Azure Kubernetes Service (AKS) vs Red Hat OpenShift comparison

Cancel
You must select at least 2 products to compare!
SentinelOne Logo
1,647 views|542 comparisons
98% willing to recommend
Microsoft Logo
784 views|549 comparisons
100% willing to recommend
Red Hat Logo
15,669 views|12,466 comparisons
96% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Azure Kubernetes Service (AKS) and Red Hat OpenShift based on real PeerSpot user reviews.

Find out what your peers are saying about Palo Alto Networks, Wiz, Microsoft and others in Container Security.
To learn more, read our detailed Container Security Report (Updated: June 2024).
772,679 professionals have used our research since 2012.
Q&A Highlights
Question: What are the differences between AKS and OpenShift?
Answer: Here are the key differences between Azure Kubernetes Service (AKS) and OpenShift: AKS is a managed Kubernetes service, while OpenShift is a self-managed Kubernetes distribution, making AKS easier to deploy and manage, while OpenShift gives you more control over the Kubernetes environment. AKS offers a basic set of features, while OpenShift provides a more comprehensive set of features, including support for multiple container runtimes, a wider range of security features, and more integrations with other Red Hat products. Pricing for AKS is per node, while OpenShift is priced per cluster. AKS can be more cost-effective for small clusters, while OpenShift can be more cost-effective for large clusters.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"The most valuable features of PingSafe are the asset inventory and issue indexing.""The user-friendly dashboard offers both convenience and security by providing quick access to solutions and keeping us informed of potential threats.""With PingSafe, it's easy to onboard new accounts.""The visibility PingSafe provides into the Cloud environment is a valuable feature.""The management console is highly intuitive to comprehend and operate.""Our previous product took a lot of man hours to manage. Once we got Singularity Cloud Workload Security, it freed up our time to work on other tasks.""It is very straightforward. It is not complicated. For the information that it provides, it does a pretty good job.""The agentless vulnerability scanning is great."

More SentinelOne Singularity Cloud Security Pros →

"The tool is budget-friendly.""We like how easy it is to create the resources in this solution, thanks to how easy the UI is to use.""Compliance is easy right out-of-the-box with integration to Azure Security, Azure Active Directory, and Azure Policies.""The product has built-in functionality that checks whether the service is available or not. In case the service is down, the tool will create a new instance by default. Hence, the web API will be always up irrespective of the server or the situation.""Has a good management feature monitored by the cloud service provider.""The most valuable features of AKS are rollback updates, high availability, easy management, speedy execution and deployment.""The serverless capability and auto scale feature are the most valuable.""Azure Kubernetes Service is pretty robust in terms of scalability and auto-scaling fixes."

More Azure Kubernetes Service (AKS) Pros →

"This solution helps us to account for peak seasons involving higher demand than usual. It also gives us confidence in the security of our overall systems.""It is a stable platform.""The security is good.""The scalability of OpenShift combined with Kubernetes is good. At least from the software standpoint, it becomes quite easy to handle the scalability through configuration. You need to constantly monitor the underlying infrastructure and ensure that it has adequate provisioning. If you have enough infrastructure, then managing the scalability is quite easy which is done through configuration.""The virtualization of my APIs means I no longer have to pay VMware large amounts of money to only run in-house solutions.""I like OCP, and the management UI is better than the open-source ones.""There is a quick deployment of the application, and we can scale out efficiently.""The most valuable feature of OpenShift is the containers."

