Try our new research platform with insights from 80,000+ expert users
it_user214254 - PeerSpot reviewer
Senior Network Administrator at a manufacturing company with 1,001-5,000 employees
Vendor
It helps us to ensure all sites are compliant with a unified set of standards passed down from our corporate headquarters.

What is most valuable?

The most valuable feature for us it the granular, logic-based nesting of objects which gives highly customizable control over AAA for TACACS+ and RADIUS.

Device profiling for basic/intermediate NAC is also highly useful.

How has it helped my organization?

Providing granular control over which devices are permitted to join our corporate wireless network, as well as in-depth AAA (accounting, in particular) for TACACS+ sessions, is huge. We can refer back to these logs at any time, which are especially useful when we undergo organization-wide audits.

Having a global business presence, CPPM helps us to ensure all sites are compliant with a unified set of standards passed down from our corporate headquarters.

What needs improvement?

  • I'd like to see greater ability to customize backups – locations, transfer protocols (SCP/SFTP, etc).
  • Small tweaks like scroll bar distances within large Enforcement Policies. More customization for SNMP traps (types), a well as published MIB files so that we can utilize our network monitoring environment more heavily with polling specific aspects of CPPM.
  • Hardware requirements for VM templates we use (CP-VA-5K) are, quite frankly, absurd (very high disk storage requirements).

For how long have I used the solution?

I've used it for just over three years.

Buyer's Guide
Aruba ClearPass
May 2025
Learn what your peers think about Aruba ClearPass. Get advice and tips from experienced pros sharing their opinions. Updated: May 2025.
851,823 professionals have used our research since 2012.

What was my experience with deployment of the solution?

I don't recall any issues with deployment.

What do I think about the stability of the solution?

I don't recall any issues with stability.

What do I think about the scalability of the solution?

I don't recall any issues with scalability.

How are customer service and support?

Technical support was not all that great, actually. They are responsive, but oftentimes are VERY reluctant to initiate a screen-sharing session or give in-depth answers. URL links to knowledge-base articles are very typical for initial answers, which (1) slows resolution, and (2) increases frustration.

It seems, in general, that technical support is more interested in closing new cases than they are in actually solving the root issues. 90% of the questions I’ve had I’ve had solved (for free, mind you, without any maintenance fees) using Aruba’s Airheads online user-based forums.

How was the initial setup?

The solution was implemented before I gained ownership of it. I'm not sure of the history behind it.

What about the implementation team?

A local vendor was used.

What other advice do I have?

Do your due-diligence in understanding how the product works before you deploy. CPPM (and many like it – Cisco ISE and ACS) are very complex in the way they are configured and operate.

If you can design the solution before implementation, you have a much better chance of scaling well, easily, and with little down-time as you grow the product throughout its life cycle in your organization.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Network Administrator at a government with 5,001-10,000 employees
Real User
Top 5
Good stability and offers seamless integration with other systems
Pros and Cons
  • "Authentication capabilities are one of the most valuable features."
  • "One area for improvement would be the possibility of using social media providers for user authentication."

What is our primary use case?

We use ClearPass to authenticate users and have a product in development that will use NAC solutions. In addition to these, we also use ClearPass for network access control and guest management.

How has it helped my organization?

We have flexible and detailed options to implement our security policy using ClearPass Policy Manager engine.

What is most valuable?

The authentication capabilities are one of the most valuable features, including the ability to build rules within the system to anticipate users. We also have maximum or onboard margins, and a new product is coming soon that can be used onboard. Additionally, the integration with other systems is a great value and a standout feature of the product.

What needs improvement?

One area for improvement would be the possibility of using social media providers for user authentication. In Brazil, we have a government-sponsored service that indicates users who would like to see this feature supported. I have made a formal request for this feature, but I am unsure if it will be considered for the next release. However, it would be a valuable addition for us.

For how long have I used the solution?

We use ClearPass with Aruba controllers for our wireless LAN. We have the 7220 gateway/controller model and wireless APs, specifically the 510 series.

What do I think about the stability of the solution?

It is a stable product. We've never experienced any downtime with ClearPass. We have a cluster of ClearPass servers, and we've never had any problems with stability or downtime.

What do I think about the scalability of the solution?

The scalability is good. You can scale very well.

How are customer service and support?

I had to call customer support once because I needed to reset the license for an upgrade, and I needed guidance on how to use the new license model. That was the only time I had to call support. They responded to me quickly and it was a good experience.

