Forescout Platform and Cisco Identity Services Engine (ISE) compete in the network access control market. Forescout is preferable for non-802.1x environments and seamless third-party integrations, whereas Cisco ISE offers superior integration with other Cisco products and robust 802.1x features.
Features: Forescout Platform provides agentless visibility, non-802.1x solutions, and third-party system integration, making it adaptable for various infrastructures. Cisco ISE excels in 802.1x and TrustSec features, leveraging integration with other Cisco products for comprehensive network control and security.
Room for Improvement: Forescout could enhance detection capabilities for dual-homed devices and improve policy customization. Its graphical interface and error messaging also need refinement, along with reporting features. Cisco ISE would benefit from an improved upgrade process, user interface adjustments, and better policy management. Both platforms face integration challenges, though ISE's setup complexity is a notable concern.
Ease of Deployment and Customer Service: Forescout supports on-premises, public cloud, and hybrid cloud deployments, providing flexibility. Cisco ISE is mainly on-premises with hybrid and private cloud support. Customer service for both gets mixed reviews; Forescout's support is prompt but lacks depth, while Cisco's support is reliable yet complex.
Pricing and ROI: Forescout's cost is deemed high but competitive in large deployments; licensing is device count-based, affecting costs in multi-device scenarios. Cisco ISE also comes with a high price, featuring a complex transition from perpetual to subscription-based licenses. Both solutions are costly compared to alternatives, with ROI depending on deployment size and usage.
Direct comparisons with Forescout reveal up to 30% to 40% difference in cost savings.
I rate the technical support as one out of ten.
Sometimes it's challenging to identify which support team is responsible for certain issues, which is a significant concern.
Factors like architecture, business nature, and legal limitations such as GDPR affect it.
Scalability can be costly since a physical box needs to be installed for every site.
Cisco Identity Services Engine (ISE) is considered very reliable and stable.
The stability of Cisco Identity Services Engine (ISE) is poor for certain use cases, like authentication.
I would rate its stability as 9.5 out of ten.
Pricing can be more expensive compared to other vendors, and there is a significant price gap observed, which doesn't seem justified by some specific features.
Additionally, the product is vulnerable and has many bugs.
The console is a fat client, and a web interface would be preferable.
Compared to other solutions like HPE ClearPass, Cisco is more costly, and the conversation suggests a possible forty percent price gap compared to competitors.
Cloud solutions are expensive, while on-prem setups with shared environments are cheaper but not effective.
Installing a physical box on each site can be expensive.
Cisco Identity Services Engine (ISE) is very good at device administration.
The solution is integrated with other Cisco devices and can offer automation for an organization, making deployments more dynamic and providing real-time visibility.
One of the most valuable features of Forescout Platform is its automation, particularly the ability to automate remediation of rogue devices on the network.
Cisco Identity Services Engine (ISE) offers comprehensive network access control and visibility, supporting features like 802.1X authentication, profiling, and posturing. It integrates with Microsoft and other Cisco products, facilitating robust security policies across distributed networks.
Cisco Identity Services Engine is a key player in network access control, offering centralized management and a user-friendly interface. It supports zero trust principles and provides strong authentication for wired and wireless networks. ISE's capabilities include granular security policies, enhanced device posturing, and seamless integration, bolstering security infrastructure. Users benefit from its dual authentication through EAP, simplifying access management across networks.
What are the key features of Cisco ISE?In industries like finance, healthcare, and education, Cisco ISE is pivotal for securing wired and wireless networks, implementing BYOD policies, and managing user access. Organizations leverage ISE for effective authentication and authorization, while maintaining compliance with industry security standards.
Forescout Platform provides today’s busy enterprise organizations with policy and protocol management, workflow coordination, streamlining, and complete device and infrastructure visibility to improve overall network security. The solution also provides concise real-time intelligence of all devices and users on the network. Policy and protocols are delineated using gathered intelligence to facilitate the appropriate levels of remediation, compliance, network access, and all service operations. Forescout Platform is very flexible, integrates well with most of today’s leading network security products, and is a very cost-effective solution.
Forescout Platform Features
Real User Reviews
An important main feature of Forescout is the visibility the solution offers.
One reviewer who is a Consultant at a tech services company, says, "Within three or four days, you can have complete visibility of your infrastructure on the network. Compared to other solutions, the deployment of the solution is easier and we can close the project quickly."
Users also appreciate that the user interface is clear and easy to understand.
An Instructor at a tech services company, shares, "The most valuable feature of the Forescout Platform is the large capacity it can handle. Additionally, the interface of the platform is good."
We monitor all Network Access Control (NAC) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.