AWS CloudFormation vs AWS Config comparison

Cancel
You must select at least 2 products to compare!
Microsoft Logo
6,490 views|4,668 comparisons
91% willing to recommend
Amazon Web Services (AWS) Logo
1,281 views|821 comparisons
95% willing to recommend
Amazon Web Services (AWS) Logo
405 views|294 comparisons
100% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between AWS CloudFormation and AWS Config based on real PeerSpot user reviews.

Find out in this report how the two Configuration Management solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
To learn more, read our detailed AWS CloudFormation vs. AWS Config Report (Updated: March 2024).
768,924 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"By using Microsoft Intune we can control which websites the users can go to and it provides a secure environment for our employees using their laptops that are having access from home. We have installed Intune to control the user's environment minimizing the chances of any hacking.""Autopilot is the most valuable feature of Microsoft Intune.""I can reach devices or computers over the internet. I don't need to worry about the network connectivity between the offices. I can manage any device. That is the most important part.""The most valuable feature is the UEM capabilities.""We have not experienced any bugs or glitches with this solution.""Stable product that's easy to set up compared to other MDM products.""The most valuable features are the ones that make sure that the deployment is of a standard operating system and the Zero Touch deployment, which is very useful. This allows users to have an out of box experience.""It's not working perfectly, but Microsoft's Autopilot offers great visibility into automated deployment solutions."

More Microsoft Intune Pros →

"I appreciate the flexibility of infrastructure as code. With CloudFormation, we can define ground rules, control usage limits, and scale our infrastructure up or down programmatically. Having this level of control through code on infra is a major benefit. That's the beauty of CloudFormation.""The reusability of the solution is valuable.""The most valuable features of AWS CloudFormation are all the resources documentation is located in one location, simple resource reverting, and ease of use of the full package for new users.""The most valuable feature of AWS CloudFormation is the simple tracking of infrastructure.""The nested stacks would be one of the more valuable features.""Since AWS CloudFormation integrates well with the AWS platform, it facilitates faster deployment. Building templates for AWS services within the solution is also straightforward, making the process easier.""It allows defining the infrastructure as code using templates, which describe the desired state of the infrastructure.""Automations make it pretty easy to provision AWS, development, or deployment environments."

More AWS CloudFormation Pros →

"The initial setup is super easy, it takes like two minutes. Literally a one-click deployment.""The solution is scalable and provides over 100 rules.""Installing the instances and performing upgrades is smooth and clean."

More AWS Config Pros →

Cons
"In the past, I raised some tickets for the enhancement feature, which was missing in Intune.""It would be nice to have a location tracker for the mobile device management tool. I'm not sure if it exists but hasn't been configured or if it's missing, but we've been unable to utilize the location features.""Reporting and troubleshooting for the application deployment could be better. It's very difficult to understand.""They need to add more group policies. Intune currently does not have many group policies that you can deploy. Its reporting, which is very limited at the moment, also needs improvement. It will be great if they can add report customization. Its stability needs to be improved. Sometimes, when you register a device in Intune, it doesn't show up instantly on the engine portal on the admin side. They need to provide better support for complicated issues. They also have a long turnaround time.""We faced issues with macOS support. The product should have better inventory and asset management.""It would be better if they can reduce the cost of the license.""We only have major classifications for iOS and Android, but there are different brands that have different cycles of updates. If they can fine-tune it to make it more brand-specific, that would be even better.""The solution could be improved by the opportunity to connect third-party application databases, such as Chocolatey or another setup store, to Intune."

More Microsoft Intune Cons →

"The code we write in AWS CloudFormation is pretty big compared to Terraform. We need to have more modules in the solution. A library should also be there where we can save code lines. A dashboard feature would be good for designers.""For improvement, it's crucial that AWS provides options in terms of computing services, DB related services, and machine learning solutions. If I'm not hands-on with a particular service, like machine learning applications, I struggle to write the CloudFormation code.""Provisioning a large environment or a large number of services takes a bit more time than with Terraform.""There could be better error handling. It would be a good way to improve the solution.""This tool is not intuitive and there are others that are easier to understand.""One area where AWS CloudFormation could improve is by offering more flexibility in creating custom templates.""As soon as they manage to parametrize the whole thing and to implement parameters at all levels, it will become automatically a lot more flexible.""CloudFormation is not particularly good at handling cross-account dynamic references. If you try to refer to an object that CloudFormation has created in a separate AWS account, it tends to fall apart. That's because it is a byproduct of the multi-tenant configuration. This is the most glaring shortcoming in my perspective because you can't dynamically reference objects in other accounts that CloudFormation has created, but it is not a shortcoming that you can't overcome. This is the only pain point that I've come across that didn't have a workaround natively. Sometimes the confirmation is slow, and it could be faster. The downside to CloudFormation when you're fully embracing it is that the AWS services do not get released immediately fully CloudFormation enabled. If you need to use the latest AWS service that just got announced or reinvented, you're not going to be able to continue with CloudFormation for the first X number of months. This is because they develop the products separately, and then they hand it to the CloudFormation team, which later on develops a CloudFormation integration. So, if you need to be on the newest thing AWS has, CloudFormation is often going to be a constraint that prevents you from doing that."

