We performed a comparison between Forescout Platform and Quest KACE Systems Management based on real PeerSpot user reviews.
Find out in this report how the two Endpoint Compliance solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."Forescout Platform provides multiple features. They have a very effective device fingerprinting in their cloud. You do not need to add any devices manually, such as in Mac devices. Other solutions you have to add IoT devices and OT devices manually. This is one of the major areas that Forescout Platform is excelling in."
"The most valuable feature is the blocking of USB devices."
"Provides a good overview of all devices on a network."
"Forescout Platform has granular features and one of the most impressive features is the agentless feature."
"Forescout Platform's most valuable features are that it is very granular. We are able to cull out a lot of information about our particular device or endpoint. The configuration and the visibility are very seamless. Overall the solution is very easy to handle and it's very comprehensive."
"It has helped with improving our security posture in terms of controlling the access of rogue devices into our network through identification. We have been able to prevent rogue device activities on the network, check the health of the system, and ensure remediation."
"The best parts of Forescout Platform are its orchestration features, discovery capabilities, classification buckets, and flexibility in creating policies."
"We really like that we get full visibility of devices in the local network."
"There is ease of use, and its pricing was a driving factor."
"The solution provides us a single pane of glass with everything that we need for endpoint management of all devices. It definitely has made our endpoint management process much easier."
"The scripting part increases IT productivity because of the specialized software in our environments for students' courses. You need to use software which is not programmed by developers. A lot of software for building houses or other things is developed by normal guys, who do not have much skill in programming. When you need to install this type of software, it is very difficult. You have to install registry keys, etc. For that, it is very good to use the scripting part of this solution. So, you can automate this part as well."
"I like how when you click on the device, it shows you everything that has changed as well as the software versioning. I am really enjoying the inventory aspect of it."
"KACE automatically tracks this information and saves it for me, allowing me to call it up on the dashboard. For example, if I need to find Juliano's computer in the system, I don't need to search through endless spreadsheets. I just search for "Juliano" in KACE. KACE also lists other details like the last login user."
"The most valuable feature of KACE is the mass package deployment. There are a lot of endpoint management solutions in the market. The way KACE responds is with the installation management feature, which is done in a very intelligent way, as well as scripting. It's wow. It's really wow. On top of that, there is a mass undeployment feature as well."
"This solution makes it easy to control assets and upgrade all types of software."
"We use the Systems Deployment appliance. It's our bread and butter. It is every machine that gets imaged here in this building and out through the whole state goes through the SDA. We rely on it completely. There is no manual process of getting a laptop out of a box, plugging it up, turning it on, and waiting for Windows to start. If you were to go to Best Buy and buy a brand new laptop, you spend the next two to three hours just setting it up. We don't do that. We get a laptop, plug it into the network, connect it to the SDA, and within about three clicks, we're done."
"This solution is not that easy to scale but this depends on a company's needs."
"Forescout Platform could improve the vulnerability management as well as the control on the endpoint, which needs to be connected to my network."
"The solution needs more definitive pricing. The costs are hard to nail down."
"More detailed analysis during the authentication process, especially for troubleshooting access issues. We have found that troubleshooting RADIUS controls is quite arduous, as it is today. A trace function could easily resolve this by providing a means by which access issues from a certificate to passwords or accounts could easily be identified and remediated."
"I believe that the overall user experience has not always been preferable."
"If older network devices are used there can be some compatibility issues while using the Forescout Platform. Additionally, if the switches that are deployed in your infrastructure are not captured properly to the endpoints there might be some difficulties with Forescout Platform trying to monitor the network traffic. Traffic management is an area the vendor should work on."
"Search - needs boolean functionality (or pseudo operand now working)."
"Forescout Platform could improve the integration or compatibility with other solutions, such as Chinese-made solutions. They do not have any integration with S33 which is a switch. They do not have good integration with new solutions in the market. They do integrate well with Rocket, Cisco, Juniper, and quite a few more but they could expand the integration."
"There isn't a lot they need to improve with the solution itself at this point. It is pretty close to providing a single pane of glass for everything that we need for endpoint management specifically on all devices. There is very little that it doesn't provide for us, and for those, we have to go to other methods. There are some of the patching solutions that it doesn't take care of for us. So, we have to do those manually on the devices, and that's really the biggest thing. It doesn't do patching really well for non-Microsoft applications. The major application updates, particularly Windows updates, don't function nearly as well, but, for the vast majority of things, it does just fine. If they could improve in this aspect, that'd be great, but I don't know if they're going to be able to do that."
"One of the complications is that they don't have 24/7 support, and they're also not in our time zone... Sometimes, no matter how critical my application is, if my production server is down I won't be able to connect with anybody till 11:00 AM Eastern Standard Time."
"Sometimes the information is not as real time as it's supposed to be."
"It could be designed a little bit more intuitively in terms of administration."
"Scalability is my primary concern right now."
"I think it should have the ability to have the applications automatically update. It would be really helpful if this would override what the user might choose to do."
"There may be a good reason why some things are not easily able to be done, yet it needs work to compete with some of the other ticketing systems out there now."
"I've had some issues with patch catalogue."
More Quest KACE Systems Management Pricing and Cost Advice →
Forescout Platform is ranked 4th in Endpoint Compliance with 69 reviews while Quest KACE Systems Management is ranked 5th in Endpoint Compliance with 38 reviews. Forescout Platform is rated 8.4, while Quest KACE Systems Management is rated 8.8. The top reviewer of Forescout Platform writes "We can go granular on each endpoint, quarantine non-compliant machines, and target vulnerabilities through scripting". On the other hand, the top reviewer of Quest KACE Systems Management writes "Easy to use, saves us time, and increases IT productivity". Forescout Platform is most compared with Cisco ISE (Identity Services Engine), Aruba ClearPass, Fortinet FortiNAC, Nozomi Networks and Armis, whereas Quest KACE Systems Management is most compared with Microsoft Intune, Microsoft Configuration Manager, Microsoft Windows Server Update Services, BigFix and Red Hat Ansible Automation Platform. See our Forescout Platform vs. Quest KACE Systems Management report.
See our list of best Endpoint Compliance vendors.
We monitor all Endpoint Compliance reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.