot if we run into problems.

How was the initial setup?

The initial setup is pretty straightforward. It's not complex.

It took us about one week to deploy the solution. It didn't take long to set everything up.

What other advice do I have?

I'm basically focusing on the product line right now. It's pretty good. The nice thing about it is that at last, we have a kind of software that's very easy to work with.

While most people in most of the cases do not want to go for Mac, in the case of cybersecurity, I believe it is very important to do so. In enterprise cases, the common culture is the DYD. Organizations need to add some sort of network access control to prevent many issues.

I'd rate the solution itself eight out of ten overall. It's quite good, but it could always continue to improve.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
reviewer1155042 - PeerSpot reviewer
Chief Information Security Officer at a tech services company with 501-1,000 employees
Real User
Good compliance with simple user interface, and lots of plugins
Pros and Cons
  • "The user interface is quite simple."
  • "The solution does have a bit of complexity, and there's some complexity in the deployment. Users need to be trained before undertaking an initial setup."

What is our primary use case?

We've been able to use the solution for a couple of tasks including using it to monitor for anti-virus compliance. We also use it to monitor the health of the security history of our endpoints.

What is most valuable?

It's a great solution. We use it for the internet here and it's been helpful. It's a great product for our Mac PCs and we can implement it to both our wireless and our wired network.

It's very quick.

The compliance aspects of the solution are excellent and one of the solution's best features. It helps us maintain the compliance of our endpoints.

In terms of physical tools, we are very satisfied.

In our organization, the solution provides us with a sound perimeter. 

The user interface is quite simple.

The version we're currently on, 8.6, has a lot more plugins than past versions. Now you can plug in anything you want. It helps us to utilize the product more fully.

What needs improvement?

There's always room for improvement for the solution. Off the top of my head, I really can't determine anything that is lacking right now. Basically there is no room for improvement that I can describe.

The solution does have a bit of complexity, and there's some complexity in the deployment. Users need to be trained before undertaking an initial setup.

What do I think about the stability of the solution?

The solution has very good uptime, and we have had no issues at all in terms of stability.

What do I think about the scalability of the solution?

We didn't have any issues with the ForeScout scalability. So far, we've agreed with the pricing required for both the hardware and the software. 

How are customer service and technical support?

We haven't been in touch with technical support, so I can't speak to their level of service and how they interact with clients.

How was the initial setup?

The solution is not that simple, however, it's not complex, either. It's a solution that does so much it needs a bit of understanding to properly use it. Once team members go for basic training, they should be able to handle it. The basic training will also give team members a networking background to be able to master the solution. It's not very difficult, but a person will have to be a bit technical.

What other advice do I have?

I'd advise companies to ensure their teams are well trained in ForeScout before starting implementation of any kind. Those setting up and using the solution should have a basic background in networking. If users are comfortable with configuring, they can create processes for the environment. That way, it will be deployed properly.

Teams should also test the solution first before they launch so there won't be any surprises. If they need to make changes, they need to manage the process properly.

I'd rate the solution nine out of ten. If it was a bit less complex, I'd give it perfect marks.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer1259856 - PeerSpot reviewer
Director of Information Technology at a non-profit with 1,001-5,000 employees
Real User
Blocks rogue devices to help keep our data secure
Pros and Cons
  • "The most valuable feature is the blocking of USB devices."
  • "The ability to block external devices in Mac is lacking and needs to be added."

What is our primary use case?

We needed this solution in order to block rogue devices (laptops, phones, etc) and block external devices.

How has it helped my organization?

ForeScout has given us the ability to block unwanted devices.

What is most valuable?

The most valuable feature is the blocking of USB devices.

What needs improvement?

The ability to block external devices in Mac is lacking and needs to be added.

For how long have I used the solution?

We have been using ForeScout CounterACT for three years.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Founder at EME Pty Ltd
Real User
Easy to manage and prevents network access by rogue devices throughout our network
Pros and Cons
  • "The most valuable features are remote access and administration scripts."
  • "We experienced some detection issues when checking compliance for the Sophos agent."

What is our primary use case?

We use this solution for Network Access Control to prevent rogue devices connecting into the network.

How has it helped my organization?

This product allows monitoring and control of the PC fleet across the company.

What is most valuable?

The most valuable features are remote access and administration scripts.

What needs improvement?

We experienced some detection issues when checking compliance for the Sophos agent.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Download our free Forescout Platform Report and get advice and tips from experienced pros sharing their opinions.
Updated: June 2025
Buyer's Guide
Download our free Forescout Platform Report and get advice and tips from experienced pros sharing their opinions.