Cisco offers Meraki Systems Manager (SM), an enterprise mobility management platform supporting the monitoring, provisioning and securing of mobile devices across an enterprise network.
N/A
JumpCloud
Score 9.0 out of 10
N/A
JumpCloud® delivers a unified open directory platform used to securely manage identities, devices, and access across an organization. With JumpCloud, IT teams and MSPs enable users to work securely from anywhere and manage their Windows, Apple, Linux, and Android devices from a single platform.
It is very helpful if you need to restrict the apps a student or employee can have on their device. I had teachers using Netflix on the iPads before I brought them under management. Restricting them will make you unpopular with some of your employees, however, I advise them the device is being provided for business use and, therefore we have the right and responsibility to manage it.
JumpCloud is least suited in situations where you have few devices, but lots of users. JumpCloud heavily focuses on the "One-User-One-Device" type of use, and does lack some of the features things like Active Directory is better suited for when having multiple users accessing one machine. Their Powershell APIs are fantastic and getting only more powerful. Lots of features are hidden behind these APIs, so admins not as familiar with Powershell would have more issues leveraging these tools. BYOD deployments are amazing, especially for macOS devices that are using Apple Business Manager and can leverage Zero Touch deployments. It is especially good at handling mixed systems, whereas other options, such as Jamf, are really suiting only for macOS, or Intune is more suited for Windows; JumpCloud managed to handle both systems well.
User Management - The ability to control our users and set password/polices is made easy in the JC console
Device Management - Using JC each user is assigned to their own device with only the rights to do their job - When elevated rights are required, this is done simply via the JC console for the period of time required
SSO - Using JC's SAML SSO integrations we are building out our SSO offering and this is making for a much simpler daily user experience
Limited ability for "command line" functions. For example, we had a laptop that was stolen and showed to be online, but we could not wipe it. We were able to access a command prompt, but it would not accept DISKPART or FORMAT commands to try and make the PC unusable.
The GPS location is not terribly accurate and frequently it "guesses" location based off of an IP address rather than actually activating the GPS on the device. This makes tracking lost/stolen devices very difficult.
Difficulty getting devices to correctly show their status in the dashboard. For example, I can have a PC that is online and connected to the Internet, but shows to be offline in the dashboard. Only after refreshing many times would it indicate that the PC was actually online, thus allowing me to administer it.
SSO via OpenID - Opening up their SSO from just SAML to including OpenID (OAuth) would allow us to make more use of the service and to also incorporate it into some internal testing suites
Time Limited User Elevation - The ability to time limit a users elevation of privileges would be a great addition
Extending device management to include LPA - Least Privilege Access is becoming a bigger ask from our external auditors - Being able to do this via JC would be amazing
It has is easy to use overall and is very powerful. The learning curve for the system is very small and I have found it easy to train members of our team to use it. It can fit any size organization and the support is excellent. The ROI is well worth it. If you have a multiplatform ecosystem, this tool is near perfect.
It's simple. I like how JumpCloud keeps things simple. Similar to Apple's ecosystem, they give you what you want with some extra features and bells and whistles but it doesn't take a large instruction manual to use it. They have the support system and KB articles to back up their product and learn about a feature and how to implement it
We have found that Cisco Meraki has always had very good customer support. In the rare case, when we have needed assistance they have always been quick to respond and solve the issue.
I have rarely contacted support. When I have, the responses were within expected time frames, and easy to access. Community support is incredible, both from the JumpCloud representatives, and the user base community at large. The support pages on the website also are typically very well written and strike a nice balance between having the technical information needed, and also being easy to understand for the small business types that might not have as much of a technical background as an IT Admin.
The only product I have used that is similar is Apple Configurator. While a powerful solution, it requires physical access to the devices which is not always possible, especially on a large site. Meraki is able to achieve many of the same functions as the Apple configurator but without ever needing to physically access the device, other than initial setup and registration.
Some features would make more sense for us to be bundled by machine, instead of the user. We have fewer machines, and multiple users log into one machine, so doing something like paying per user for services like Patch Management are difficult to warrant the cost. I also feel a more complete package that includes common addon features; Patch Management and Password Manager, would be an improvement. It would also be nice if we could change packages, addons, and other billing services via self-service instead of reaching out to our account manager.
It’s scalable up to a point and will scale well from small to a medium business, however, as a business grows and policies get more mature or detailed, you might have to later upgrade to a more appropriate enterprise solution such as MaaS360 or AirWatch. This solution however, will last quite a long tome for a growing business.
Our immediate take away has been a savings of thousands a year in MDM fees. We were paying around $3.00 a device with our previous MDM and our average with Meraki is about $1.88 per device. That while providing far more functionality than our previous provider.