Azure Kubernetes Service (AKS) vs Red Hat OpenShift comparison

Cancel
You must select at least 2 products to compare!
SentinelOne Logo
1,149 views|496 comparisons
98% willing to recommend
Microsoft Logo
776 views|530 comparisons
100% willing to recommend
Red Hat Logo
16,153 views|12,778 comparisons
96% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Azure Kubernetes Service (AKS) and Red Hat OpenShift based on real PeerSpot user reviews.

Find out what your peers are saying about Palo Alto Networks, Wiz, Microsoft and others in Container Security.
To learn more, read our detailed Container Security Report (Updated: June 2024).
772,649 professionals have used our research since 2012.
Q&A Highlights
Question: What are the differences between AKS and OpenShift?
Answer: Here are the key differences between Azure Kubernetes Service (AKS) and OpenShift: AKS is a managed Kubernetes service, while OpenShift is a self-managed Kubernetes distribution, making AKS easier to deploy and manage, while OpenShift gives you more control over the Kubernetes environment. AKS offers a basic set of features, while OpenShift provides a more comprehensive set of features, including support for multiple container runtimes, a wider range of security features, and more integrations with other Red Hat products. Pricing for AKS is per node, while OpenShift is priced per cluster. AKS can be more cost-effective for small clusters, while OpenShift can be more cost-effective for large clusters.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"We noted immediate benefits from using the solution.""PingSafe has a dashboard that can detect the criticality of a particular problem, whether it falls under critical, medium, or low vulnerability.""Cloud Native Security is a tool that has good monitoring features.""Cloud Native Security's most valuable features include cloud misconfiguration detection and remediation, compliance monitoring, a robust authentication security engine, and cloud threat detection and response capabilities.""It's positively affected the communication between cloud security, application developers, and AppSec teams.""As a frequently audited company, we value PingSafe's compliance monitoring features. They give us a report with a compliance score for how well we meet certain regulatory standards, like HIPAA. We can show our compliance as a percentage. It's also a way to show that we are serious about security.""PingSafe offers three key features: vulnerability management notifications, cloud configuration assistance, and security scanning.""The mean time to detect has been reduced."

More SentinelOne Singularity Cloud Security Pros →

"It is a stable solution.""Its support team resolves technical issues accurately.""Compliance is easy right out-of-the-box with integration to Azure Security, Azure Active Directory, and Azure Policies.""I found the Helm deployment feature of the solution valuable.""The serverless capability and auto scale feature are the most valuable.""It employs high availability.""The most valuable feature is the autoscaling and self-healing.""The most valuable features of AKS are the full array of capabilities and robust security."

More Azure Kubernetes Service (AKS) Pros →

"I like OCP, and the management UI is better than the open-source ones.""The solution provides a lot of flexibility to the application team for running their applications in the container platform, without needing to monitor the entire infrastructure all the time. It automatically scales and automatically self-heals. There is also a mechanism to alert the team in case it is over-committing or overutilizing the application.""The company had a product called device financing, where the company worked as a partner with Google. It allowed customers to take mobile phones on loan or via credit. When we migrated those services to OpenShift in February last year, we were able to sell over 100,000 devices in a single day, which was very good.""This solution helps us to account for peak seasons involving higher demand than usual. It also gives us confidence in the security of our overall systems.""The most valuable feature of OpenShift is the security context constraint (SCC). The solution’s security throughout the stack is good. And security context constraints provide port-level security. It's a granular level of control, where you can give privileges to certain users to work on certain applications.""Valuable features include auto-recreate of pod if pod fails; fast rollback, with one click, to previous version.""Two stand-out features are the security model and value-add features that don't exist in Upstream Kubernetes.""The product's initial setup is very easy, especially compared to AWS."

