No more typing reviews! Try our Samantha, our new voice AI agent.

Cato SASE Cloud Platform vs Rapid7 Metasploit comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
20
Ranking in other categories
Secure Web Gateways (SWG) (5th), Internet Security (3rd), Web Content Filtering (1st), Cloud Access Security Brokers (CASB) (7th), ZTNA as a Service (7th), Secure Access Service Edge (SASE) (8th)
Cato SASE Cloud Platform
Average Rating
9.0
Reviews Sentiment
7.5
Number of Reviews
31
Ranking in other categories
WAN Optimization (2nd), Intrusion Detection and Prevention Software (IDPS) (11th), Cloud Access Security Brokers (CASB) (6th), Software Defined WAN (SD-WAN) Solutions (6th), WAN Edge (6th), ZTNA as a Service (6th), Secure Access Service Edge (SASE) (2nd), Remote Browser Isolation (RBI) (2nd)
Rapid7 Metasploit
Average Rating
8.0
Reviews Sentiment
6.1
Number of Reviews
22
Ranking in other categories
Vulnerability Management (18th)
 

Mindshare comparison

Secure Access Service Edge (SASE) Mindshare Distribution
ProductMindshare (%)
Cato SASE Cloud Platform9.8%
Prisma Access by Palo Alto Networks11.8%
Zscaler Zero Trust Exchange Platform9.5%
Other68.9%
Secure Access Service Edge (SASE)
Vulnerability Management Mindshare Distribution
ProductMindshare (%)
Rapid7 Metasploit1.7%
Wiz6.4%
Tenable Nessus4.9%
Other87.0%
Vulnerability Management
 

Featured Reviews

reviewer2701851 - PeerSpot reviewer
Managing Director
Enhances web security with a single pane of glass and flexible deployment
I don't see any need for improvement; one of the really good things about iboss as a company is that they listen to customer feedback. I have suggested enhancements, and they are responsive, making changes for the better, and they do a lot of testing. To improve iboss, although we haven't used it, we considered the VPN solution that comes with the highest tier licensing, which includes DLP and various other add-ons. We prefer using another product which automatically logs you back onto your network when turning on your PC. With iboss, the connection is manual, which doesn't meet our needs. Additionally, sizing can be tricky because, although the initial recommendations may seem adequate, actual usage may require more gateways than anticipated.
reviewer2697738 - PeerSpot reviewer
Product & Services Integrator at a comms service provider with 10,001+ employees
Cloud security has unified global network design and has simplified threat visibility
I think all of the functionalities, such as the secure web gateway feature, are quite good. I also believe Cato SASE Cloud Platform is one of the only solutions that has not only a software firewall solution but also a physical software solution where you can change the company's firewalls and put in sockets from Cato SASE Cloud Platform, which I see as an advantage for them. The single-pass architecture has improved user experience with Cato SASE Cloud Platform as it provides security teams in companies a platform where they can easily obtain information if there are breaches or security issues. I assess the benefit of integrating WAN optimization as good. There is ease in making rules between WAN optimization, especially when it comes to global connections because of all their points of presence that are spread over the world. I think the real-time threat protection of Cato SASE Cloud Platform is also good. Their points of presence are quite efficient, and I do not see any delays in that area.
reviewer1247523 - PeerSpot reviewer
Head of Sales Services Department at a comms service provider with 51-200 employees
Extensive exploit database and seamless integration enhance penetration testing capabilities
The automated approach in the audits or in the hacking testing with Rapid7 Metasploit could be improved because even the same attack you provide today will go in different ways another day. I prefer when the auditor or pen-tester provides the attack in a non-automated mode. For some, it might be a valuable option, but I'm not sure it's valuable for us, as after the attack has been provided, we should release a report detailing how it transpired and what the customer should improve to block this way of attack. If the attack was provided in an automated mode, you cannot receive sufficient information that helps with this final report for the customer. While you can check the vulnerability, and the system will tell you there is no vulnerability, usually, a human can change one, two, or three parameters and using the same technique and the same scripts can break the system. Rapid7 Metasploit could be improved in areas concerning the experience with finding particular scripts pre-installed in the solution. Customers, administrators, and pen-testers spend considerable time trying to locate the specific component they need by the name of the technique or the name of the attack, so any improvements in making it easier to find those predefined components by name or timeframe would be beneficial. Search filters could be a correct improvement.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"iboss is among the few products providing inline filtering where no application is needed on the device. It operates on the network side and is not device-based. This feature was one of the main reasons why we stayed with them for so long."
"First of all, the security policies are essential. I do not have to rely solely on Active Directory for our users."
"The security aspect of the solution, particularly the malware behind it, is excellent."
"iboss is among the few products providing inline filtering where no application is needed on the device."
"Granular setup, which was able to set different levels of filters using the OUs in the AD."
"The security aspect of the solution, particularly the malware behind it, is excellent. That's something that really helped us out. It's not just a simple proxy that just blocks the insights of potential threats that come on behind it. They do malware detection and that helps us a lot."
"Technical support is pretty sharp and very responsive."
"The console is cloud-based, which is something I really appreciate."
"When I first encountered Cato, I didn't know how to use it, but after a week of training, I could onboard our systems to it, so the solution was easy to learn and navigate."
"Technical support was always helpful and responsive."
"Cato SASE Cloud Platform's self-healing model is the most valuable feature."
"Unified management and internet duplication are our most valuable features. They provide a seamless experience for end users—if one link goes down, they can still work without noticing."
"The Cato SASE Cloud Platform is a remarkable solution for managing and controlling all aspects of Zero Trust network access functions through its SASE capabilities. It's designed with an exquisite and practical architecture, making it a worthwhile investment for organizations looking to optimize IT spending and streamline management processes."
"When we went to Cato Networks it was an always-on automatic VPN, it reduced our help desk calls by about 10 percent."
"Cato Networks seems to do everything we wanted it to do."
"The product is efficient and easy to use."
"The tool's most useful feature for penetration testing is its automation capabilities. With the professional edition, you can upload the results from Nessus in the Rapid7 Metasploit solution portal."
"The most valuable features of Metasploit include its powerful capabilities for exploitation and scanning."
"The option to generate phishing emails has proven to be very valuable in understanding the behavior of users."
"Overall, it is a very good product for penetration testing."
"The greatest advantage of Rapid7 Metasploit is that it is the only system that can directly exploit vulnerabilities on the Metasploit platform."
"Rapid7 has a significant advantage in providing a clear picture of my environment."
"When I compare Metasploit with Nessus, I find that Metasploit is faster and it does not burden the system as much."
"It is easy to use, a useful product, and it has a very long list of available payloads."
 