More AWS CloudFormation Cons →

"There is room for improvement in built-in tools, they are not up to the mark.""The reboot process for AWS instances could be improved. Microsoft Azure does not have this problem, so AWS could consider making their instances more robust. You would not need to reboot your instances frequently to replace the hardware and stuff. They can look for a better approach or mechanism to improve in the future. The concern is that you need to plan for the outage when you reboot an instance. You need to have a maintenance window where you can properly reboot the instance without affecting your application. When Amazon announces that you need to reboot an instance and are not ready, this becomes a problem.""The solution is missing a configuration that can assist us when writing our programming languages."

More AWS Config Cons →

Pricing and Cost Advice
  • "Consider the Microsoft Enterprise Mobility Suite rather than choosing specific sub-components, e.g. only Microsoft Intune."
  • "There is a cost benefit of using Microsoft Intune because of the packaging with other Microsoft products."
  • "Microsoft Intune is a cost effective choice. It is less expensive than other products on the market."
  • "The purchase of the product was handled by someone else."
  • "I have no comment on pricing of the solution."
  • "The product is offered as part of a Microsoft standard bundle. The pricing can be competitive to Airwatch, and Maas360."
  • "For Microsoft 365 E5 clients, cost is not an issue as this product is one of the benefits."
  • "The price of Intune is included with the license for Office 365, so we don't have to pay anything extra for it."
  • More Microsoft Intune Pricing and Cost Advice →

  • "This solution is free to use and does not require a license."
  • "AWS CloudFormation doesn't have any cost because it's only the resources that you deploy with the solution that'll incur costs."
  • "If you compared serverless and container-based, serverless is less expensive. If you use certain instances the price can increase and become too expensive."
  • "The price of the solution is good because it is scalable."
  • "The solution's cost is normal, neither cheap nor expensive."
  • "The pricing is not notably high."
  • "The product is free."
  • "The tool is free for the AWS environment."
  • More AWS CloudFormation Pricing and Cost Advice →

  • "The solution charges us per hour. There's no license."
  • "It is a very expensive tool. AWS pricing for Config is not fixed and depends on your organization's size and complexity."
  • More AWS Config Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Configuration Management solutions are best for your needs.
    768,924 professionals have used our research since 2012.
    Questions from the Community
    Top Answer:Microsoft Intune is a great tool for managing a mobile device fleet while keeping access control. The solution makes it… more »
    Top Answer:Microsoft Intune is a great configuration management tool and has a lot of good things going for it. Here are some of… more »
    Top Answer: Microsoft Intune offers not only an easy-to-deploy data protection and productivity management solution, but also… more »
    Top Answer:The reusability of the solution is valuable.
    Top Answer:The solution must enable more hands-on designing of the templates. We take the backend services and design the… more »
    Top Answer:The initial setup is super easy, it takes like two minutes. Literally a one-click deployment.
    Top Answer:There is room for improvement in built-in tools, they are not up to the mark. Some of the built-in inbound rules feel… more »
    Top Answer:It tracks configuration changes across all your AWS resources. Imagine it as a log of every tweak and setting… more »
    Comparisons
    Also Known As
    Intune, MS Intune, Microsoft Endpoint Manager
    CloudFormation
    Learn More
    Overview

    Microsoft Intune is a comprehensive cloud-based service that allows you to remotely manage mobile devices and mobile applications without worrying about the security of your organization’s data. Device and app management can be used on company-owned devices as well as personal devices.

    In an increasingly mobile workforce, Microsoft Intune keeps your sensitive data safe while on the move. Microsoft Intune makes it possible for your team members to work anywhere using their mobile devices. Microsoft Intune provides both the flexibility and the control needed for securing all your data on the cloud, no matter where the device with the data is located.

    Microsoft Intune Device Management Key Features

    With Microsoft Intune Device Management you can:

    • Ensure devices and apps are compliant with your security requirements.
    • Rapidly deploy and authenticate apps on all company devices.
    • Remotely access devices to troubleshoot issues or to remove data from them.
    • Generate reports for all devices in the system.
    • Monitor the way users access and share information to protect company information.
    • Set rules and configure settings on personal and organization-owned devices to access data and networks.
    • Create user groups and device groups, allowing you to rapidly access many users and devices simultaneously.