More Red Hat OpenShift Pros →

Cons
"We can customize security policies but lack auditing capabilities.""I export CSV. I cannot export graphs. Restricting it to the CSV format has its own disadvantages. These are all machine IP addresses and information. I cannot change it to the JSON format. The export functionality can be improved.""One of our use cases was setting up a firewall for our endpoints, specifically for our remote users... We were hoping to utilize SentinelOne's firewall capabilities, but there were limitations on how many URLs we could implement. Because of those limitations on the number of URLs, we weren't able to utilize that feature in the way we had hoped to.""PingSafe can improve by eliminating 100 percent of the false positives.""There's an array of upcoming versions with numerous features to be incorporated into the roadmap. Customers particularly appreciate the service's emphasis on intensive security, especially the secret scanning aspect. During the proof of concept (POC) phase, the system is required to gather logs from the customer's environment. This process entails obtaining specific permissions, especially in terms of gateway access. While most permissions for POC are manageable, the need for various permissions may need improvement, especially in the context of security.""I used to work on AWS. At times, I would generate a normal bug in my system, and then I would check PingSafe. The alert used to come after about three and a half hours. It used to take that long to generate the alert about the vulnerability in my system. If a hacker attacks a system and PingSafe takes three to four hours to generate an alert, it will not be beneficial for the company. It would be helpful if we get the alert in five to ten minutes.""We recently adopted a new ticket management solution, so we've asked them to include a connector to integrate that tool with Cloud Native Security directly. We'd also like to see Cloud Native Security add a scan for personally identifying information. We're looking at other tools for this capability, but having that functionality built into Cloud Native Security would be nice. Monitoring PII data is critical to us as an organization.""We had a glitch in PingSafe where it fed us false positives in the past."

More SentinelOne Singularity Cloud Security Cons →

"Its integration functions could be enhanced.""AKS could enhance its functionality by introducing a blueprint feature that streamlines and expedites the process. With a blueprint, users can leverage pre-defined configurations, including some common survey elements, reducing the need for extensive customization and allowing us to focus on our core business activities. Additionally, if the blueprint covers security aspects, it would be greatly beneficial, as it eliminates the need for us to build security expertise from scratch. Currently, we encounter challenges during cloud onboarding, security implementation, and adapting to Kubernetes. Although Microsoft may not consider these as their direct responsibility, providing a blueprint similar to what they offer to developers would be highly advantageous.""This is a fairly expensive solution, which can make it prohibitive for smaller organizations.""We would like to see the addition of a service report from the server for this solution, so that we can monitor the health of server operations.""The initial setup of AKS is complicated. The setup depends on the cluster, nodes, and lots of other things. There are also lots of extremely critical small devices. Moreover, you will have to pay them even while setting up the solution. It is not like you setup first and then pay for it.""Unfortunately, when a microservice fails, Azure can take up to 60 seconds to broadcast an alert to the monitoring agents.""I would like to see the stability get more synchronized.""It can be tough to access the servers when onboarding."

More Azure Kubernetes Service (AKS) Cons →

"One area for improvement is the documentation. They need to make it a little bit more user-friendly. Also, if you compare certain features and the installation process with Rancher, Rancher is simpler.""Some of the storage services and integrations with third-party tools should be made possible.""The solution needs to support the new features in Kubernetes more quickly.""The tool lacks some features to make it compliant with Kubernetes""The interface could be simplified a bit more.""The solution only offers support for one server.""There are challenges related to additional security layers, connectivity compliance for endpoints, and integration.""My team has found some bugs in OpenShift due to continuous integration, and this is an area for improvement in the platform. RedHat should fix the bugs. Another area for improvement in OpenShift is that upgrading clusters can be challenging, resulting in downtime. Application support also needs improvement in OpenShift because the platform doesn't support all applications in the cloud. I'd like upgraded storage in the next release of OpenShift, especially when I need to do a DR exercise. It would also be good if the platform allows mirroring with another cluster, or more portability in terms of moving applications to another cluster."

