A cloud-delivered security service edge (SSE) solution, grounded in zero trust, designed to give users an exceptional user experience and protected access from any device to anywhere.
N/A
Cisco Secure Equipment Access
Score 3.9 out of 10
N/A
A solution for secure remote access to ICS and OT assets, that enables enforcement of cybersecurity controls at scale with Cisco's zero trust network access (ZTNA) solution, made for industrial networks and harsh environments.
Cisco as a whole solution, Cisco Secure Access as a solution is very well suited. If you want to simplify the operations and the way that you provide access to certain things, rollout and deployment are fairly straightforward and fairly fast if you know how to configure it properly. Regarding private access, there's still some things that need to be addressed to mitigate certain connections that aren't working correctly through the VPN, or maybe create some kind of exception. The most famous ones are things with Microsoft or other vendors, where, when you send that information through the VPN, split tunnels aren't necessarily the only configurations you have to consider. Things like IPS, decryption, you also have to look at those things as well. It might be good to try to enhance those types of configurations and maybe also document those things so that the users are aware.
The integration into the Meraki dashboard is not yet complete, you have to use several interfaces to complete the configuration, the services should be fully integrated to provide better handling
Integration of firewall rules onprem and cloud should be standardized
It's simpler to identify or find things within the platform. Obviously, there are always things to improve, maybe in the GUI or in certain things coming over from Umbrella, because this platform is actually adopting a lot of the Umbrella solutions. And it's just a matter of trying to navigate through it. I really like the way it's simplified in how you categorize your internal policies and your private access policies. It's just a different mindset and a different way of creating policies in this case, compared to how Umbrella did in the past with rule sets and those kinds of things. But the actual solution itself works pretty well when you understand it.
Took over a year to implement with Ciscos help. We are not able to initiate 2FA that we control. And until recently, was not even able to enforce MFA. In our experience, Licensing is a freaking joke! We have to license machines. For each machine, we get 1gb of data added to a shared pull. That seems simple right, but its not. We tried to add licenses and can't, cause, in our experience, no one knows how it works so I literally can't pay for more. What happens when we hit the cap you say? In our experience, No one can tell us. Why cant we MFA the IoTOD with Duo? No one knows. Than I hope you are a master at IoT firewalls! Because, in our experience, standard rules don't work. Need zone based routing but there is no way to know what needs to be CLI and what is in GUI
We selected Cisco Secure Access due to the intuitive GUI and ease of use. The agent deployment was simple and easy to maintain. Any additional updates or changes were quickly deployed, and users found the customized block messages useful. From analytics and management, the Secure Access Product has been simple to manage and provides a robust level of security and flexibility that we haven't found in any other product yet.