No more typing reviews! Try our Samantha, our new voice AI agent.

Cato SASE Cloud Platform vs Rapid7 Metasploit comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
21
Ranking in other categories
Secure Web Gateways (SWG) (5th), Internet Security (3rd), Web Content Filtering (1st), Cloud Access Security Brokers (CASB) (7th), ZTNA as a Service (8th), Secure Access Service Edge (SASE) (8th)
Cato SASE Cloud Platform
Average Rating
9.0
Reviews Sentiment
7.5
Number of Reviews
31
Ranking in other categories
WAN Optimization (2nd), Intrusion Detection and Prevention Software (IDPS) (11th), Cloud Access Security Brokers (CASB) (6th), Software Defined WAN (SD-WAN) Solutions (4th), WAN Edge (6th), ZTNA as a Service (7th), Secure Access Service Edge (SASE) (3rd), Remote Browser Isolation (RBI) (2nd)
Rapid7 Metasploit
Average Rating
8.0
Reviews Sentiment
6.1
Number of Reviews
22
Ranking in other categories
Vulnerability Management (26th)
 

Mindshare comparison

Secure Access Service Edge (SASE) Mindshare Distribution
ProductMindshare (%)
Cato SASE Cloud Platform9.4%
Prisma Access by Palo Alto Networks10.8%
Zscaler Zero Trust Exchange Platform9.1%
Other70.69999999999999%
Secure Access Service Edge (SASE)
Vulnerability Management Mindshare Distribution
ProductMindshare (%)
Rapid7 Metasploit1.7%
Wiz5.5%
Qualys VMDR4.4%
Other88.4%
Vulnerability Management
 

Featured Reviews

Ashok Ananthula - PeerSpot reviewer
Senior Consultant Proxy Engineering at a financial services firm with 10,001+ employees
Cloud gateway has strengthened remote web security and now needs better Mac and ISP support
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent for the Mac agents. That is where in 2025, we had to migrate to the Palo Alto-based platform. If your use case is for just Windows laptops,you can consider this platform as an option One issue is the data center resiliency part. In India especially, they are not tied up with the Tier 1 ISPs like Tata or Airtel; they were having Tier 2 ISPs and encountered many issues reaching few major sites that my organization depends on, and they were having problems that they could not fix quickly. They also lack a mechanism to route that traffic within their data center; rather, they ask customers to make a pac file change to route it to Singapore explicitly. It would be better if they route from their backend , i mean even if I send it to India DC, they should be able to route it internally to make that work; however, they fail to do that and ask the customer to route it in the pac file. Another suggestion is that in China, they do not have the proper setup; they used to have numerous problems with slowness and lack of premium circuits in China as well. That leads to multiple sites working slowly with latency-related issues. So the main issue is the ISP-related problems that need to be solved.
reviewer2697738 - PeerSpot reviewer
Product & Services Integrator at a comms service provider with 10,001+ employees
Cloud security has unified global network design and has simplified threat visibility
I think all of the functionalities, such as the secure web gateway feature, are quite good. I also believe Cato SASE Cloud Platform is one of the only solutions that has not only a software firewall solution but also a physical software solution where you can change the company's firewalls and put in sockets from Cato SASE Cloud Platform, which I see as an advantage for them. The single-pass architecture has improved user experience with Cato SASE Cloud Platform as it provides security teams in companies a platform where they can easily obtain information if there are breaches or security issues. I assess the benefit of integrating WAN optimization as good. There is ease in making rules between WAN optimization, especially when it comes to global connections because of all their points of presence that are spread over the world. I think the real-time threat protection of Cato SASE Cloud Platform is also good. Their points of presence are quite efficient, and I do not see any delays in that area.
reviewer1247523 - PeerSpot reviewer
Head of Sales Services Department at a comms service provider with 51-200 employees
Extensive exploit database and seamless integration enhance penetration testing capabilities
The automated approach in the audits or in the hacking testing with Rapid7 Metasploit could be improved because even the same attack you provide today will go in different ways another day. I prefer when the auditor or pen-tester provides the attack in a non-automated mode. For some, it might be a valuable option, but I'm not sure it's valuable for us, as after the attack has been provided, we should release a report detailing how it transpired and what the customer should improve to block this way of attack. If the attack was provided in an automated mode, you cannot receive sufficient information that helps with this final report for the customer. While you can check the vulnerability, and the system will tell you there is no vulnerability, usually, a human can change one, two, or three parameters and using the same technique and the same scripts can break the system. Rapid7 Metasploit could be improved in areas concerning the experience with finding particular scripts pre-installed in the solution. Customers, administrators, and pen-testers spend considerable time trying to locate the specific component they need by the name of the technique or the name of the attack, so any improvements in making it easier to find those predefined components by name or timeframe would be beneficial. Search filters could be a correct improvement.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It was a very easy product to install. It can be deployed very fast."
"Valuable features: Within the filter: Controls (Web categories, applications, and Allow/Block list) and Network (local Subnets). Within the reporter: Logs (Event Log) and Reports."
"The iboss system is highly reliable. The false positive rates are small compared to some other systems we've experienced through other partner agencies who use competing solutions."
"Iboss is a solution that prevents advanced persistent threats, and has a zero tolerance for attacks."
"Because of iboss, I did not have to assign web filtering tasks to my techs on a daily basis."
"This product is solid, fairly easy to use, and reliable."
"iboss is among the few products providing inline filtering where no application is needed on the device. It operates on the network side and is not device-based. This feature was one of the main reasons why we stayed with them for so long."
"iboss is pretty scalable. They provide good support. The case managers you work with to coordinate what you need are pretty good."
"When I first encountered Cato, I didn't know how to use it, but after a week of training, I could onboard our systems to it, so the solution was easy to learn and navigate."
"The most valuable feature is that it also works as a next-gen firewall because it has security features."
"The most valuable features of Cato Networks are the always-on VPN for remote workers and centralized management. Additionally, web filtering and antivirus are good."
"Cato Networks seems to do everything we wanted it to do."
"The ability for this system to handle outages on one circuit out of four meant that we didn't have any downtime because of one of our circuits going down or having a performance issue."
"The feature that I find to be the most valuable is the bandwidth aggregation."
"One of the advantages of Cato is that they provide a static IP from their cloud and assign it to us, and this is a service that comes with an additional cost but is cheap compared to getting it from my service provider."
"The Cato SASE Cloud Platform is a remarkable solution for managing and controlling all aspects of Zero Trust network access functions through its SASE capabilities. It's designed with an exquisite and practical architecture, making it a worthwhile investment for organizations looking to optimize IT spending and streamline management processes."
"Metasploit is the most favored toolkit for network security professionals and penetration testers."
"The tool's most useful feature for penetration testing is its automation capabilities. With the professional edition, you can upload the results from Nessus in the Rapid7 Metasploit solution portal."
"I use Rapid7 Metasploit for payload generation and Post-Exploitation."
"It's not possible to do penetration testing without being very proficient in Metasploit."
"All of the features are great."
"The most valuable features of the solution are the scripts, the modules, and the tools that the Rapid7 Metasploit framework has."
"It allows us to concentrate solely on identified vulnerabilities without the hassle of additional setup."
"The option to generate phishing emails has proven to be very valuable in understanding the behavior of users."
 

