PeerSpot user
Senior Network Engineer/Mobility Specialist at CCSI - Contemporary Computer Services, Inc.
Real User
It has a centralized and unified highly secure access control with ISE, which grew out of ACS.
Pros and Cons
  • "Cisco ISE now competes with any other product in the space because of its centralized and unified highly secure access control with ISE."
  • "The learning curve is steep and the initial setup is complex."

What is most valuable?

Cisco ISE now competes with any other product in the space because of its centralized and unified highly secure access control with ISE. ISE grew out of ACS and in the process has grown up.

What needs improvement?

The learning curve is steep and the initial setup is complex.

What do I think about the stability of the solution?

We've had no issues with stability.

What do I think about the scalability of the solution?

We've had no issues with scalability.

Buyer's Guide
Cisco ISE (Identity Services Engine)
April 2024
Learn what your peers think about Cisco ISE (Identity Services Engine). Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
768,857 professionals have used our research since 2012.

How are customer service and support?

Customer Service:

Customer service is good.

Technical Support:

Technical support is very good.

Which solution did I use previously and why did I switch?

Yes. I am a consultant, so I have used many competing products over the years.

How was the initial setup?

The initial setup is complex, but not if you fully vet the solution and leverage the functionality.

What about the implementation team?

I am the services firm that does this work and the SME for my organization.

What was our ROI?

It is hard to quantify ROI. It is more easily measured in increased mobility and security.

What's my experience with pricing, setup cost, and licensing?

There are three levels of pricing: basic, plus, and apex. Basic satisfied our needs.

Which other solutions did I evaluate?

Yes, we used ClearPass.

What other advice do I have?

Not all features are available with base license, plus license allows for profiling and provisioning

Disclosure: My company has a business relationship with this vendor other than being a customer: We resell Cisco.
PeerSpot user
it_user517461 - PeerSpot reviewer
it_user517461Works at a tech company with 51-200 employees
Vendor

It is a great product

See all 3 comments
PeerSpot user
Senior Network Engineer/Mobility Specialist at CCSI - Contemporary Computer Services, Inc.
Real User
Profile Sets help organize how AAA is handled by grouping, like traffic into separate subroutines.

What is most valuable?

Profile Sets help organize how AAA is handled by grouping, like traffic into separate subroutines.

How has it helped my organization?

We implement this for customers is various verticals. Most of the time oit is in Education. It really helps secure, classify and manage users including guest and BYOD users.

What needs improvement?

The product has improved with its evolution. The initial setup, though, is extremely complex.

For how long have I used the solution?

10 years. I have used this since it was Cisco ACS

What was my experience with deployment of the solution?

As the product matures I encounter less and less problems.

What do I think about the scalability of the solution?

The produt scales well.

How are customer service and technical support?

Excellent. TACis quite knowledgable.

Which solution did I use previously and why did I switch?

I have used Microsoft IAS/NPS, Funk, and Aruba ClearPass. ClearPass is the only product in the same league as Cisco ISE.

How was the initial setup?

ISE is extremely complex. With the functionality and flexibility it offers that is to be expected.

What about the implementation team?

I am the vendors's partner.

What's my experience with pricing, setup cost, and licensing?

Licensing and pricing is a complicated calculation, so it is best to really understand your customers' needs. Also team up with the right resources at Cisco for help.

Disclosure: My company has a business relationship with this vendor other than being a customer: We resell this product and the services associated with it. I have used several other RADIUS/security products from various vendors.
PeerSpot user
Buyer's Guide
Cisco ISE (Identity Services Engine)
April 2024
Learn what your peers think about Cisco ISE (Identity Services Engine). Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
768,857 professionals have used our research since 2012.
Senior Solutions Manager at a computer software company with 1,001-5,000 employees
Real User
Good support, stability, and interconnection with the ecosystem
Pros and Cons
  • "The interconnection with the ecosystem and the ability to force rules all over the network are the most important features."
  • "It is a good product, but in order to use all of the functions of the product, you must have a good understanding of the product. You must know how to use and manage it. It is a little bit complicated to configure and manage. It must be simplified to make it easy to manage for end users. In the initial stage, we found ISE complicated for end users. It was not easy to manage it or to write authentication and authorization protocol. They must improve its management and make it easy for end users. The monitoring and reporting capabilities can be improved because end users want to quickly see what is happening in their network. There were some restrictions in working with other vendors. It should also have a better and easy integration with other vendors."

What is most valuable?

The interconnection with the ecosystem and the ability to force rules all over the network are the most important features.

What needs improvement?