How would you rate customer service and support?

Positive

How was the initial setup?

I would rate it an eight out of ten, where ten is the easiest and zero is the most difficult.

What about the implementation team?

It took a few months to deploy the solution. I was the main technician involved in the deployment.

What's my experience with pricing, setup cost, and licensing?

The pricing is a little bit more expensive than other options, but it's worth the value.

What other advice do I have?

Overall, I would rate the solution a nine out of ten.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
Flag as inappropriate
PeerSpot user
Buyer's Guide
Aruba ClearPass
May 2025
Learn what your peers think about Aruba ClearPass. Get advice and tips from experienced pros sharing their opinions. Updated: May 2025.
851,823 professionals have used our research since 2012.
reviewer2319423 - PeerSpot reviewer
Network engineer / owner at a photography company with 11-50 employees
Real User
Top 5
Offers ability to authenticate using not just certificates but also MAC addresses
Pros and Cons
  • "I would rate the stability a nine out of ten."
  • "There is room for improvement in terms of scalability."

What is our primary use case?

We mainly use it for 802.1X authentication.

What is most valuable?

Our customers like its ability to authenticate using not just certificates but also MAC addresses is very helpful in mitigating unauthenticated access on networks and switches.

What needs improvement?

There is room for improvement in terms of scalability. 

For how long have I used the solution?

I have experience with Aruba ClearPass for five to six years.

What do I think about the stability of the solution?

I would rate the stability a nine out of ten.

What do I think about the scalability of the solution?

I would rate the scalability an eight out of ten. Our customers are mostly medium-sized businesses.

Which solution did I use previously and why did I switch?

I have some years of experience with FortiGate, Fortinet Firewalls, and Fortinet switches. Mostly with FortiSwitch models 6450, 548, and 124F.

What about the implementation team?

I didn't set it up myself. I'm involved in operating the system.

What other advice do I have?

Overall, I would rate the solution an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Implementer
PeerSpot user
Senior Manager Network Design at MEEZA, Managed IT Services Provider
Real User
Top 5Leaderboard
Beneficial protocol support, helpful technical assistance, and reliable
Pros and Cons
  • "A lot of the issues in Forescout are mitigated in Aruba ClearPass, it supports all the expected protocols."
  • "Aruba ClearPass has fewer deployment scenarios and flexibility than Forescout."

What is our primary use case?

Aruba ClearPass is used for enforcing certain security policies all around the organization, it covers certain security policies, which is in turn, is deducted from the business requirements. You start with a security policy, then you need technology to enforce it, this is where Aruba ClearPass is used.

What is most valuable?

A lot of the issues in Forescout are mitigated in Aruba ClearPass, it supports all the expected protocols.

What needs improvement?

Aruba ClearPass has fewer deployment scenarios and flexibility than Forescout.

For how long have I used the solution?

I have been using Aruba ClearPass for five years.

What do I think about the stability of the solution?

Aruba ClearPass is reliable.

What do I think about the scalability of the solution?

I have found Aruba ClearPass to be scalable.

I have approximately two clients with 400 users each, giving a total of 800 users using the solution.

How are customer service and support?

Aruba ClearPass has a very good technical support team. Whenever we need the vendor to be involved, we find a good deal of technical support.

Which solution did I use previously and why did I switch?

I have used Forescout and I would rate Aruba ClearPass second best.

How was the initial setup?

The initial installation is simple. The deployment could be better since it has fewer capabilities than other solutions, it could be more flexible.

What about the implementation team?

We have a dedicated engineer for Aruba ClearPass when it comes to deploying and support of the solution. One engineer is enough for my client's environment.

What's my experience with pricing, setup cost, and licensing?

The licensing model is very straightforward. There are two types of licensing for Aruba ClearPass, a perpetual license, and a subscription. Both of them are straightforward. We don't need to read an ordering guide, it's very clear.

What other advice do I have?

I would recommend this solution to others if they have a certain use case. If there is a lot of Cisco environments that need to be implied under the security policy, then ClearPass is the right solution for them. It supports a wide range of Cisco technologies and Cisco protocols.

I rate Aruba ClearPass an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
reviewer1364637 - PeerSpot reviewer
Architecte Système at a tech services company with 1,001-5,000 employees
Real User
Excellent for securing local networks, very stable, and easily scalable
Pros and Cons
  • "We find that at the end of the projects we manage, all functionalities perform quite well. We've tested it a lot and find it to be overall a very good solution."
  • "The solution needs to upgrade its user interface. Right now, it's not so user friendly, and it's an aspect that my clients' wish was improved upon."

