Cisco Adaptive Security Appliance (ASA) Software vs. Cisco Identity Services Engine (ISE)

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Cisco Adaptive Security Appliance (ASA) Software
Score 9.0 out of 10
N/A
Cisco Adaptive Security Appliance (ASA) software is the core OS for the ASA suite. It provides firewall functionality, as well as integration with context-specific Cisco security modules. It is scaled for enterprise-level traffic and connections.N/A
Cisco Identity Services Engine (ISE)
Score 8.9 out of 10
N/A
The Cisco Identity Services Engine (ISE) offers a network-based approach for adaptable, trusted access everywhere, based on context. It gives the user intelligent, integrated protection through intent-based policy and compliance solutions.N/A
Pricing
Cisco Adaptive Security Appliance (ASA) SoftwareCisco Identity Services Engine (ISE)
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Cisco Adaptive Security Appliance (ASA) SoftwareCisco Identity Services Engine (ISE)
Free Trial
NoNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
Cisco Adaptive Security Appliance (ASA) SoftwareCisco Identity Services Engine (ISE)
Considered Both Products
Cisco Adaptive Security Appliance (ASA) Software
Chose Cisco Adaptive Security Appliance (ASA) Software
Integration with Cisco Ecosystem, Cisco Adaptive Security Appliance (ASA) Software integrates smoothly with other Cisco security products and networking solutions. We have already invested in Cisco networking equipment and infrastructure which is why we chose Cisco Adaptive …
Cisco Identity Services Engine (ISE)
Chose Cisco Identity Services Engine (ISE)
ISE stacks well up against other products in our portfolio with protocols like RADIUS, TACACS and REST APIs.
ISE is in many ways good for integration with both other Cisco products (switches, firewalls, WLAN controllers) and products from other vendors. Even with cloud services …
Chose Cisco Identity Services Engine (ISE)
Cisco Identity Services Engine (ISE) Stacks up nicely alongside them and we chose Cisco because our business is a Cisco shop and keeping our number of support vendors low is a big way that we keep things simple resulting in a low headcount in the IT Dept. We use it in …
Chose Cisco Identity Services Engine (ISE)
Cisco Identity Services Engine (ISE) is definitely better, PxGrid alone wins the race. Cisco Identity Services Engine (ISE) is more dynamic and vibrant, with a myriad of features.
Top Pros
Top Cons
Features
Cisco Adaptive Security Appliance (ASA) SoftwareCisco Identity Services Engine (ISE)
Firewall
Comparison of Firewall features of Product A and Product B
Cisco Adaptive Security Appliance (ASA) Software
7.9
49 Ratings
8% below category average
Cisco Identity Services Engine (ISE)
-
Ratings
Identification Technologies6.832 Ratings00 Ratings
Visualization Tools6.730 Ratings00 Ratings
Content Inspection8.132 Ratings00 Ratings
Policy-based Controls9.045 Ratings00 Ratings
Active Directory and LDAP7.847 Ratings00 Ratings
Firewall Management Console7.747 Ratings00 Ratings
Reporting and Logging5.848 Ratings00 Ratings
VPN9.148 Ratings00 Ratings
High Availability9.147 Ratings00 Ratings
Stateful Inspection9.046 Ratings00 Ratings
Proxy Server8.031 Ratings00 Ratings
Best Alternatives
Cisco Adaptive Security Appliance (ASA) SoftwareCisco Identity Services Engine (ISE)
Small Businesses
pfSense
pfSense
Score 9.4 out of 10
NinjaOne
NinjaOne
Score 9.0 out of 10
Medium-sized Companies
pfSense
pfSense
Score 9.4 out of 10
Nmap
Nmap
Score 10.0 out of 10
Enterprises
Palo Alto Networks Next-Generation Firewalls - PA Series
Palo Alto Networks Next-Generation Firewalls - PA Series
Score 9.3 out of 10
Nmap
Nmap
Score 10.0 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Cisco Adaptive Security Appliance (ASA) SoftwareCisco Identity Services Engine (ISE)
Likelihood to Recommend
9.0
(87 ratings)
8.8
(91 ratings)
Likelihood to Renew
7.1
(4 ratings)
9.6
(3 ratings)
Usability
-
(0 ratings)
7.0
(3 ratings)
Availability
7.5
(2 ratings)
8.8
(3 ratings)
Performance
-
(0 ratings)
9.0
(1 ratings)
Support Rating
8.7
(8 ratings)
7.0
(6 ratings)
Implementation Rating
8.0
(2 ratings)
8.8
(3 ratings)
Configurability
-
(0 ratings)
8.0
(1 ratings)
Contract Terms and Pricing Model
-
(0 ratings)
8.0
(2 ratings)
Ease of integration
6.5
(2 ratings)
6.2
(3 ratings)
Product Scalability
-
(0 ratings)
8.0
(1 ratings)
Vendor post-sale
-
(0 ratings)
10.0
(1 ratings)
Vendor pre-sale
-
(0 ratings)
9.0
(1 ratings)
User Testimonials
Cisco Adaptive Security Appliance (ASA) SoftwareCisco Identity Services Engine (ISE)
Likelihood to Recommend
Cisco
Cisco ASA's are great for internal network connected access between a firewall and the central management server. And, for complex networks where high security requirements with overly strict compliance are necessary. For networks with limited connectivity to the core or for poor network connectivity these are not the best solution. There are other more stand-alone firewall's that do this better. These firewall's are a little more complex to set up to start with so significant knowledge of these devices is required to set them up and ensure they are best practice installed.
