AWS CloudFormation vs AWS Config comparison

Cancel
You must select at least 2 products to compare!
Microsoft Logo
6,968 views|4,814 comparisons
92% willing to recommend
Amazon Web Services (AWS) Logo
1,275 views|806 comparisons
96% willing to recommend
Amazon Web Services (AWS) Logo
422 views|304 comparisons
100% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between AWS CloudFormation and AWS Config based on real PeerSpot user reviews.

Find out in this report how the two Configuration Management solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
To learn more, read our detailed AWS CloudFormation vs. AWS Config Report (Updated: May 2024).
772,649 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"Intune's most valuable features are the device, compliance, and configuration policies.""Intune can wipe devices. For example, if a disgruntled employee wants to leak the data on their company phone, Intune can terminate their access and wipe the entire device with a click.""Its protection policies are most valuable. It protects mobile devices as well as individual apps. It is pretty scalable, and its documentation is also pretty good. It is also pretty straightforward to deploy.""The conditional access policies that we set up are very useful.""For Windows services, there are multiple options within Intune to modernize it to be more internet-facing and dynamic.""While I don't think you can ever have full visibility and control, Intune certainly allows us to see the applications being used and tells us if things like Windows patches aren't applied to machines. It does a good job. That visibility makes life a little easier.""One of the best features is Windows Autopilot because if you change any of your devices, whatever security policies and compliance policies that applied can be easily migrated to the new devices. Windows Autopilot gives you that flexibility.""Intune is effective because of the configuration management and endpoint security it provides. The graphical interface makes it easier to configure and deploy devices."

More Microsoft Intune Pros →

"AWS Cloud automation reduces the time needed to create AWS resources.""Automations make it pretty easy to provision AWS, development, or deployment environments.""The most valuable features of AWS CloudFormation are all the resources documentation is located in one location, simple resource reverting, and ease of use of the full package for new users.""AWS CloudFormation has automated the resource-building process, thereby removing the scope of human errors. We can tag the resources which help the billing process.""The solution has helped with automation. I don't have to worry about provisioning machines and ensuring everything is set up. AWS CloudFormation takes care of the entire infrastructure for me.""Its ability to treat infrastructure's code is valuable. It makes things automatable and reproducible.""The integration of the solution is very good.""The nested stacks would be one of the more valuable features."

More AWS CloudFormation Pros →

"Installing the instances and performing upgrades is smooth and clean.""The scalability is a ten out of ten.""The solution is scalable and provides over 100 rules.""The initial setup is super easy, it takes like two minutes. Literally a one-click deployment."

More AWS Config Pros →

Cons
"I'm still playing around with it and haven't had any issues with the product yet, but support can definitely be improved.""It needs certificate provisioning for S/MIME purposes.""They should improve its compatibility with other operating systems such as iOS and Linux. It supports Linux but they still need to work on the iOS part.""They should make it easier to order it, however, that's generally true for everything from Microsoft.""They could also make it easier to use because there are some other products that may be easier to use in terms of the look and feel of the dashboard.""The most important thing is reporting. They should improve their reporting. They should give a free hand to users. In SCCM, I can create my own reports. For example, in SCCM, I can create an inventory report for my PC or for all PCs, but in Intune, we don't have an option to create any report. Microsoft claims that Intune is a successor of SCCM, but SCCM is more powerful than Intune. So, they should develop Intune more and make it equivalent to SCCM. Then, their product will be great in the market.""There should be more support for macOS. Even though macOS is supported by Intune and Microsoft is working very hard to get more features into Intune to manage macOS, that's one thing they can give a lot more attention to.""It would be better if I could integrate it with my core group policy. I would like to have a group policy in my current environment, which has strict control, but those things are still missing. Although it has maximum compliance and security, it's not available on-premise."

More Microsoft Intune Cons →

"For improvement, it's crucial that AWS provides options in terms of computing services, DB related services, and machine learning solutions. If I'm not hands-on with a particular service, like machine learning applications, I struggle to write the CloudFormation code.""AWS CloudFormation allows you to use the code templates written in JSON and YAML, but not directly in Python. Adding this feature would be beneficial.""Provisioning a large environment or a large number of services takes a bit more time than with Terraform.""GUI could be improved by adding graphical components.""If you are a developer or a more technical person, it's very difficult to learn the complete syntax or because CloudFormation includes a new way to write infrastructure code.""It would help all users if AWS improved the auto-generation of the CloudFormation file.""The speed of the replication process could improve. It can take some time to replicate that could use a speed increase.""The product should be made cloud-agnostic, allowing users to deploy the same environment with minimal tweaks across different cloud platforms, similar to Terraform. Additionally, it would be beneficial to have the ability to manage templates outside of the AWS environment."