Cons

"To scale up, a new iboss Node Blade Chassis must be purchased."
"For zero trust implementation, we encountered complexity issues, especially with a large infrastructure company ExxonMobil."
"If they could implement an extra security layer preventing access to iboss from the open internet, it would be great."
"Regarding pricing, setup costs, and licensing, iboss is not cheap, and that's my only concern."
"The dashboards for local use could be better."
"The dashboards for local use could be better."
"The reporting feature needs improvement."
"I'd like to see them accelerate development on the security side, particularly around data loss prevention."
"The tool should improve its interface."
"I would like to see better integration with identity providers."
"They should add more sophisticated security features. It should also be integrated into the cloud."
"The different languages in the user interface should be enhanced."
"There should be a Web Application Firewall feature in the product nodes."
"The solution could be made more user friendly for the administrator to use the portal. It is difficult to use it for people who are not experienced with Cato Networks."
"They should add more sophisticated security features. It should also be integrated into the cloud."
"Cato Networks security could be better."
"The database is not always updated with the latest vulnerabilities or zero-day exploits."
"While Metasploit excels in vulnerability assessment, it could improve in vulnerability management."
"If your company's patch is not up to date, but you have other detection or defense solutions such as endpoint detection and response and antivirus software, the product exploit may not work effectively. This is because its exploit database update process is slow and not real-time. For zero-day vulnerabilities or new security threats, relying on Rapid7 Metasploit alone may not be effective."
"The solution should be more user friendly."
"The reporting feature needs improvement."
"We'd like them to offer better coverage of malware."
"Better automation capabilities would be an improvement."
"The initial setup was a bit "tweaky" for the open-source version."
 