More Red Hat OpenShift Pros →

Cons
"There is a bit of a learning curve for new users.""While PingSafe offers real-time response, there is room for improvement in alert accuracy.""When we get a new finding from PingSafe, I wish we could get an alert in the console, so we can work on it before we see it in the report. It would be very useful for the team that is actively working on the PingSafe platform, so we can close the issue the same day before it appears in the daily report.""I want PingSafe to integrate additional third-party resources. For example, PingSafe is compatible with Azure and AWS, but Azure AD isn't integrated with AWS. If PingSafe had that ability, it would enrich the data because how users interact with our AWS environment is crucial. All the identity-related features require improvement.""It would be really helpful if the solution improves its agent deployment process.""The resolution suggestions could be better, and the compliance features could be more customizable for Indian regulations. Overall, the compliance aspects are good. It gives us a comprehensive list, and its feedback is enough to bring us into compliance with regulations, but it doesn't give us the specific objects.""When you find a vulnerability and resolve it, the same issue will not occur again. I want PingSafe to block the same vulnerability from appearing again. I want something like a playbook where the steps that we take to resolve an issue are repeated when that issue happens again.""We recently adopted a new ticket management solution, so we've asked them to include a connector to integrate that tool with Cloud Native Security directly. We'd also like to see Cloud Native Security add a scan for personally identifying information. We're looking at other tools for this capability, but having that functionality built into Cloud Native Security would be nice. Monitoring PII data is critical to us as an organization."

More SentinelOne Singularity Cloud Security Cons →

"The initial setup is complex.""Sometimes, it fails to provide specific metrics.""The solution's logs have room for improvement.""The initial setup of AKS is complicated. The setup depends on the cluster, nodes, and lots of other things. There are also lots of extremely critical small devices. Moreover, you will have to pay them even while setting up the solution. It is not like you setup first and then pay for it.""It just loses out because you have less access to it programmatically, with less technical or customizable access.""AKS could enhance its functionality by introducing a blueprint feature that streamlines and expedites the process. With a blueprint, users can leverage pre-defined configurations, including some common survey elements, reducing the need for extensive customization and allowing us to focus on our core business activities. Additionally, if the blueprint covers security aspects, it would be greatly beneficial, as it eliminates the need for us to build security expertise from scratch. Currently, we encounter challenges during cloud onboarding, security implementation, and adapting to Kubernetes. Although Microsoft may not consider these as their direct responsibility, providing a blueprint similar to what they offer to developers would be highly advantageous.""One area that could be improved is the Azure CLI. It would be beneficial if they could abstract some of the complexities related to deployment scripts and make them a part of Azure CLI.""AKS has the potential to enhance pricing by enabling us to explore ways to increase cost transparency. However, it's important to note that this refers to computation costs rather than client costs. Our objective is to optimize efficiency and minimize unnecessary expenses. Therefore, we aim to identify which services within the platform can benefit from improved consumption patterns. This is the focus of our ongoing research, with the goal of maximizing computational power within the cluster. We aim to avoid situations where resources are reserved but not utilized effectively. Additionally, our strong emphasis on security ensures that we adhere to all relevant compliance standards, bolstering our overall trustworthiness."

More Azure Kubernetes Service (AKS) Cons →

"The solution only offers support for one server.""This is a fairly expensive solution.""OpenShift could be improved if it were more accessible for smaller budgets.""I want easier node management and more user-friendly scripts for installing master and worker nodes.""OpenShift's storage management could be better.""The monitoring part could be better to monitor the performance.""If we can have a GUI-based configuration with better flexibility then it will be great.""The interface could be simplified a bit more."

More Red Hat OpenShift Cons →

Pricing and Cost Advice
  • "As a partner, we receive a discount on the licenses."
  • "It's a fair price for what you get. We are happy with the price as it stands."
  • "I wasn't sure what to expect from the pricing, but I was pleasantly surprised to find that it was a little less than I thought."
  • "Singularity Cloud Workload Security's pricing is good."
  • "Singularity Cloud Workload Security's licensing and price were cheaper than the other solutions we looked at."
  • "I understand that SentinelOne is a market leader, but the bill we received was astronomical."
  • "It's not expensive. The product is in its initial growth stages and appears more competitive compared to others. It comes in different variants, and I believe the enterprise version costs around $55 per user per year. I would rate it a five, somewhere fairly moderate."
  • "The pricing is fair. It is not inexpensive, and it is also not expensive. When managing a large organization, it is going to be costly, but it meets the business needs. In terms of what is out there on the market, it is fair and comparable to what I have seen, so I do not have any complaints about the cost"
  • More SentinelOne Singularity Cloud Security Pricing and Cost Advice →