More AWS CloudFormation Cons →

"There is room for improvement in built-in tools, they are not up to the mark.""Improvements are needed as per customer requirements.""The reboot process for AWS instances could be improved. Microsoft Azure does not have this problem, so AWS could consider making their instances more robust. You would not need to reboot your instances frequently to replace the hardware and stuff. They can look for a better approach or mechanism to improve in the future. The concern is that you need to plan for the outage when you reboot an instance. You need to have a maintenance window where you can properly reboot the instance without affecting your application. When Amazon announces that you need to reboot an instance and are not ready, this becomes a problem.""The solution is missing a configuration that can assist us when writing our programming languages."

More AWS Config Cons →

Pricing and Cost Advice
  • "Consider the Microsoft Enterprise Mobility Suite rather than choosing specific sub-components, e.g. only Microsoft Intune."
  • "There is a cost benefit of using Microsoft Intune because of the packaging with other Microsoft products."
  • "Microsoft Intune is a cost effective choice. It is less expensive than other products on the market."
  • "The purchase of the product was handled by someone else."
  • "I have no comment on pricing of the solution."
  • "The product is offered as part of a Microsoft standard bundle. The pricing can be competitive to Airwatch, and Maas360."
  • "For Microsoft 365 E5 clients, cost is not an issue as this product is one of the benefits."
  • "The price of Intune is included with the license for Office 365, so we don't have to pay anything extra for it."
  • More Microsoft Intune Pricing and Cost Advice →

  • "This solution is free to use and does not require a license."
  • "AWS CloudFormation doesn't have any cost because it's only the resources that you deploy with the solution that'll incur costs."
  • "If you compared serverless and container-based, serverless is less expensive. If you use certain instances the price can increase and become too expensive."
  • "The price of the solution is good because it is scalable."
  • "The solution's cost is normal, neither cheap nor expensive."
  • "The pricing is not notably high."
  • "The product is free."
  • "The tool is free for the AWS environment."
  • More AWS CloudFormation Pricing and Cost Advice →

  • "The solution charges us per hour. There's no license."
  • "It is a very expensive tool. AWS pricing for Config is not fixed and depends on your organization's size and complexity."
  • More AWS Config Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Configuration Management solutions are best for your needs.
    772,649 professionals have used our research since 2012.
    Questions from the Community
    Top Answer:Microsoft Intune is a great tool for managing a mobile device fleet while keeping access control. The solution makes it… more »
    Top Answer:Microsoft Intune is a great configuration management tool and has a lot of good things going for it. Here are some of… more »
    Top Answer: Microsoft Intune offers not only an easy-to-deploy data protection and productivity management solution, but also… more »
    Top Answer:AWS Cloud automation reduces the time needed to create AWS resources.
    Top Answer:AWS CloudFormation's pricing is cheaper than that of other cloud providers.
    Top Answer:Manual updates are sometimes deployed, leading to errors or disruptions when attempting to modify or tear them down… more »
    Top Answer:The initial setup is super easy, it takes like two minutes. Literally a one-click deployment.
    Top Answer:There is room for improvement in built-in tools, they are not up to the mark. Some of the built-in inbound rules feel… more »
    Top Answer:It tracks configuration changes across all your AWS resources. Imagine it as a log of every tweak and setting… more »
    Comparisons
    Also Known As
    Intune, MS Intune, Microsoft Endpoint Manager
    CloudFormation
    Learn More
    Overview

    Microsoft Intune is a comprehensive cloud-based service that allows you to remotely manage mobile devices and mobile applications without worrying about the security of your organization’s data. Device and app management can be used on company-owned devices as well as personal devices.

    In an increasingly mobile workforce, Microsoft Intune keeps your sensitive data safe while on the move. Microsoft Intune makes it possible for your team members to work anywhere using their mobile devices. Microsoft Intune provides both the flexibility and the control needed for securing all your data on the cloud, no matter where the device with the data is located.

    Microsoft Intune Device Management Key Features

    With Microsoft Intune Device Management you can:

    • Ensure devices and apps are compliant with your security requirements.
    • Rapidly deploy and authenticate apps on all company devices.
    • Remotely access devices to troubleshoot issues or to remove data from them.
    • Generate reports for all devices in the system.
    • Monitor the way users access and share information to protect company information.
    • Set rules and configure settings on personal and organization-owned devices to access data and networks.
    • Create user groups and device groups, allowing you to rapidly access many users and devices simultaneously.

    Mobile Application Management

    Mobile application management in Intune is designed to protect your organization’s data at the application level.

