Aviatrix aims to bring multi-cloud networking, security, and operational visibility capabilities that enterprises customers require. Aviatrix software leverages public cloud provider APIs to interact with and directly program native cloud networking constructs, abstracting the unique complexities of each cloud to form one network data plane, and adds advanced networking and security features.
N/A
Palo Alto Networks Prisma Access
Score 8.3 out of 10
N/A
GlobalProtect™
delivers the protection of next-generation security platform to the mobile
workforce in order to stop targeted cyberattacks, evasive application
traffic, phishing, malicious websites, command-and-control traffic, and known
and unknown threats.
This product offers simple ways to manage network routing between public cloud, on-prem, and external network. It has built-in options to secure network traffic, as well as option to direct traffic to 3rd party security products for a more advanced traffic inspection. The core function works and is easy to operate. On the other hand, I am unable to give it more than 7-star because some useful features are lacking. This includes lack of customization in email alerting, IPS policy management, and temproarily admin-down of an established site to site VPN connection.
I still think Palo Alto Networks Prisma Access is the best SASE/SSE product out there. It just has such good granular controls and up to date security definitions that you can feel absolutely secure in your purchase. GlobalProtect was a lifesaver for me when COVID hit so yes I had to work my butt off to get it up and running quickly and as secure as I possibly could but it worked amazing and had excellent performance after we got it running and tied to MFA, certificates and security policies.
With a few very easy steps to establish routing between AWS VPC
Easy procedures to establish site to site VPN connection with external parties.
Provide network access control on routing traffic using its own build-in firewall inspection or directing traffic to 3rd party NGFW for full stack inspection.
The core function of the product works very well. It really makes network traffic management easy in public clound, as well as crossing different public and private cloud platform.
I still say that Palo Alto Networks Prisma Access is the best. I love their GUI, their policies are easy to manage, the sales team is VERY helpful (especially when support is not). I still recommend them to everyone I talk to.
We initially tried using the native routing funcitons in AWS (transit gateway) and in Azure (virtual network). While those native options worked, it became difficult to opeate when we tried to impose security inspection on the routing traffic. This leads us to the Aviatrix solution.
The McAfee product really isn’t a great option. The configuration is a nightmare and requires a lot of time. The policy management has a high learning curve.
Reduce labor hours for network admin to manage public clound network routing policy.
Build-in security features may be good enough for small/medium size companies, and thus saving money from full funciton NGFW solution.
The Cost-IQ feature enable one to capture traffic volume of each VPC. This provides one way for the enterprise to perform cost charge back to various business funcitons at the VPC level.