No more typing reviews! Try our Samantha, our new voice AI agent.

Appgate SDP vs Forescout Platform comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
22
Ranking in other categories
Secure Web Gateways (SWG) (6th), Internet Security (3rd), Web Content Filtering (1st), Cloud Access Security Brokers (CASB) (7th), ZTNA as a Service (8th), Secure Access Service Edge (SASE) (8th)
Appgate SDP
Average Rating
8.6
Reviews Sentiment
6.3
Number of Reviews
7
Ranking in other categories
ZTNA as a Service (20th), ZTNA (9th), Secure Access Service Edge (SASE) (20th), Microsegmentation Software (9th)
Forescout Platform
Average Rating
8.4
Reviews Sentiment
6.5
Number of Reviews
79
Ranking in other categories
Network Access Control (NAC) (6th), IoT Security (4th), Endpoint Compliance (3rd), Extended Detection and Response (XDR) (19th)
 

Featured Reviews

Ashok Ananthula - PeerSpot reviewer
Senior Consultant Proxy Engineering at a financial services firm with 10,001+ employees
Cloud gateway has strengthened remote web security and now needs better Mac and ISP support
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent for the Mac agents. That is where in 2025, we had to migrate to the Palo Alto-based platform. If your use case is for just Windows laptops,you can consider this platform as an option One issue is the data center resiliency part. In India especially, they are not tied up with the Tier 1 ISPs like Tata or Airtel; they were having Tier 2 ISPs and encountered many issues reaching few major sites that my organization depends on, and they were having problems that they could not fix quickly. They also lack a mechanism to route that traffic within their data center; rather, they ask customers to make a pac file change to route it to Singapore explicitly. It would be better if they route from their backend , i mean even if I send it to India DC, they should be able to route it internally to make that work; however, they fail to do that and ask the customer to route it in the pac file. Another suggestion is that in China, they do not have the proper setup; they used to have numerous problems with slowness and lack of premium circuits in China as well. That leads to multiple sites working slowly with latency-related issues. So the main issue is the ISP-related problems that need to be solved.
RR
Senior Full Stack Engineer at a manufacturing company with 10,001+ employees
Zero-trust access has improved our secure VPN connectivity and protected internet usage
If I could change or improve anything about Appgate SDP, it would be to enhance the user experience by improving the UI so that it is more explanatory. Currently, the UI feels as though it is doing something behind the scenes, and at first sight, nobody can understand what this application is for. I think that is the main thing regarding needed improvements.
AshishKumar Rai - PeerSpot reviewer
Security Consultant at a tech vendor with 10,001+ employees
Comprehensive visibility has strengthened endpoint control and automated threat response across networks
When it comes to improving Forescout Platform, I have faced some issues recently, particularly with the switch integration part. When integrating a switch, it asks for the vendor type, and often it does not match. For example, one series of HP switches may not be found in that vendor list. This leads to frustration because you have to check again with different HP models, and once you integrate a switch, you cannot edit the vendor list without removing it. Other issues are being worked on, particularly related to switch integration. I believe they will be fixed in the next upgrade or patch fix. There are no major issues, but the configuration changes needed for the switch model are necessary, and I think it would help if during integration, an admin user could check the password or credential used, as they currently cannot see the password after it is entered and saved.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"iboss is among the few products providing inline filtering where no application is needed on the device."
"The iboss system is highly reliable. The false positive rates are small compared to some other systems we've experienced through other partner agencies who use competing solutions."
"We chose iboss for both zero trust and proxy (SWG) because their SWG was superior."
"From a use-case scenario, what I like the most is the plug-in. I like the fact that we can do the filtering of these devices offsite independent of the network they are connected to, and we do not have to have traffic coming back inside our network."
"Technical support is pretty sharp and very responsive."
"The security aspect of the solution, particularly the malware behind it, is excellent."
"The iboss solution gives me the ability to scan the traffic through all the ports, through all the 131,000 PCP and UDP ports, and with this ability, we have the granularity also for consults over social media and applications on mobile, and this is an advantage that the customers are looking for right now."
"I would definitely recommend iboss for web filtering purposes to other organizations or individuals."
"The interface is really friendly. It's simple to understand."
"It is a scalable solution...The support answers your questions very fast."
"Appgate SDP has positively impacted my organization, as we are using it to securely access the internet after the cyber attack."
"The simplicity of the SDP platform is a standout feature; instead of navigating through intricate details, users can seamlessly connect to the company's network or switch to the internet with minimal effort."
"The flexibility of the tool is valuable. It is very robust. It has a very robust configuration capability."
"One of the most important features is stopping lateral movement across our network."
"The flexibility of the tool is valuable; it is very robust, has a very robust configuration capability, is pretty well documented, and is also good interface-wise."
"It is pretty stable."
"Ease of deployment There's a great support team that becomes actively engaged whenever we encounter issues. Their technical support is amazing. Good documentation is available. The product is stable. The solution is highly scalable. I recommend using the solution because it gives verified control over the environment. It has a great visibility feature."
"The scalability is good."
"The most valuable feature is the ease of deployment, which does not require the use of an agent."
"Provides a good overview of all devices on a network."
"Automated policy enforcement is particularly valuable as it significantly reduces the need for manual intervention, thus enhancing efficiency and security."
"This is clearly the best product for the NAC use cases in this field for Forescout."
"This solution can be used to organize guest portals, integrate switches, and create policies, and some of its standard use cases also include completing key process upgrades and anti-virus of Windows OS."
"The most valuable features of the Forescout Platform are NAC for sharing, Network Access Control, and port sharing of the devices."
 