    With Microsoft Intune Application Management you can:

    • Configure apps to run with specific settings enabled.
    • Update existing apps that are already on the device.
    • See reports on which apps are used and monitor their usage.
    • Selectively wipe organization data from apps.
    • Add mobile apps to user groups and devices.

    As part of Microsoft's Enterprise Mobility + Security (EMS) suite, Intune integrates with Microsoft Entra ID for access control and with Azure Information Protection for data protection. It also integrates with Microsoft 365 Applications.

    Reviews from Real Users

    Microsoft Intune stands out among its competitors for a number of reasons. Two major ones are its ability to secure all devices under its management and the flexibility that the solution offers its users.

    A computing services manager notes, "Its security is most valuable. It gives us a way to secure devices, not only those that are steady. We do have a few tablets and other devices, and it is a way for us to secure these devices and manage them. We know they're out there and what's their status. We can manage their life cycle and verify that they're updated properly."

    The head of IT engineering at a financial services company writes, "The one feature we find most useful is the Mobile Application Manager. There are two types: we have the complete MDM and the Mobile Application Manager (MAM). We don't give our users phones, it is their own personal phone, and we need to allow them to have access to the company details on their phone. We need to create a balance between their own personal data and the company data. We deploy the Mobile Application Manager for them so that we won't be able to interfere with their own personal data."

    AWS CloudFormation provides a common language for you to model and provision AWS and third party application resources in your cloud environment. AWS CloudFormation allows you to use programming languages or a simple text file to model and provision, in an automated and secure manner, all the resources needed for your applications across all regions and accounts. This gives you a single source of truth for your AWS and third party resources.

    AWS Config is a service that enables you to assess, audit, and evaluate the configurations of your AWS resources. Config continuously monitors and records your AWS resource configurations and allows you to automate the evaluation of recorded configurations against desired configurations. With Config, you can review changes in configurations and relationships between AWS resources, dive into detailed resource configuration histories, and determine your overall compliance against the configurations specified in your internal guidelines. This enables you to simplify compliance auditing, security analysis, change management, and operational troubleshooting.

    Sample Customers
    Mitchells and Buzzers, Callaway
    Nextdoor, Coinbase, Expedia
    Flatiron, Prezi, iZettle, British Gas, Burt, Autodesk, FanDuel
    Top Industries
    REVIEWERS
    Financial Services Firm18%
    Computer Software Company18%
    Comms Service Provider11%
    Energy/Utilities Company5%
    VISITORS READING REVIEWS
    Educational Organization23%
    Computer Software Company12%
    Government7%
    Financial Services Firm7%
    REVIEWERS
    Computer Software Company27%
    Non Profit18%
    Construction Company9%
    Wellness & Fitness Company9%
    VISITORS READING REVIEWS
    Financial Services Firm19%
    Computer Software Company13%
    Educational Organization6%
    Retailer6%
    VISITORS READING REVIEWS
    Financial Services Firm23%
    Government10%
    Computer Software Company9%
    Healthcare Company9%
    Company Size
    REVIEWERS
    Small Business39%
    Midsize Enterprise14%
    Large Enterprise47%
    VISITORS READING REVIEWS
    Small Business20%
    Midsize Enterprise33%
    Large Enterprise47%
    REVIEWERS
    Small Business37%
    Midsize Enterprise23%
    Large Enterprise40%
    VISITORS READING REVIEWS
    Small Business22%
    Midsize Enterprise9%
    Large Enterprise69%
    VISITORS READING REVIEWS
    Small Business12%
    Midsize Enterprise10%
    Large Enterprise78%
    Buyer's Guide
    AWS CloudFormation vs. AWS Config
    May 2024
    Find out what your peers are saying about AWS CloudFormation vs. AWS Config and other solutions. Updated: May 2024.
    772,649 professionals have used our research since 2012.

    AWS CloudFormation is ranked 8th in Configuration Management with 28 reviews while AWS Config is ranked 15th in Configuration Management with 4 reviews. AWS CloudFormation is rated 8.4, while AWS Config is rated 9.0. The top reviewer of AWS CloudFormation writes "Pretty easy setup with great automations for provisioning that save time and money". On the other hand, the top reviewer of AWS Config writes "A cloud solution to host application with smooth instance installation and performance upgrade". AWS CloudFormation is most compared with AWS Systems Manager, Spring Cloud, Red Hat Satellite, Red Hat Ansible Automation Platform and Microsoft Configuration Manager, whereas AWS Config is most compared with AWS Systems Manager. See our AWS CloudFormation vs. AWS Config report.

    See our list of best Configuration Management vendors.

    We monitor all Configuration Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.