Cons

"Their on-premise hardware's network interface is capped at one gigabit, which is sort of a problem. If you stand a filter up where all traffic flows through that, according to them, in order to go above a gigabit, you have to have multiple devices, which in today's IT seems a little bit silly. They could easily put in an SFP port into their device that could accommodate 10 gigs or at least offer a box."
"It is stable, but due to growth, it can sometimes be less stable than wanted."
"The solution could be stronger on the integration side and offer more cloud applications like G Suite or Oracle."
"Fold that in with the risk intelligence they're getting from all of the different subscriptions they are a part of. Now, these security companies subscribe to things like emerging threats, databases, etc. You can fold all this intelligence to decide what's happening on an endpoint. I would love to see them start moving into that space. That would compete directly with Microsoft. Maybe that's why they haven't. Having that ability native within the solution would be great. The other area in which I would love to see improvement is more detailed descriptions of why they block websites."
"File integrity monitoring would be very advantageous as an additional feature."
"One thing I would like to see differently with their Zero Trust platform is that some of the AI aspects related to high-risk activities have more false positives."
"Sometimes the agent stops working in iboss, and we have to reinstall the agent."
"Sometimes when you call in support, you get someone who is just following a sheet. It feels like a runaround. You feel that you are running into that support wall."
"It could expand its reach into other sectors like professional services and finance, requiringmore specialized tools beyond Cato's current offerings. This includes better integration with third-party providers for more sophisticated tools such as intrusion prevention systems, anti-malware, and data loss prevention. Additionally, enhancing network speed and optimizing last-mile connectivity for managed service providers like us would be beneficial."
"The product may be complex for users with few years of experience."
"There should be a Web Application Firewall feature in the product nodes."
"Cato Networks security could be better."
"However, Cato's solution is modular. You don't have to buy the whole package; instead, you can start with some of the functionality and then expand it as you see fit, based on its value and as your other contracts expire."
"The product's technical support could be more responsive."
"They can't do one-to-one NAT (Network Address Translation) in AP (their access point), and that is something that Palo Alto can do."
"The tool should improve its interface."
"Rapid7 Metasploit could be made easier for new users to learn."
"The solution is not very scalable, it does not provide any automation to be able to scale it."
"The database is not always updated with the latest vulnerabilities or zero-day exploits."
"Rapid7 Metasploit can add a GUI feature because it is only available online."
"The database is not always updated with the latest vulnerabilities or zero-day exploits. If a vulnerability arises a month or two ago, it might not be included in the database, which is something I would like to see improved."
"We'd like them to offer better coverage of malware."
"Exploit updates are slow after security patches to a certain OS."
"Metasploit cannot be installed on a machine with an antivirus."
 