  • "As you scale your operations, AKS becomes more cost-effective."
  • "We could spend as little as $25 or $30 a month on Kubernetes Services, compared to the typical $100 a month expenditure for a virtual machine."
  • "The cost of the solution is extremely high. Both Amazon and Azure cost extremely high. Given the basic features like when they are coming over the cluster nodes, we think over ten times before giving the solution to clients. No matter how many offerings the solution provides, it becomes so much of a burden that you are not even getting back your invested money from customers."
  • "The control plane is free and we only pay for the usage and time."
  • "It is expensive compared to other vendors."
  • "The product follows a pay-as-you-go pricing model which is good for small enterprises. You need to pay only for the services that you use."
  • "It is an expensive solution."
  • "The price of AKS is expensive. We pay approximately $10,000 monthly."
  • More Azure Kubernetes Service (AKS) Pricing and Cost Advice →

  • "I don't deal with the cost part, but I know that the cost is very high when compared to other products. They charge for CPU and memory, but we don't worry about it."
  • "We had a Red Hat Enterprise Linux (RHEL) license for all our servers' operating systems. By having multiple Red Hat products together, you can negotiate costs and leverage on having a sort of enterprise license agreement to reduce the overall outlay or TCO."
  • "Pricing of OpenShift depends on the number of nodes and who is hosting it."
  • "Depending on the extent of the product use, licenses are available for a range of time periods, and are renewable at the end of the period."
  • "We are currently using the open version, OKD. We plan to get the enterprise version in the future."
  • "The licensing cost for OpenShift is expensive when compared to other products. RedHat also charges you additional costs apart from the standard licensing fees."
  • "This solution is fairly expensive but comes at an average cost compared to other solutions in the market."
  • "The model of pricing and buying licences is quite rigid. We are in the process of negotiating on demand pricing which will help us take advantage of the cloud as a whole."
  • More Red Hat OpenShift Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Container Security solutions are best for your needs.
    772,679 professionals have used our research since 2012.
    Questions from the Community
    Top Answer:The dashboard gives me an overview of all the things happening in the product, making it one of the tool's best… more »
    Top Answer:When I joined my organization, I saw that PingSafe was already implemented. I started to use the tool's alerting… more »
    Top Answer:The platform's high scalability is one of its biggest advantages.
    Top Answer:In terms of cost perspective, they could make the product more affordable.
    Top Answer:Our primary use case for Azure Kubernetes Service (AKS) is containerizing and deploying microservices applications for… more »
    Top Answer:Open Shift makes managing infrastructure easy because of self-healing and automatic scaling. There is also a wonderful… more »
    Top Answer:Pivotal Cloud Foundry is a cloud-native application platform to simplify app delivery. It is efficient and effective… more »
    Top Answer:OpenShift facilitates DevOps practices and improves CI/CD workflows in terms of stability compared to Jenkins.
    Comparisons
    Also Known As
    PingSafe
    Learn More
    Overview

    Singularity Cloud Security is SentinelOne’s comprehensive, cloud-native application protection platform (CNAPP). It combines the best of agentless insights with AI-powered threat protection, to secure and protect your multi-cloud infrastructure, services, and containers from build time to runtime. SentinelOne’s CNAPP applies an attacker’s mindset to help security practitioners better prioritize their  remediation tasks with evidence-backed Verified Exploit Paths™. The efficient and scalable runtime protection, proven over 5 years and trusted by many of the world’s leading cloud enterprises, harnesses local, autonomous AI engines to detect and thwart runtime threats in real-time. CNAPP data and workload telemetry is recorded to SentinelOne’s unified security lake, for easy access and investigation.

    Singularity Cloud Security includes both agentless and AI-powered cloud security controls, which represent two halves of our strategy to keep public cloud and container environments safe. Radically reduce your cloud attack surface with Singularity Cloud Native Security, formerly PingSafe, with agentless insights and evidence-based prioritization; protect runtime compute and container with Singularity Cloud Workload Security, SentinelOne’s real-time CWPP, with AI-powered machine-speed blocking of threats.