More Red Hat OpenShift Cons →

Pricing and Cost Advice
  • "As a partner, we receive a discount on the licenses."
  • "It's a fair price for what you get. We are happy with the price as it stands."
  • "I wasn't sure what to expect from the pricing, but I was pleasantly surprised to find that it was a little less than I thought."
  • "Singularity Cloud Workload Security's pricing is good."
  • "Singularity Cloud Workload Security's licensing and price were cheaper than the other solutions we looked at."
  • "I understand that SentinelOne is a market leader, but the bill we received was astronomical."
  • "It's not expensive. The product is in its initial growth stages and appears more competitive compared to others. It comes in different variants, and I believe the enterprise version costs around $55 per user per year. I would rate it a five, somewhere fairly moderate."
  • "The pricing is fair. It is not inexpensive, and it is also not expensive. When managing a large organization, it is going to be costly, but it meets the business needs. In terms of what is out there on the market, it is fair and comparable to what I have seen, so I do not have any complaints about the cost"
  • More SentinelOne Singularity Cloud Security Pricing and Cost Advice →

  • "As you scale your operations, AKS becomes more cost-effective."
  • "We could spend as little as $25 or $30 a month on Kubernetes Services, compared to the typical $100 a month expenditure for a virtual machine."
  • "The cost of the solution is extremely high. Both Amazon and Azure cost extremely high. Given the basic features like when they are coming over the cluster nodes, we think over ten times before giving the solution to clients. No matter how many offerings the solution provides, it becomes so much of a burden that you are not even getting back your invested money from customers."
  • "The control plane is free and we only pay for the usage and time."
  • "It is expensive compared to other vendors."
  • "The product follows a pay-as-you-go pricing model which is good for small enterprises. You need to pay only for the services that you use."
  • "It is an expensive solution."
  • "The price of AKS is expensive. We pay approximately $10,000 monthly."
  • More Azure Kubernetes Service (AKS) Pricing and Cost Advice →

  • "I don't deal with the cost part, but I know that the cost is very high when compared to other products. They charge for CPU and memory, but we don't worry about it."
  • "We had a Red Hat Enterprise Linux (RHEL) license for all our servers' operating systems. By having multiple Red Hat products together, you can negotiate costs and leverage on having a sort of enterprise license agreement to reduce the overall outlay or TCO."
  • "Pricing of OpenShift depends on the number of nodes and who is hosting it."
  • "Depending on the extent of the product use, licenses are available for a range of time periods, and are renewable at the end of the period."
  • "We are currently using the open version, OKD. We plan to get the enterprise version in the future."
  • "The licensing cost for OpenShift is expensive when compared to other products. RedHat also charges you additional costs apart from the standard licensing fees."
  • "This solution is fairly expensive but comes at an average cost compared to other solutions in the market."
  • "The model of pricing and buying licences is quite rigid. We are in the process of negotiating on demand pricing which will help us take advantage of the cloud as a whole."
  • More Red Hat OpenShift Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Container Security solutions are best for your needs.
    772,649 professionals have used our research since 2012.
    Questions from the Community
    Top Answer:The dashboard gives me an overview of all the things happening in the product, making it one of the tool's best… more »
    Top Answer:When I joined my organization, I saw that PingSafe was already implemented. I started to use the tool's alerting… more »
    Top Answer:The platform's high scalability is one of its biggest advantages.
    Top Answer:In terms of cost perspective, they could make the product more affordable.
    Top Answer:Our primary use case for Azure Kubernetes Service (AKS) is containerizing and deploying microservices applications for… more »
    Top Answer:Open Shift makes managing infrastructure easy because of self-healing and automatic scaling. There is also a wonderful… more »
    Top Answer:Pivotal Cloud Foundry is a cloud-native application platform to simplify app delivery. It is efficient and effective… more »
    Top Answer:OpenShift facilitates DevOps practices and improves CI/CD workflows in terms of stability compared to Jenkins.
    Comparisons
    Also Known As
    PingSafe
    Learn More
    Overview

    Singularity Cloud Security is SentinelOne’s comprehensive, cloud-native application protection platform (CNAPP). It combines the best of agentless insights with AI-powered threat protection, to secure and protect your multi-cloud infrastructure, services, and containers from build time to runtime. SentinelOne’s CNAPP applies an attacker’s mindset to help security practitioners better prioritize their  remediation tasks with evidence-backed Verified Exploit Paths™. The efficient and scalable runtime protection, proven over 5 years and trusted by many of the world’s leading cloud enterprises, harnesses local, autonomous AI engines to detect and thwart runtime threats in real-time. CNAPP data and workload telemetry is recorded to SentinelOne’s unified security lake, for easy access and investigation.