Cons

"It is stable, but due to growth, it can sometimes be less stable than wanted."
"SSL decryption: We had issues with learners using apps instead of using web browsers."
"One thing I would like to see differently with their Zero Trust platform is that some of the AI aspects related to high-risk activities have more false positives."
"SSL decryption: We had issues with learners using apps instead of using web browsers. This type of encryption is tough for any appliance in a BYOD environment."
"Sometimes the agent stops working in iboss, and we have to reinstall the agent."
"Sometimes when you call in support, you get someone who is just following a sheet. It feels like a runaround. You feel that you are running into that support wall."
"I have heard they are doing DDoS filtering, but I am not certain if they are implementing it correctly."
"Sometimes, obviously, there are bugs."
"One thing that kind of sticks out to me is the ability to do a proper non-split tunnel."
"One thing that kind of sticks out to me is the ability to do a proper non-split tunnel. VPN tunnel-wise, it is not really a true unsplit tunnel, but I think that's just because of the way it's designed. A split VPN basically allows your system to talk to other systems without being forced down the tunnel. A VPN running in a non-split tunnel mode forces all the traffic down the tunnel to wherever you're VPNing to. It forces the traffic down so that the traffic is subject to the firewall and rules that you have in your corporate environment and such. It helps to prevent remote malicious folks that may be talking directly to that box from piggybacking into the corporate environment through it. They do it partially, but it would be nice to see more of an enterprise-level solution there."
"It would be better to connect to an application portal from any device. Documentation and support could be better."
"One limitation is that it's harder to provide access to multiple applications in the company with Appgate, but that's probably because of poor management."
"On the cloud, when you make some changes, it may be difficult."
"On the cloud, when you make some changes, it may be difficult."
"If I could change or improve anything about Appgate SDP, it would be to enhance the user experience by improving the UI so that it is more explanatory."
"They could provide a single-box solution to manage tools for 4000 users. Additionally, they could add extra features to enhance remote micro connection."
"We have found that the agent-based authentication, available within this solution could be improved."
"It's scalable, but not without a big investment. It doesn't do so well at the branch. At the home office, it does okay and not so well at the branch."
"The console is a fat client, and a web interface would be preferable."
"From the wireless standpoint, I would say that the reliability was somewhat poor, but CounterACT worked with us over a couple month period and did push out a patch."
"The licensing costs are quite high. With the amount of hardware we have, we need too many licenses to make the product effective and it's ultimately just too costly."
"It is quite expensive, but there are specs for small companies as well."
"The configuration of the rules is both a blessing and a curse. While it is almost infinitely configurable, knowing how to get the product to do what you want it to do can be difficult, especially at first."
"The technical support could be improved in terms of response time and first-level support quality."
 