It is a good product, but in order to use all of the functions of the product, you must have a good understanding of the product. You must know how to use and manage it. It is a little bit complicated to configure and manage. It must be simplified to make it easy to manage for end users. In the initial stage, we found ISE complicated for end users. It was not easy to manage it or to write authentication and authorization protocol. They must improve its management and make it easy for end users. 

The monitoring and reporting capabilities can be improved because end users want to quickly see what is happening in their network. There were some restrictions in working with other vendors. It should also have a better and easy integration with other vendors. 

For how long have I used the solution?

I have been using this solution for five or six years.

What do I think about the stability of the solution?

It is a stable product.

What do I think about the scalability of the solution?

It is scalable.

How are customer service and technical support?

It has good technical support. We also have local support now, which is better. There is no problem with their technical support. 

How was the initial setup?

People who are experts should deploy such products. In order to preserve the reputation, a product must be set up with the help of a talented or expert person because when you set up, deploy, or install the product in a wrong way, it gives negative feedback to customers.

What's my experience with pricing, setup cost, and licensing?

The price can be lower, especially for subscriptions. It should be a lot cheaper to have a wide range of customers. The price should be comparable to competitive products like Forescout or Fortinet FortiNAC. Forescout is cheaper for customers looking for a cloud solution.

What other advice do I have?

I would rate Cisco ISE an eight out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer: partner
PeerSpot user
Unified Networks at a program development consultancy with 11-50 employees
Reseller
Enables us to grant access to users in a secure and easy way
Pros and Cons
  • "Visitors can be granted access to the wifi network using their cellphones, notebooks or tablets in a very easy way. The ease of accessibility that anyone can have to the network is very quick and is a big improvement in our network."
  • "There should be an easier way to do the upgrades. There are a lot of steps to get to the next version from the previous version which ends up being a bit of the headache with the upgrade."

What is our primary use case?

Our primary use case is to grant access to users, we deploy the bring your own device policy.

How has it helped my organization?

Visitors can be granted access to the wifi network using their cellphones, notebooks or tablets in a very easy way. The ease of accessibility that anyone can have to the network is very quick and is a big improvement for our network.

What is most valuable?

The flexibility to grant anyone access to the network easily and in a secure way is its most valuable feature.

What needs improvement?

There should be an easier way to do the upgrades. Customers were having issues going from one version to the next. There are a lot of steps to get to the next version from the previous version which ends up being a bit of the headache with the upgrade. 

What do I think about the stability of the solution?

It's very stable. We have around 200 users and only four people are required for maintenance. 

How are customer service and technical support?

As Cisco partners, the point is that we provide our own support. We prefer our own engineers to be ready to support the solution to provide the service to our customers.

What was our ROI?

We have seen ROI from using this solution. 

What other advice do I have?

We plan to increase usage by around 20 to 30%.

It gives people the peace of mind that they have the possibility to grant access to the people that visit their premises and ensures that they are working in a safe environment that is pure and clear when they use the posture services of the solution.

I would rate it a nine out of ten. 

Disclosure: My company has a business relationship with this vendor other than being a customer: Partner.
PeerSpot user
NOC Manager at a comms service provider with 51-200 employees
Real User
Integrates well, stable, and helpful support
Pros and Cons
  • "We were originally a Cisco shop and Cisco ISE integrated well with our other Cisco switches and networks."
  • "The installation is not straightforward, it took us approximately one month."

What is our primary use case?

We are using Cisco ISE for limiting port access in our organization's building for wired and wireless networks.

What is most valuable?

We were originally a Cisco shop and Cisco ISE integrated well with our other Cisco switches and networks.

For how long have I used the solution?

I have been using Cisco ISE (Identity Services Engine) for approximately three years.

What do I think about the stability of the solution?

The solution is stable and has good performance.

What do I think about the scalability of the solution?

Cisco ISE  is scalable.

We have approximately 200 people using this solution in my organization.

How are customer service and support?

When I have contacted the support for Cisco ISE I have always been satisfied.

How was the initial setup?

The installation is not straightforward, it took us approximately one month.

They need to reduce the number of options for the installation or have a wizard that covers small, medium, and large enterprises.

What about the implementation team?

We had an integrator help with the implementation. For the deployment, we had five engineers and for the maintenance and support, we use three engineers.

What's my experience with pricing, setup cost, and licensing?

The price of Cisco ISE (Identity Services Engine) is expensive and we are thinking about changing to FortiGate.

Which other solutions did I evaluate?

I have evaluated Fortinet FortiGate solutions.

What other advice do I have?

I would not recommend this solution.

I rate Cisco ISE (Identity Services Engine) a six out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
PeerSpot user
Network Security Engineer at Data Consult
Real User
The firewall can see traffic as unencrypted and we can then mitigate the enemy and any attack

What is our primary use case?