    Singularity Cloud Security includes both agentless and AI-powered cloud security controls, which represent two halves of our strategy to keep public cloud and container environments safe. Radically reduce your cloud attack surface with Singularity Cloud Native Security, formerly PingSafe, with agentless insights and evidence-based prioritization; protect runtime compute and container with Singularity Cloud Workload Security, SentinelOne’s real-time CWPP, with AI-powered machine-speed blocking of threats.

    Azure Kubernetes Service (AKS) is a fully managed container orchestration service provided by Microsoft Azure. It simplifies the deployment, management, and scaling of containerized applications using Kubernetes. With AKS, developers can focus on building applications while Azure takes care of the underlying infrastructure. It offers features like automatic scaling, monitoring, and security, ensuring high availability and reliability. AKS integrates seamlessly with other Azure services, enabling easy integration with existing workflows. It also provides a flexible and open-source environment, allowing developers to use their preferred tools and frameworks. With AKS, organizations can accelerate their application development and deployment processes, while reducing operational overheads.

    OpenShift is Red Hat's Kubernetes platform that provides a cloud environment for development, hosting, and scaling applications. The solution enables a cloud-like experience regardless of the location where it has been deployed, including in the cloud, on premises, or at the edge. It allows developers to select where to build, deploy, and run applications through a consistent experience, supported by full-stack automated operations, and self-service provisioning.

    OpenShift employs an open hybrid cloud strategy which is built on the foundation of technologies including Linux, containers, and automation. This approach provides clients with a flexible selection of where to run their applications. Applications can be built on Red Hat Enterprise Linux and are automatically compatible with Red Hat Ansible Automation Platform. OpenShift enables automation inside and outside clients' Kubernetes clusters.

    The solution works with traditional, modernized, and cloud-native applications. It supports a wide variety of workloads, including Java, artificial intelligence and machine learning (AI/ML), and databases. Due to the vast ecosystem of technology partners that OpenShift supports, clients can benefit from automated deployment and life-cycle management. This product improves the security of the full application life cycle by decreasing operational risk. This is achieved by shifting security left and automating development, security, and operations (DevSecOps).

    OpenShift Features

    OpenShift facilitates clients’ application-running processes through various features. Some of the product’s features include:

    • Backup and recovery: This feature ensures logical and physical protection through containers, Kubernetes, and serverless present opportunities. It is used to meet recovery point objectives (RPO) and recovery time objectives (RTO).

    • CI/CD pipelines: This feature of OpenShift automates the continuous integration and continuous deployment (CI/CD) pipelines, accelerating the time for application development.

    • GitOps: The GitOps feature increases security and reliability for applications through tools like Git repositories, Kubernetes, and CI/CD. The product includes this feature to allow developers more freedom in app development through tracing and accounting for the application life cycle in the Git repository.

    • Helm: Helm is a package and installs manager that simplifies the deployment of containerized apps. It is included in the features of OpenShift to assist users with interoperability and support cloud-native applications from independent software vendors (ISVs).

    • Sandboxed containers: OpenShift offers sandboxed containers based on Kata Containers to provide an additional layer of isolation for applications while meeting high-security requirements.

    • Windows containers: The product offers this feature to facilitate users when running their Windows applications by providing them a scheduled, orchestrated, and managed environment.

    • Security: OpenShift offers various operations through which clients can ensure the safety of their data and applications. They include container host and platform multitenancy, security and trusted content sources, security of the container registry, the build pipeline, and data, managing security container deployments, and more.

    • Service Mesh: This feature provides a uniform way for clients to connect, manage, and observe microservices-based applications. It also provides detailed behavioral insight.

    • Operators: This feature automates the development, configuration, and management of Kubernetes-native applications.

    • Virtualization: OpenShift allows users to run and manage virtual machine (VM) and container workloads side by side.

    OpenShift Benefits

    OpenShift provides the companies and users utilizing it with various benefits. These benefits include the following:

    • OpenShift provides scalability for applications, allowing them to run across hundreds of nodes in seconds.

    • The product offers flexibility by simplifying the deployment and management of hybrid infrastructure and providing self-managed or fully-managed service.