Pricing and Cost Advice

"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"It is probably in line with other solutions, but I do not deal with the financial side."
"The overall pricing for iboss is very competitive and transparent."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"It is expensive compared to one of its competitors."
"The pricing is according to the market price. It is not a very cheap solution. They have some very aggressive promotions to sell the product in the market."
"It is a pretty expensive tool. It is maybe about $20,000 per year for a hundred users or so."
"We pay $100 per user per month. One license for the site is around $17."
"We went with the virtual appliance option. The biggest cost to running these types of appliances would be to either have multiple virtual appliances at every data center or running Remote SPAN hardware to provide you the real-time network visibility."
"We paid between $20,000 and $25,000 for a three-year license with maintenance."
"The price of Forescout is reasonable when compared to Cisco ISE."
"It's about $160,000, but I'm not sure how long that is for or what it includes. Because we were a test base, we were provided with servers, but now, Forescout wants us to buy servers because those servers are now end-of-life or end-of-service. For our lifecycle management program, in order to get a refresh on those servers, we would have to buy servers or use our own network resources to house Forescout. Forescout takes up about 13 or 14 virtual CPUs."
"It is expensive because you have to pay for their CSM, the customer's access manager, and their professional services on top of that, and they charge you roughly $400 per hour, which is overhead."
"The pricing structure should be enhanced."
"The ROI is priceless."
"Forescout Platform is on the expensive side."
report
Use our free recommendation engine to learn which ZTNA as a Service solutions are best for your needs.
896,099 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Manufacturing Company
9%
Computer Software Company
8%
Construction Company
7%
Manufacturing Company
13%
Financial Services Firm
8%
Government
6%
Computer Software Company
6%
Manufacturing Company
11%
Financial Services Firm
10%
Government
8%
Computer Software Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise7
Large Enterprise8
By reviewers
Company SizeCount
Small Business4
Midsize Enterprise1
Large Enterprise4
By reviewers
Company SizeCount
Small Business30
Midsize Enterprise10
Large Enterprise45
 

Questions from the Community

What needs improvement with iboss?
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent ...
What is your primary use case for iboss?
We used iBoss mainly for Internet Access by having an Agent on Windows laptops Primarily because when we try to use i...
What is your experience regarding pricing and costs for iboss?
I am not involved in pricing, but as per the information I have, during that time, the Blue Coat proxies we were usin...
Ask a question
Earn 20 points
What advice do you have for others considering Forescout Platform?
Forescout is a very powerful NAC product that does not rely on port level configuration. It can detect and block unau...
What advice do you have for others considering Forescout Platform?
I would rate the Forescout Device and Visibility Control Platform at a six out of ten.
What advice do you have for others considering Forescout Platform?
I recommend doing a compression demo. If people use it, they will buy it. So they have to see the product in place. T...
 

Also Known As

iBoss Cloud Platform
No data available
Forescout Platform, CounterACT for Endpoint Compliance, ForeScout CounterACT
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
United States Air Force  FINRA Weight Watchers Rackspace  DataDog SageNet  Verdant Norwegian Cruise Line  VoiceBase  The Third Floor 
NHS Sussex, SAP, SEGA, Vistaprint, Miami Children's Hospital, Pioneer Investments, New York Law School, OmnicomGroup, Meritrust
Find out what your peers are saying about Zscaler, Okta, Cisco and others in ZTNA as a Service. Updated: May 2026.
896,099 professionals have used our research since 2012.