    Mobile Application Management

    Mobile application management in Intune is designed to protect your organization’s data at the application level.

    With Microsoft Intune Application Management you can:

    • Configure apps to run with specific settings enabled.
    • Update existing apps that are already on the device.
    • See reports on which apps are used and monitor their usage.
    • Selectively wipe organization data from apps.
    • Add mobile apps to user groups and devices.

    As part of Microsoft's Enterprise Mobility + Security (EMS) suite, Intune integrates with Microsoft Entra ID for access control and with Azure Information Protection for data protection. It also integrates with Microsoft 365 Applications.

    Reviews from Real Users

    Microsoft Intune stands out among its competitors for a number of reasons. Two major ones are its ability to secure all devices under its management and the flexibility that the solution offers its users.

    A computing services manager notes, "Its security is most valuable. It gives us a way to secure devices, not only those that are steady. We do have a few tablets and other devices, and it is a way for us to secure these devices and manage them. We know they're out there and what's their status. We can manage their life cycle and verify that they're updated properly."

    The head of IT engineering at a financial services company writes, "The one feature we find most useful is the Mobile Application Manager. There are two types: we have the complete MDM and the Mobile Application Manager (MAM). We don't give our users phones, it is their own personal phone, and we need to allow them to have access to the company details on their phone. We need to create a balance between their own personal data and the company data. We deploy the Mobile Application Manager for them so that we won't be able to interfere with their own personal data."

    AWS CloudFormation provides a common language for you to model and provision AWS and third party application resources in your cloud environment. AWS CloudFormation allows you to use programming languages or a simple text file to model and provision, in an automated and secure manner, all the resources needed for your applications across all regions and accounts. This gives you a single source of truth for your AWS and third party resources.

    AWS Config is a service that enables you to assess, audit, and evaluate the configurations of your AWS resources. Config continuously monitors and records your AWS resource configurations and allows you to automate the evaluation of recorded configurations against desired configurations. With Config, you can review changes in configurations and relationships between AWS resources, dive into detailed resource configuration histories, and determine your overall compliance against the configurations specified in your internal guidelines. This enables you to simplify compliance auditing, security analysis, change management, and operational troubleshooting.

    Sample Customers
    Mitchells and Buzzers, Callaway
    Nextdoor, Coinbase, Expedia
    Flatiron, Prezi, iZettle, British Gas, Burt, Autodesk, FanDuel
    Top Industries
    REVIEWERS
    Financial Services Firm19%
    Computer Software Company18%
    Comms Service Provider10%
    Energy/Utilities Company5%
    VISITORS READING REVIEWS
    Educational Organization23%
    Computer Software Company12%
    Government7%
    Financial Services Firm7%
    REVIEWERS
    Computer Software Company30%
    Construction Company10%
    Wellness & Fitness Company10%
    Non Profit10%
    VISITORS READING REVIEWS
    Financial Services Firm18%
    Computer Software Company13%
    Comms Service Provider7%
    Educational Organization6%
    VISITORS READING REVIEWS
    Financial Services Firm21%
    Government10%
    Healthcare Company10%
    Computer Software Company9%
    Company Size
    REVIEWERS
    Small Business38%
    Midsize Enterprise14%
    Large Enterprise48%
    VISITORS READING REVIEWS
    Small Business20%
    Midsize Enterprise33%
    Large Enterprise47%
    REVIEWERS
    Small Business37%
    Midsize Enterprise23%
    Large Enterprise40%
    VISITORS READING REVIEWS
    Small Business22%
    Midsize Enterprise9%
    Large Enterprise69%
    VISITORS READING REVIEWS
    Small Business13%
    Midsize Enterprise10%
    Large Enterprise77%
    Buyer's Guide
    AWS CloudFormation vs. AWS Config
    March 2024
    Find out what your peers are saying about AWS CloudFormation vs. AWS Config and other solutions. Updated: March 2024.
    768,924 professionals have used our research since 2012.

    AWS CloudFormation is ranked 9th in Configuration Management with 26 reviews while AWS Config is ranked 16th in Configuration Management with 3 reviews. AWS CloudFormation is rated 8.2, while AWS Config is rated 9.0. The top reviewer of AWS CloudFormation writes "Pretty easy setup with great automations for provisioning that save time and money". On the other hand, the top reviewer of AWS Config writes "A cloud solution to host application with smooth instance installation and performance upgrade". AWS CloudFormation is most compared with AWS Systems Manager, Spring Cloud, Red Hat Ansible Automation Platform, Red Hat Satellite and Chef, whereas AWS Config is most compared with AWS Systems Manager. See our AWS CloudFormation vs. AWS Config report.

    See our list of best Configuration Management vendors.

    We monitor all Configuration Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.