What is our primary use case?

My clients primarily use the solution to control access to the network or their sites. If a computer is not recognized by ClearPass, it won't be able to gain access.

What is most valuable?

The solution is extremely stable.

We find that at the end of the projects we manage, all functionalities perform quite well. We've tested it a lot and find it to be overall a very good solution.

It's excellent in terms of securing local networks for our clients.

What needs improvement?

The solution needs to upgrade its user interface. Right now, it's not so user friendly, and it's an aspect that my clients' wish was improved upon.

The solution is quite large and complex in scope. If a person isn't familiar with the solution, they can quickly get overwhelmed with everything.

For how long have I used the solution?

I've been installing the solution for one to two years now. The last project I worked on was around six months ago. 

What do I think about the stability of the solution?

We have never experienced any bugs, crashes, or glitches. In my opinion, everything is stable. It's excellent. I'd say it's quite reliable in that regard.

What do I think about the scalability of the solution?

The solution is very scalable. A company will be able to expand the solution to meet their needs as necessary.

How are customer service and technical support?

In the past, we have reached out to technical support. During the implementation process, all the way through the project, we only had just one or two specific instances where their assistance seemed to take a long time. However, overall, I would say we are completely satisfied with their level of support.

How was the initial setup?

While the installation itself is not difficult per se, the process you need to go through before installing the solution is complex. There are a lot of configurations to do on the firewall network and it can take a while, depending on the company. 

While it's tedious before the installation, once you come to the actual installation itself, you'll realize it's not too bad.

We're working on a project right now that has ten deployments and that's taken us about four or five months. For this project, there have been five people involved in the deployment process.

What about the implementation team?

We handle aspects of the implementation for our clients.

What other advice do I have?

We've partnered with HPE and Aruba.

I work at a service company. I go and install solutions for customers. I just handle the install for my customers. I don't use the software myself every day or on a regular basis. My role is one of a project technician and director. I'm an architect.

Our organization handles all sizes of companies from small to large enterprises.

If there's a company out there considering the solution, I'd just caution them to be ready.  There is a lot of configuration to do on all of the infrastructure. Other than that, it's an excellent solution. It's great for securing a local network. Security, at the end of the day, shouldn't have a cost. It's imperative to protect your business and to not worry so much about price tags, because it's even more expensive when you are unprotected and things go wrong.

I'd rate the solution nine out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
it_user688896 - PeerSpot reviewer
WiFi Manager at Etisalat UAE
Vendor
Offers support for every time you have database issues
Pros and Cons
  • "Aruba has improved my organization because it supported me on my level of access."
  • "Aruba needs to improve and the processes must be clear."

What is our primary use case?

Our primary use case for Aruba ClearPass is to use it in IoT services.

How has it helped my organization?

Aruba has improved my organization because it supported me on my level of access. I hope to see Aruba add routers to their portfolio. 

What is most valuable?

A very important feature for me is its support of a multi-tenant solution on deliverables. For instance, I have three customers, or three users, and I want each customer to have his own portal and his own database to manage their subscriber for reporting and for provision. 

What needs improvement?

Aruba needs to improve and the processes must be clear. I also believe the marketing is very important, as well as to split the database to be more specific, like having a user name, access point name or site name. 

For how long have I used the solution?

We have been using Aruba ClearPass for two years now.

What do I think about the stability of the solution?

In general, Aruba is very stable and it supports me every time I have issues related to my database. 

What do I think about the scalability of the solution?

The scalability is good. We currently have about 100 users but we expect this to grow to 10,000 by the end of the year. So we plan to increase our usage. We won't need to employ extra staff because the support from Aruba is very good.

How are customer service and technical support?

The technical support from Aruba is very good.

Which solution did I use previously and why did I switch?

Before we started using Aruba we worked on Cisco, which has the same setup. They had the same access layer, access points, access controller and management at Cisco. We were, however, looking for a wireless solution.

How was the initial setup?

The deployment took about two years, and then it took about two weeks for the configurations to be activated. 

What was our ROI?

We've invested in Aruba to increase our customers to 10,000 by the end of the year so we hope to see a good return on investment. 

What's my experience with pricing, setup cost, and licensing?

We pay an annual licensing fee for Aruba and there are no additional costs.

What other advice do I have?