Pricing and Cost Advice

"It is probably in line with other solutions, but I do not deal with the financial side."
"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"The overall pricing for iboss is very competitive and transparent."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"It is expensive compared to one of its competitors."
"The solution's pricing is flexible."
"I rate the price of Cato Networks a four out of five."
"You pay yearly based on the speed of your network. If you increase the speed of your network, you increase the cost for your throughput. It is by bandwidth for the most part and then licenses for VPN. There is some per-seat licensing for VPN access, but the majority of it is minimal. It is like $30 a year per client. The rest is based on how much bandwidth you'll use. You pay for that upfront for the year, and if you have to increase it, you increase it, and then they let you send more data through. There are no additional costs in addition to the standard licensing fees."
"The price of Cato Networks is in the middle range compared to other solutions. NetFoundry is a less expensive solution than Cato Networks."
"The solution has reasonable pricing. It has a yearly subscription. The pricing depends on the permit to code. Sometimes, we need to increase the permit, and the cost will automatically change. There's no fixed cost. Unless we request additional modules such as DNS security, ELP, and decent features, there will be no additional cost."
"The pricing of the solution depends upon the bandwidth required for different branches"
"Cato Networks is an expensive product, but it works out of the box, so that's the usual trade-off, make versus buy. If you decide to buy a product that doesn't require much programming, then you'd want to go for Cato Networks, which will work naturally, and immediately without any complex setup. However, the product is a little bit more expensive than the competitors. On a scale of one to five, I'd rate the pricing for Cato Networks as four."
"The solution is reasonably priced since Cato Networks provides features like SASE and monitoring, which I am very happy with currently."
"The pricing structure involves a one-time purchase cost of approximately twenty thousand dollars or euros for all customers."
"The great advantage with Rapid7 Metasploit, of course, is that it's free."
"On a scale of one to ten, where one is cheap and ten is expensive, I rate the product's pricing a six. So it's fairly priced."
"I have used the free version of Rapid7 Metasploit."
"We pay monthly. The pricing is reasonable."
"It is a reasonably priced solution. I would rate it from five out of ten."
"Rapid7 Metasploit is an open-source solution."
"I use the open-source version of this product. Pricing is not relevant."
report
Use our free recommendation engine to learn which Secure Access Service Edge (SASE) solutions are best for your needs.
885,789 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Computer Software Company
9%
Manufacturing Company
9%
Construction Company
7%
Manufacturing Company
14%
Computer Software Company
12%
Financial Services Firm
9%
Comms Service Provider
8%
Computer Software Company
11%
Manufacturing Company
10%
Comms Service Provider
9%
Construction Company
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise7
Large Enterprise6
By reviewers
Company SizeCount
Small Business15
Midsize Enterprise7
Large Enterprise11
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise4
Large Enterprise11
 

Questions from the Community

What needs improvement with iboss?
For zero trust implementation, we encountered complexity issues, especially with a large infrastructure company Exxon...
What is your primary use case for iboss?
Previously when I used iboss, we did the POC for iboss for ExxonMobil. Four or five people wanted to move from our ol...
What is your experience regarding pricing and costs for iboss?
Regarding pricing, setup costs, and licensing, iboss is not cheap, and that's my only concern. There are cheaper alte...
What is your primary use case for Cato Networks?
I can see that I am a consultant at a reseller and I am the architect of Cato SASE Cloud Platform designs. In the bas...
What advice do you have for others considering Cato Networks?
It is difficult to find types of companies I would not recommend Cato SASE Cloud Platform to, and I believe you can u...
What is your experience regarding pricing and costs for Cato Networks?
I do not find it particularly expensive, but for some companies, they may not have the budget to be at that level of ...
What do you like most about Rapid7 Metasploit?
I use Rapid7 Metasploit for payload generation and Post-Exploitation.
What is your experience regarding pricing and costs for Rapid7 Metasploit?
The pricing of Rapid7 Metasploit is quite affordable. It has a free version that many customers start with, and after...
What needs improvement with Rapid7 Metasploit?
The automated approach in the audits or in the hacking testing with Rapid7 Metasploit could be improved because even ...
 

Also Known As

iBoss Cloud Platform
Cato Networks
Metasploit
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Paysafe, AdRoll, Pet Lovers Centre, Arlington Orthopedics, Humphreys & Partners Architects
City of Corpus Christi, Diebold, Lumenate, Nebraska Public Power District, Prairie North Regional Health, Apptio, Automation Direct, Bob's Stores, Cardinal Innovations Healthcare Solutions, Carnegie Mellon University
Find out what your peers are saying about Palo Alto Networks, Cato Networks, Netskope and others in Secure Access Service Edge (SASE). Updated: March 2026.
885,789 professionals have used our research since 2012.