    Azure Kubernetes Service (AKS) is a fully managed container orchestration service provided by Microsoft Azure. It simplifies the deployment, management, and scaling of containerized applications using Kubernetes. With AKS, developers can focus on building applications while Azure takes care of the underlying infrastructure. It offers features like automatic scaling, monitoring, and security, ensuring high availability and reliability. AKS integrates seamlessly with other Azure services, enabling easy integration with existing workflows. It also provides a flexible and open-source environment, allowing developers to use their preferred tools and frameworks. With AKS, organizations can accelerate their application development and deployment processes, while reducing operational overheads.

    OpenShift is Red Hat's Kubernetes platform that provides a cloud environment for development, hosting, and scaling applications. The solution enables a cloud-like experience regardless of the location where it has been deployed, including in the cloud, on premises, or at the edge. It allows developers to select where to build, deploy, and run applications through a consistent experience, supported by full-stack automated operations, and self-service provisioning.

    OpenShift employs an open hybrid cloud strategy which is built on the foundation of technologies including Linux, containers, and automation. This approach provides clients with a flexible selection of where to run their applications. Applications can be built on Red Hat Enterprise Linux and are automatically compatible with Red Hat Ansible Automation Platform. OpenShift enables automation inside and outside clients' Kubernetes clusters.

    The solution works with traditional, modernized, and cloud-native applications. It supports a wide variety of workloads, including Java, artificial intelligence and machine learning (AI/ML), and databases. Due to the vast ecosystem of technology partners that OpenShift supports, clients can benefit from automated deployment and life-cycle management. This product improves the security of the full application life cycle by decreasing operational risk. This is achieved by shifting security left and automating development, security, and operations (DevSecOps).

    OpenShift Features

    OpenShift facilitates clients’ application-running processes through various features. Some of the product’s features include:

    • Backup and recovery: This feature ensures logical and physical protection through containers, Kubernetes, and serverless present opportunities. It is used to meet recovery point objectives (RPO) and recovery time objectives (RTO).

    • CI/CD pipelines: This feature of OpenShift automates the continuous integration and continuous deployment (CI/CD) pipelines, accelerating the time for application development.

    • GitOps: The GitOps feature increases security and reliability for applications through tools like Git repositories, Kubernetes, and CI/CD. The product includes this feature to allow developers more freedom in app development through tracing and accounting for the application life cycle in the Git repository.

    • Helm: Helm is a package and installs manager that simplifies the deployment of containerized apps. It is included in the features of OpenShift to assist users with interoperability and support cloud-native applications from independent software vendors (ISVs).

    • Sandboxed containers: OpenShift offers sandboxed containers based on Kata Containers to provide an additional layer of isolation for applications while meeting high-security requirements.

    • Windows containers: The product offers this feature to facilitate users when running their Windows applications by providing them a scheduled, orchestrated, and managed environment.

    • Security: OpenShift offers various operations through which clients can ensure the safety of their data and applications. They include container host and platform multitenancy, security and trusted content sources, security of the container registry, the build pipeline, and data, managing security container deployments, and more.

    • Service Mesh: This feature provides a uniform way for clients to connect, manage, and observe microservices-based applications. It also provides detailed behavioral insight.

    • Operators: This feature automates the development, configuration, and management of Kubernetes-native applications.

    • Virtualization: OpenShift allows users to run and manage virtual machine (VM) and container workloads side by side.

    OpenShift Benefits

    OpenShift provides the companies and users utilizing it with various benefits. These benefits include the following:

    • OpenShift provides scalability for applications, allowing them to run across hundreds of nodes in seconds.

    • The product offers flexibility by simplifying the deployment and management of hybrid infrastructure and providing self-managed or fully-managed service.

    • OpenShift incorporates open-source technologies alongside its native components and features.

