Aruba ClearPass is network access control (NAC) technology from HPE company Aruba Networks. Aruba acquired Avenda and its eTips NAC in 2011.
N/A
Barracuda CloudGen Firewall
Score 9.4 out of 10
N/A
Barracuda CloudGen Firewalls provides a wide range of security and connectivity features, including web filtering, NAC and SSL VPN and other features for remote access, as well as protection as edge devices and IoT security.
Aruba ClearPass is suited well for large enterprise networks with many connecting buildings and branches. Aruba ClearPass protects your endpoints from unauthorized or unknown devices accessing your network. You can apply policies that prevent devices from meeting the required policies in ClearPass. ClearPass will allow only authorized access for devices that are using the policies.
I would say a small business with a basic firewall and security needs would be a perfect fit for the Barracuda CloudGen firewall. I know that they soon end up leaving the NG models and are moving forward with the F series firewall. I think the F series is a much more difficult to manage device and doesn’t offer simplistic configuration or use and lacks cloud control so I don’t understand the move on Barracuda’s part to nix a great easy to manage the firewall. I do think that the NG line is maybe too simple for bigger businesses and would lack some main features that they would require.
You can use ClearPass authenticate using wired and wireless network devices. This is helpful that you don't have to have multiple systems to accomplish this.
Because devices can have different purposes Clearpass can configure groups that will specify what access they have. You can use parameters such as vendor or mac address so clearpass know what group to push them to.
It is very easy to view device logs. This is really helpful to troubleshoot auth issues. Once you find the device Clearpass provides more than enough info to know what the issue is and to fix it.
The management software is excellent. It make it much easier to manage the firewalls than some of the other vendors.
Watching real-time traffic is easy to do when trying to troubleshoot a users issues getting to a particular service.
Support from Barracuda has been excellent. We rate their phone and online remote support as being the best in the business.
We like the QoS and Traffic shaping of the NG Firewalls. They help is manage our limited bandwidth, so that business critical resources are available over lesser critical resources.
Integration with Active Directory makes it easy to identify users activities in logs.
Aruba Clearpass is straight forward in terms of day to day use for monitoring and basic user connectivity issues. The system is very robust on the back end, therefore some larger configuration changes may not be the most intuitive. System upgrades and license management are not the most intuitive either.
Easy enough to use and configure using the management UI. Reporting from the web filter is a little clunky, and not very user friendly. To be perfectly honest, once it's set up and running, there isn't a lot to do from the day-to-day side of things, which is not a bad thing.
We had some issues with ClearPass integration with AirGroup on Aruba Controller Clusters. Basically, it was tough to get coordinated between the controller support and the ClearPass support.
I could go on and on about how good Barracuda's support really is. I have yet to have a problem they didn't help me fix and I always learn something when talking with them. The story that best describes my overall experience with Barracuda's support is this: When I first put in the xSeries they had a problem with a policy route. There was a bug in the code and in the one situation I was it, it just would not work. I went up the levels of support and they couldn't fix it. Well, next thing I know I am on the phone with 2 of the guys that programmed the thing and they work out the solution in no time and get me going. That is support. That is what I have come to expect from Barracuda. If the tech on the phone doesn't know the answer, they do not stop until they find it. Grant it, I also have to admit I do not call support with every problem, I try to work it out on my own first as that is how I learn best, so when I do call support it is going to be complicated.
From my experience, ClearPass has been the best NAC server of all I've seen. Even though configuration is somewhat hard and it's hard to get training, once you learn how to configure it it works very well. The policies are very granular and scalable and the interface is a well-done web GUI that does not need any extra plugins installed, as some of Cisco's product require. There are many more options than with FortiNAC, and many more integration options. Also, troubleshooting and logging is good.
Our Cisco firewall was always difficult to make any changes against. It had no user-friendly GUI interface. We were calling technical support most of the time whenever we needed to make any changes. The Barracuda CloudGen Firewall has a GUI interface which we are looking forward to getting better acquainted with as we move off of our old Cisco. Of course, Barracuda's technical support is always there and is top notch!
Set and forget. It made a positive contribution in terms of labor and cost without needing much technical support. Since NAC and TACACS features come together, you can meet your needs with a single license.
The number of supporting companies may be limited in the country you are affiliated with. Therefore, agreements with third-party companies are expensive and your support requests may take a long time.
We saved multiple thousands of dollars the first year out with the firewall in maintenance fees. We paid for the firewall and 3 years of service and still saved money.
The ease of management allows me to do my job more efficiently. I save a lot of time when doing my day to day job because I can get to my firewall virtually anywhere.
I feel a lot safer and my business more secure knowing that I have configured things the way they need to be and it was simple and not overly complicated.