My primary use case of this solution is to protect the website from web attacks. 

How has it helped my organization?

I use the F5 device on the DMZ zone of the firewall. A record will come to the virtual server on the F5. Then the F5 will upload the encrypted message to the server and decrypt this message. The firewall can see the traffic as unencrypted and we can mitigate the enemy and any attack from F5 and from the firewall.

What is most valuable?

The most valuable feature would be the protection. 

What needs improvement?

I would like for them to improve the reporting. 

What do I think about the stability of the solution?

This solution is stable.

What do I think about the scalability of the solution?

It is scalable. 

How is customer service and technical support?

I would rate their technical support as an eight. They provide a quick solution and I trust working with them. 

How was the initial setup?

The initial setup was straightforward. 

What's my experience with pricing, setup cost, and licensing?

The price is not very expensive. 

What other advice do I have?

This solution can be used to protect one's application. The server has many features to secure and diagnose.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Cyber Transport Specialist at a government with 10,001+ employees
MSP
Enables us to track people who are authenticating onto our network
Pros and Cons
  • "The interface is pretty easy to use."
  • "Whenever we see the authentication logs, we can't see what device we're logging into... We can see who logged in, but we can't see the IP address of the device... I'm sure that's available. We just haven't figured out how to properly deploy it."

What is our primary use case?

We mainly use it for authenticating devices on our network.

How has it helped my organization?

It's our way to track people who are authenticating onto our network, whenever they log on to our switches, et cetera. It's good for security purposes.

What is most valuable?

The interface is pretty easy to use.

What needs improvement?

Whenever we see the authentication logs, we can't see what device we're logging into. It shows us the main server, but we don't see details like, "It's in building 200," or that kind of thing. We can't see the IP address. We can see who logged in, but we can't see the IP address of the device.

I'm sure that's available. We just haven't figured out how to properly deploy it.

For how long have I used the solution?

I've been using Cisco ISE (Identity Services Engine) for about a year. I'm only using a small portion of it, so I don't know all the capabilities of the program.

What do I think about the stability of the solution?

The stability is good. I haven't had any issues with downtime or anything going out.

What do I think about the scalability of the solution?

We use it enterprise-wide, around the world. That would indicate it's pretty scalable.

How are customer service and support?

I haven't had to contact technical support.

What other advice do I have?

It's a good product.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Team Lead Network Infrastructure at a tech services company with 1-10 employees
Real User
Scalable with good device administration and good stability
Pros and Cons
  • "Typically, the installation is pretty simple."
  • "Deploying to a machine, as opposed to a dedicated appliance, can be a bit difficult."

What is our primary use case?

The solution is primarily used for authentification purposes. 

What is most valuable?

The solution is stable.

We have found the product to be scalable.

The device administration is great. 

It offers very good integrations and can easily be integrated with mobile devices.

The product works well with StealthWatch.

It's quite an innovative product.

Typically, the installation is pretty simple.

What needs improvement?

The solution isn't as dynamic as it could be. There are some limitations, specifically around switches. 

Deploying to a machine, as opposed to a dedicated appliance, can be a bit difficult. 

The network solutions need to be improved by Cisco.

For how long have I used the solution?

I've been using the solution for three to four years. It's been a while at this point. 

What do I think about the stability of the solution?

The solution has been quite stable. There are no bugs or glitches. It doesn't crash or freeze. It's reliable. 

What do I think about the scalability of the solution?

The scalability is good. If a company needs to expand it, it can do so. It's not a problem.

We have this solution deployed to 6,000 or more users. 

How was the initial setup?

An installation is pretty simple if it is on a dedicated hardware appliance. However, if someone chooses to deploy to a machine, then you can face certain challenges during the installation. On a dedicated appliance, you can deploy in two to three hours.

You only really need one person to deploy the product. You don't need to have a big team.

What about the implementation team?

We are integrators and can deploy the solution for clients.

What other advice do I have?

We are a systems integration company.

I'm using different versions of the solution, and not necessarily the latest one.

I'd rate the solution at an eight out of ten. It's worked well for us so far. We find Cisco to be innovative and to offer good products. 

I would recommend the solution to other users and organizations. 

Disclosure: My company has a business relationship with this vendor other than being a customer: Integrator
PeerSpot user
Buyer's Guide
Download our free Cisco ISE (Identity Services Engine) Report and get advice and tips from experienced pros sharing their opinions.
Updated: April 2024
Buyer's Guide
Download our free Cisco ISE (Identity Services Engine) Report and get advice and tips from experienced pros sharing their opinions.