    • The product enhances the developer experience by offering a variety of tools, multi language support, and integrated development environment (IDE) integrations.

    • The solution supports automated installation and over-the-air platform upgrades in the cloud with Amazon AWS, Google Cloud Platform, IBM Cloud, and Microsoft Azure, as well as various on-premise platforms.

    • OpenShift includes streamlined and automated container and app builds, as well as health management and scaling.

    • The solution enhances the support of smaller-footprint topologies in edge scenarios.

    • OpenShift provides easy multiple cluster management through Red Hat Advanced Cluster Management for Kubernetes.

    • The product has enhanced security capabilities that include access controls, an enterprise registry with a built-in scanner, and networking.

    • The solution supports a wide spectrum of enterprise storage solutions for running stateful as well as stateless apps.

    Reviews from Real Users

    An executive head of department - M-PESA Tech at a comms service provider gives OpenShift a high rating because its automation can go a long way in reducing time to market and the time required to fix issues that arise from deployment.

    Vikram C., head of infrastructure & cloud ops at a comms service provider, rates highly three qualities of OpenShift, summarizing them to mature, seamless integration, and easy setup.

    Sample Customers
    Information Not Available
    Information Not Available
    UPS, Cathay Pacific, Hilton
    Top Industries
    REVIEWERS
    Computer Software Company27%
    Construction Company13%
    Financial Services Firm10%
    Media Company8%
    VISITORS READING REVIEWS
    Computer Software Company21%
    Financial Services Firm15%
    Manufacturing Company10%
    Insurance Company4%
    REVIEWERS
    Computer Software Company21%
    Retailer21%
    Financial Services Firm21%
    Manufacturing Company7%
    VISITORS READING REVIEWS
    Financial Services Firm25%
    Computer Software Company14%
    Manufacturing Company9%
    Government6%
    REVIEWERS
    Financial Services Firm32%
    Comms Service Provider18%
    Manufacturing Company11%
    Computer Software Company11%
    VISITORS READING REVIEWS
    Financial Services Firm33%
    Computer Software Company9%
    Manufacturing Company7%
    Insurance Company6%
    Company Size
    REVIEWERS
    Small Business39%
    Midsize Enterprise20%
    Large Enterprise41%
    VISITORS READING REVIEWS
    Small Business26%
    Midsize Enterprise13%
    Large Enterprise61%
    REVIEWERS
    Small Business31%
    Midsize Enterprise14%
    Large Enterprise54%
    VISITORS READING REVIEWS
    Small Business14%
    Midsize Enterprise15%
    Large Enterprise71%
    REVIEWERS
    Small Business26%
    Midsize Enterprise9%
    Large Enterprise65%
    VISITORS READING REVIEWS
    Small Business13%
    Midsize Enterprise9%
    Large Enterprise79%
    Buyer's Guide
    Container Security
    June 2024
    Find out what your peers are saying about Palo Alto Networks, Wiz, Microsoft and others in Container Security. Updated: June 2024.
    772,679 professionals have used our research since 2012.

    Azure Kubernetes Service (AKS) is ranked 13th in Container Security with 32 reviews while Red Hat OpenShift is ranked 4th in PaaS Clouds with 54 reviews. Azure Kubernetes Service (AKS) is rated 8.2, while Red Hat OpenShift is rated 8.4. The top reviewer of Azure Kubernetes Service (AKS) writes "Decreases administrative burdens and costs, has good diagnostic tools, and is easy to deploy". On the other hand, the top reviewer of Red Hat OpenShift writes "Provides us with the flexibility and efficiency of cloud-native stacks while enabling us to meet regulatory constraints". Azure Kubernetes Service (AKS) is most compared with CrowdStrike Falcon Cloud Security, SUSE Rancher, Qualys VMDR and Tenable.io Container Security, whereas Red Hat OpenShift is most compared with Amazon AWS, Pivotal Cloud Foundry, Microsoft Azure, Google Cloud and Oracle Cloud Infrastructure (OCI).

    We monitor all Container Security reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.