Read full review
Cisco
One scenario I already mentioned is authentication integration. So that works well. We haven't run any situation where it is not suited, so we haven't run into that situation. So I am not really sure that would it work or not. But right now, so far so good.
Read full review
Pros
Cisco
  • ASA is our VPN concentrator. The client and server are very stable and very easy to use
  • ASA also offers Intrusion Prevention, to an extent. This is also very useful for an improved security posture for a small company
  • ASA allowed us to scale very quickly. We could onboard clients, partners, and consultants and give them a great onboarding experience as well
  • Administrative costs with ASA are low. It's very easy to administer.
Read full review
Cisco
  • The most beneficial thing that I love about it, there are tons of things that I love about ISE and that it does well, but the most fascinating that I feel about is its integration with DNA center or Catalyst Center using PX Grid as the protocol wherein ISE acts as a policy server for the entire campus hand in hand with Catalyst Center to make sure that the policy policy follows the user and also in the background hand in hand with DNA Center or Catalyst Center makes sure microsegmentation is implemented so that east west traffic is blocked and takes care of the campus.
Read full review
Cons
Cisco
  • The ASDM software is at times a nightmare to install because of different java versions[.]
  • [The firewall] could do with a power button, just to be able to do a hard reboot when needed[.]
  • It would be nice to manage the firewall via the web on port 443[.]
Read full review
Cisco
  • I guess the user experience itself, it's sometimes a little bit slow, but this is also dependent on the platform and the scale of the deployment of course. But actually functionality-wise it's really, really good. But yeah, it could sometimes be a little quicker to react on the good front.
Read full review
Likelihood to Renew
Cisco
To be honest there has been now great products out in the market compared to Cisco ASA. I beleieve Cisco has to do a lot of improvement in this area. The other defeiniete factors is the cost when it comes to renewals which is always a premium on Cisco products
Read full review
Cisco
We are so very reliant on Cisco Identity Services Engine at this point that finding another solution would be a big hassle for us.
Read full review
Usability
Cisco
No answers on this topic
Cisco
For us the solution is very easily useable on its own. Perhaps that has to do because we started using ISE in the 1.2 days and have seen it grow during the years. Policy creation, etc. is all very visible and thus easy to use. Deployment of multiple nodes is also incredibly easy and flexible. You can easily add or remove nodes as you wish.
Read full review
Reliability and Availability
Cisco
I generally have not noticed the outages, however since it's a machine it can malfunction, we need to implement the firewall infrastructure in such a way that it is highly available with device failure, region failure etc. Else any solution will be having the issues if they are not build with resiliency.
Read full review
Cisco
We do have to occasionally reboot the servers when they get low on memory, but we're also a few versions behind. Availability has generally been pretty good though with no major outages in the time that we've had it implemented.
Read full review
Performance
Cisco
No answers on this topic
Cisco
yes it does. depending on where you coming from. Logs are pretty busy same as report. it also depending on devices count and design.
Read full review
Support Rating
Cisco
The support is usually very good and gets back to you very quickly. However I had some instances of when two engineers will give me wildly different answers to what I thought was a simple question. Overall however I do rate the support highly and they are generally always very good.
Read full review
Cisco
Cisco support is second to none, both in terms of how you access support but also the knowledge of the individual support teams. If you focus on one technology and provide "manufacturer support" then you can rest assured that you are accessing Cisco's top individuals. I feel like this is a USP for Cisco support.
Read full review
Online Training
Cisco
No answers on this topic
Cisco
Training can only cover certain areas, there are a lot of areas training just can't cover. You have to learn by doing it.
Read full review
Implementation Rating
Cisco
It was quite a good one, how ever requires an expertise to deploy hence the SMB segment would be finding it difficult to implement this product. The one good reason is that there are lot of ASA certified engineers in compared to the other certified engineers. Hence this resembles positively on the deployment as you have quite a lot of experienced engineer on your deployment
Read full review
Cisco
I did participate in the implementation of Cisco ISE and while there were times when it was confusing and we had a lot of trial and error, overall the experience was fine.
Read full review
Alternatives Considered
Cisco
We were using [pfSense] before in our environment but we regularly facing difficulties over it due to software bugs & downtime. After implementing Cisco ASA, it resolved our availability issue & provides us a reliable solution with the best security features & easy to understand GUI.
Read full review
Cisco
In our case, the entire core of our network is based on Cisco technologies as well as user access. For this reason it was the simplest choice given that both by integration and by knowledge of the platform it was the solution with the least complexity and the best adoption curve offered us.
At the level of capabilities, they seemed really similar to us, each option having some point where it surpassed the others and others where it was surpassed.
Read full review
Contract Terms and Pricing Model
Cisco
No answers on this topic
Cisco
Cisco ISE was competitively priced and Cisco was able to leverage some of our existing contracts to help ease the purchase.
Read full review
Scalability
Cisco
No answers on this topic
Cisco
It's fully customised and comprehensive. only thing is you need to know what you want. Proper research and planning would save lots of time and effort .
Read full review
Return on Investment
Cisco
  • Most network engineers have worked with ASA, so there is no need for re-training when adding or turning over staff
  • Current configs from older devices plug in easily, and are operational on larger devices if an upgrade is required
  • Many support options available
Read full review
Cisco
  • Cisco ISE is fairly expensive, but I feel that the time it saves our team is well worth it.
  • We have been able to roll this our to all of our teams, and they can each manage their own device and it is really convenient to have each team mange their own devices
  • Once it is deployed and configured, it seems like there isn't much upkeep, so we don't have to hire someone to manage it we do it by committee.
Read full review
ScreenShots