What is our primary use case?
It's container security.
NeuVector is very integrated with Kubernetes Security, so it scans the infrastructure underneath Kubernetes. It's like "big brother." It traces how applications talk to each other and if there are any vulnerabilities.
We also used it with our CI/CD pipelines. For example, if the pipeline had any vulnerability, it would give an error and stop the process.
We integrated NeuVector with GitLab.
What is most valuable?
The UI has a lot of features. In terms of UI, it's very informative. It supports multiple clusters, and it's very powerful. You can get reports on vulnerabilities and stuff like that. It integrates with CI/CD pipelines, so it's very good for compliance. It also supports ISO certification checks.
What needs improvement?
As a product, it is not easy to set up, although it has a helm chart and manifests for deployment.
Still, it wasn't easy to implement.
The documentation needs to improve a bit. If they simplify the deployment process and show you how to install it and how to integrate it with other products like GitLab or other tools, it would be more beneficial.
For how long have I used the solution?
I've been using the solution for a year and a half.
What do I think about the stability of the solution?
The solution is very stable. We never had any issues once we had everything set up. There were no bugs or glitches, and it didn't crash or freeze.
I'd rate the overall stability nine out of ten.
What do I think about the scalability of the solution?
It is quite scalable as a product. You can scale up scanners. If you have a lot of pods to scan and it supports multiple clusters. I'd rate the ability to scale eight out of ten.
How are customer service and support?
Technical support has been helpful and responsive. They are quite knowledgeable.
How would you rate customer service and support?
Which solution did I use previously and why did I switch?
I am aware of other solutions. They are all very similar in terms of feature offering. However, this product is a bit more complex to set up.
How was the initial setup?
The solution is not very easy to set up. It's complex.
The most challenging part was dealing with how to integrate with our pipelines. The documentation doesn't give the full picture, and we had to make custom scripts for it.
While they were providing predefined templates or predefined scripts for the integration, it didn't work as we would have expected. Therefore, we had to make custom scripts to get around everything.
As the complexity grows, you need to have more trained people to help deploy it.
We had four people handling the deployment and maintenance tasks.
I'd rate the solution three out of ten in terms of ease of deployment.
What's my experience with pricing, setup cost, and licensing?
I haven't looked into the pricing. I can't speak to the exact costs.
What other advice do I have?
While it is a good product, it will not be easy to install. Also, their documentation is not spot-on. You need to get your hands on it before you really understand how it works. We found bugs while testing things out and had to request support. I'm not sure if it was the product or the setup requirements we had. However, we had initial challenges.
Overall, I'd rate the product seven out of ten. It has good features and lots of potential.