    • OpenShift incorporates open-source technologies alongside its native components and features.

    • The product enhances the developer experience by offering a variety of tools, multi language support, and integrated development environment (IDE) integrations.

    • The solution supports automated installation and over-the-air platform upgrades in the cloud with Amazon AWS, Google Cloud Platform, IBM Cloud, and Microsoft Azure, as well as various on-premise platforms.

    • OpenShift includes streamlined and automated container and app builds, as well as health management and scaling.

    • The solution enhances the support of smaller-footprint topologies in edge scenarios.

    • OpenShift provides easy multiple cluster management through Red Hat Advanced Cluster Management for Kubernetes.

    • The product has enhanced security capabilities that include access controls, an enterprise registry with a built-in scanner, and networking.

    • The solution supports a wide spectrum of enterprise storage solutions for running stateful as well as stateless apps.

    Reviews from Real Users

    An executive head of department - M-PESA Tech at a comms service provider gives OpenShift a high rating because its automation can go a long way in reducing time to market and the time required to fix issues that arise from deployment.

    Vikram C., head of infrastructure & cloud ops at a comms service provider, rates highly three qualities of OpenShift, summarizing them to mature, seamless integration, and easy setup.

    Sample Customers
    Information Not Available
    Information Not Available
    UPS, Cathay Pacific, Hilton
    Top Industries
    REVIEWERS
    Computer Software Company27%
    Construction Company13%
    Financial Services Firm10%
    Media Company8%
    VISITORS READING REVIEWS
    Computer Software Company21%
    Financial Services Firm15%
    Manufacturing Company10%
    Insurance Company5%
    REVIEWERS
    Computer Software Company21%
    Retailer21%
    Financial Services Firm21%
    Manufacturing Company7%
    VISITORS READING REVIEWS
    Financial Services Firm25%
    Computer Software Company14%
    Manufacturing Company10%
    Government6%
    REVIEWERS
    Financial Services Firm32%
    Comms Service Provider18%
    Manufacturing Company11%
    Computer Software Company11%
    VISITORS READING REVIEWS
    Financial Services Firm33%
    Computer Software Company10%
    Manufacturing Company7%
    Insurance Company6%
    Company Size
    REVIEWERS
    Small Business39%
    Midsize Enterprise20%
    Large Enterprise41%
    VISITORS READING REVIEWS
    Small Business26%
    Midsize Enterprise13%
    Large Enterprise61%
    REVIEWERS
    Small Business31%
    Midsize Enterprise14%
    Large Enterprise54%
    VISITORS READING REVIEWS
    Small Business14%
    Midsize Enterprise15%
    Large Enterprise71%
    REVIEWERS
    Small Business26%
    Midsize Enterprise9%
    Large Enterprise65%
    VISITORS READING REVIEWS
    Small Business13%
    Midsize Enterprise9%
    Large Enterprise78%
    Buyer's Guide
    Container Security
    June 2024
    Find out what your peers are saying about Palo Alto Networks, Wiz, Microsoft and others in Container Security. Updated: June 2024.
    772,649 professionals have used our research since 2012.

    Azure Kubernetes Service (AKS) is ranked 13th in Container Security with 32 reviews while Red Hat OpenShift is ranked 4th in PaaS Clouds with 54 reviews. Azure Kubernetes Service (AKS) is rated 8.2, while Red Hat OpenShift is rated 8.4. The top reviewer of Azure Kubernetes Service (AKS) writes "Decreases administrative burdens and costs, has good diagnostic tools, and is easy to deploy". On the other hand, the top reviewer of Red Hat OpenShift writes "Provides us with the flexibility and efficiency of cloud-native stacks while enabling us to meet regulatory constraints". Azure Kubernetes Service (AKS) is most compared with CrowdStrike Falcon Cloud Security, SUSE Rancher, Qualys VMDR and Tenable.io Container Security, whereas Red Hat OpenShift is most compared with Amazon AWS, Pivotal Cloud Foundry, Microsoft Azure, Google Cloud and Oracle Cloud Infrastructure (OCI).

    We monitor all Container Security reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.