Aruba ClearPass and Cisco Identity Services Engine compete in the network access control category. Aruba ClearPass appears to have the upper hand due to its diverse vendor compatibility and BYOD management, while Cisco ISE benefits from strong integration within the Cisco ecosystem.
Features: Aruba ClearPass includes modules like Policy Manager, Guest, Onboard, and Insight, supporting multiple protocols for a robust NAC solution. It excels in integrating with various vendors and facilitating BYOD management. Cisco ISE offers centralized access control with features like AAA, TrustSec, and robust profiling to support endpoint compliance and policy management.
Room for Improvement: Aruba ClearPass could improve its vendor independence and simplify setup processes. Users find the integration and licensing explanations complex. Cisco ISE needs to simplify its deployment and upgrade processes, enhance its GUI, and improve non-Cisco product integration and documentation.
Ease of Deployment and Customer Service: Aruba ClearPass is widely deployed on-premises and in hybrid environments, with highly praised customer service but needing better international response. Cisco ISE is typically on-premises with hybrid setups, offering effective customer service, but requires improved support documentation and access to technical assistance.
Pricing and ROI: Aruba ClearPass has a high initial cost, yet offers a strong ROI through its permanent licensing model, being competitively priced against Cisco. Cisco ISE's subscription-based model is perceived as costly, possibly increasing operational expenses, with its price justified by extensive features, though users find its pricing and licensing models complex.
Using Aruba ClearPass has resulted in less engineering time compared to other products we've used.
Direct comparisons with Forescout reveal up to 30% to 40% difference in cost savings.
Portnox is one level up, as their customer support is outstanding.
We have escalated questions to tech support, and I would rate the technical support an eight out of ten.
We have local support, so it's much easier.
I rate the technical support as one out of ten.
Sometimes it's challenging to identify which support team is responsible for certain issues, which is a significant concern.
I believe the scalability of ClearPass is rated as ten out of ten.
Once the policy is defined, scaling works automatically and is fast.
Aruba ClearPass is very scalable.
Factors like architecture, business nature, and legal limitations such as GDPR affect it.
The stability of Cisco Identity Services Engine (ISE) is poor for certain use cases, like authentication.
Cisco Identity Services Engine (ISE) is considered very reliable and stable.
The language and policy enforcement mechanisms are not clear, making it difficult to use the product effectively.
I don't see any limitations in ClearPass.
It is also better to improve threat intelligence for built-in threat detection and prevention.
The whole setup works well with Cisco access points and Cisco switches, but when you have multiple vendors in the environment, such as HP switches or access points like Aruba, you'll find they will not work well with Cisco Identity Services Engine (ISE).
Pricing can be more expensive compared to other vendors, and there is a significant price gap observed, which doesn't seem justified by some specific features.
Additionally, the product is vulnerable and has many bugs.
We cannot mix in prices, and of course, prices are going higher.
Achieving the best price requires careful selection from a menu of licensing options.
Aruba ClearPass is a premium product with higher pricing, which seems unnecessary given its complexity.
The license costs can range between $50,000 to $100,000 per year for enterprises.
Compared to other solutions like HPE ClearPass, Cisco is more costly, and the conversation suggests a possible forty percent price gap compared to competitors.
Making large organizational costs significant.
The most effective feature for us is the OnGuard feature.
The ClearPass solution has reduced the amount of engineering time compared to previous solutions, making it more efficient for our purposes.
This solution ensures organizations have secure environments and also supports robust policy enforcement, allowing control over who has access to various parts of the network.
The solution is integrated with other Cisco devices and can offer automation for an organization, making deployments more dynamic and providing real-time visibility.
Cisco Identity Services Engine (ISE) is very good at device administration.
Aruba ClearPass is a network access control (NAC) solution that provides a range of security and access management capabilities for wired, wireless, and VPN networks. ClearPass enables organizations to secure their networks and devices, enforce security policies, and provide secure access to network resources.
Aruba ClearPass Features
Aruba ClearPass has many valuable key features. Some of the most useful ones include:
Aruba ClearPass Benefits
There are many benefits to implementing Aruba ClearPass. Some of the biggest advantages the solution offers include:
Reviews from Real Users
Aruba ClearPass is a solution that stands out when compared to many of its competitors. Some of its major advantages are that it’s easy to use, has a valuable Guest Captive Portal and virtual security enforcement, and has a good web dashboard and policy manager.
“It is easy to use and more integrated with the Aruba wireless networks,” says Muhammad N., Network & Information Security Engineer at a healthcare company.
Ammar F., Head of IT at Hubtech, explains, “What I like most about Aruba ClearPass is that it has the best enforcement feature for the network. I also like its Guest Captive Portal and virtual security enforcement features, but the virtual security enforcement feature is still under testing by my company. Aruba ClearPass also has a wonderful UI which I find valuable."
Another PeerSpot reviewer mentions, "The web dashboard and the policy manager are very intuitive and very easy for the engineers to use."
Cisco Identity Services Engine (ISE) offers comprehensive network access control and visibility, supporting features like 802.1X authentication, profiling, and posturing. It integrates with Microsoft and other Cisco products, facilitating robust security policies across distributed networks.
Cisco Identity Services Engine is a key player in network access control, offering centralized management and a user-friendly interface. It supports zero trust principles and provides strong authentication for wired and wireless networks. ISE's capabilities include granular security policies, enhanced device posturing, and seamless integration, bolstering security infrastructure. Users benefit from its dual authentication through EAP, simplifying access management across networks.
What are the key features of Cisco ISE?In industries like finance, healthcare, and education, Cisco ISE is pivotal for securing wired and wireless networks, implementing BYOD policies, and managing user access. Organizations leverage ISE for effective authentication and authorization, while maintaining compliance with industry security standards.
We monitor all Network Access Control (NAC) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.