Pricing and Cost Advice

"It is expensive compared to one of its competitors."
"The overall pricing for iboss is very competitive and transparent."
"It is probably in line with other solutions, but I do not deal with the financial side."
"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"Cato Networks is an expensive product, but it works out of the box, so that's the usual trade-off, make versus buy. If you decide to buy a product that doesn't require much programming, then you'd want to go for Cato Networks, which will work naturally, and immediately without any complex setup. However, the product is a little bit more expensive than the competitors. On a scale of one to five, I'd rate the pricing for Cato Networks as four."
"I rate the price of Cato Networks a four out of five."
"The pricing of the solution depends upon the bandwidth required for different branches"
"I'd rate Cato SASE Cloud Platform's pricing as about five or six out of ten. It's not the cheapest solution, but it is cheaper than Palo Alto and even VeloCloud. We've been working with them for a while and have significant discounts. Our licensing costs vary because we keep adding sites, but it's about 280 per month per site. This includes additional features beyond the base product, starting at around 200."
"The solution's pricing is flexible."
"Cato Networks seems more expensive than Cisco Meraki."
"The product is very competitively priced, and that's compelling. They don't charge the customer based on the operational cost like other brands such as Palo Alto. Cato has its own fully-fledged cloud, with their own data centers, equipment, and so on, which is an advantage. I rate the solution five out of five for affordability."
"The pricing is on the higher side, almost an eight out of ten."
"I use the open-source version of this product. Pricing is not relevant."
"We pay monthly. The pricing is reasonable."
"The cost is approximately $15 per device."
"I have used the free version of Rapid7 Metasploit."
"It is a reasonably priced solution. I would rate it from five out of ten."
"The great advantage with Rapid7 Metasploit, of course, is that it's free."
"On a scale of one to ten, where one is cheap and ten is expensive, I rate the product's pricing a six. So it's fairly priced."
"The pricing structure involves a one-time purchase cost of approximately twenty thousand dollars or euros for all customers."
report
Use our free recommendation engine to learn which Secure Access Service Edge (SASE) solutions are best for your needs.
887,041 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Computer Software Company
9%
Manufacturing Company
9%
Construction Company
7%
Manufacturing Company
13%
Computer Software Company
11%
Financial Services Firm
9%
Comms Service Provider
8%
Computer Software Company
10%
Manufacturing Company
9%
Comms Service Provider
9%
Construction Company
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business7
Midsize Enterprise7
Large Enterprise8
By reviewers
Company SizeCount
Small Business15
Midsize Enterprise7
Large Enterprise11
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise4
Large Enterprise11
 

Questions from the Community

What needs improvement with iboss?
iboss can increase security in cyberspace. I have heard they are doing DDoS filtering, but I am not certain if they a...
What is your primary use case for iboss?
I use iboss for corporate VPN and all the corporate VRF, with basically all user traffic proxying to the internet.
What is your experience regarding pricing and costs for iboss?
Regarding pricing, setup costs, and licensing, iboss is not cheap, and that's my only concern. There are cheaper alte...
What is your primary use case for Cato Networks?
I can see that I am a consultant at a reseller and I am the architect of Cato SASE Cloud Platform designs. In the bas...
What advice do you have for others considering Cato Networks?
It is difficult to find types of companies I would not recommend Cato SASE Cloud Platform to, and I believe you can u...
What is your experience regarding pricing and costs for Cato Networks?
I do not find it particularly expensive, but for some companies, they may not have the budget to be at that level of ...
What is your experience regarding pricing and costs for Rapid7 Metasploit?
The pricing of Rapid7 Metasploit is quite affordable. It has a free version that many customers start with, and after...
What needs improvement with Rapid7 Metasploit?
The automated approach in the audits or in the hacking testing with Rapid7 Metasploit could be improved because even ...
What is your primary use case for Rapid7 Metasploit?
I use Rapid7 Metasploit as a distributor, as an integrator, and as a user. I use Rapid7 Metasploit in my company inte...
 

Also Known As

iBoss Cloud Platform
Cato Networks
Metasploit
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Paysafe, AdRoll, Pet Lovers Centre, Arlington Orthopedics, Humphreys & Partners Architects
City of Corpus Christi, Diebold, Lumenate, Nebraska Public Power District, Prairie North Regional Health, Apptio, Automation Direct, Bob's Stores, Cardinal Innovations Healthcare Solutions, Carnegie Mellon University
Find out what your peers are saying about Palo Alto Networks, Zscaler, Cato Networks and others in Secure Access Service Edge (SASE). Updated: March 2026.
887,041 professionals have used our research since 2012.