I can recommend this solution for anyone in terms of guest management or from a security perspective. I will rate this a nine out of ten.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
it_user812403 - PeerSpot reviewer
Consultant
User
Makes it easy to require robust user authentication for both wired and wireless endpoints
Pros and Cons
  • "It makes it easy to require robust user authentication for both wired and wireless endpoints, including BYODs."
  • "Access Tracker is invaluable for troubleshooting access control incidents and quickly getting to the root cause."
  • "It should be clearer in the pre-sales stage that clear, documented, executive-supported InfoSec policy is the key to success."

What is our primary use case?

ClearPass is the best Network Access Control "Swiss army knife" out there right now. It can do 802.1x (WPA2-Enterprise) for WiFi and LAN. It also has one of the slickest guest captive portal experiences and workflows out there, along with an easy, drop-in BYOD application.

I have not had too much experience with OnGuard, the endpoint integrity feature, but it does that too. With all of the ClearPass integrations and RADIUS Change of Authorization (CoA), it is possible to login wired or wireless endpoints based on a variety of identity stores, then create and associate security policies, e.g., DACLs, based on a device. 

Dynamically provision VLAN assignments, i.e., no more "color-coded ports", write Palo Alto Networks (PAN) NGFW policies that are associated with a specific user (rather than IP address), and quarantine or drop an endpoint off the network in an automated manner if an incident is detected.

All of this, naturally, comes with a lot of details in implementation, but my experience was, like all things InfoSec, implementing the controls is easy if you already have a clear, documented, executive-supported policy that you are using as the control to enforce. Otherwise, the control gets blamed for what is really a lack of clarity and leadership regarding the underlying business policy.

How has it helped my organization?

It makes it easy to require robust user authentication for both wired and wireless endpoints, including BYODs.

What is most valuable?

Access Tracker is definitely the feature that I use the most. It is invaluable for troubleshooting access control incidents and quickly getting to the root cause.

What needs improvement?

It should be clearer in the pre-sales stage that clear, documented, executive-supported InfoSec policy is the key to success.

For how long have I used the solution?

Less than one year.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
it_user424623 - PeerSpot reviewer
Manager, IT Operations at a real estate/law firm with 1,001-5,000 employees
Vendor
Reliable solution for our guest network access as well as mobile device registration.

What is most valuable?

It's a reliable solution for our guest network access as well as mobile device registration.

How has it helped my organization?

The key functionality we're using is Active Directory in unison with device authentication, so every 45 days a user has to log in their password on their mobile phone so that you can use WiFi services in the office. We're going to be looking at ClearPass to do device authentication, which means the users will only have to register the device once and never have to re-enter the password again.

What needs improvement?

It was a complex solution to set up because of its newness. We needed a third-party implementor to help us.

For how long have I used the solution?

It's a brand new installation for us, and we've only had it for a month.

What was my experience with deployment of the solution?

So far, we haven't had any issues with deployment.

What do I think about the stability of the solution?

From what we've seen it's been pretty stable.

What do I think about the scalability of the solution?

Right now, it's scaled. We're using it for guest internet services and it seems to be working pretty well. Our next phase with that would be to roll in for device registration as we roll out to our mobile device strategy.

How are customer service and technical support?

Customer Service:

10/10 for HP and 8/10 for the third-party.

Technical Support:

We haven't really run into any support issues yet. On the integration side, there's obviously some expertise with the vendor, which is going to help us take care of some issues in the future, but it hasn't really been a difficult product to support.

Which solution did I use previously and why did I switch?

We decommissioned other options. We had another, but we've since decoupled it and are now using ClearPass to do that.

How was the initial setup?

Because of its newness it was complex, but the end result was pretty straightforward.

What about the implementation team?

We did need a third party to come in and help us do the implementation. We had some initial help from an HP engineer on the Aruba side who spent some time with us, showing us an evaluation version of it, but when we went into production we had to get a third party to help us.

What was our ROI?

We're not really calculating ROI for the service. It's a necessary service delivered by IT to the corporation.

What's my experience with pricing, setup cost, and licensing?

We're currently doing an entire refresh of our access point network, which is approximately 80 access points across the country. We've recently acquired all new hardware. We're refreshing the entire footprint.

Which other solutions did I evaluate?

Because Aruba was our primary vendor for our access points, it just made more sense for us to try to consolidate more services towards the new strategy.

What other advice do I have?

It's only providing a very small service to us right now. It's not like we're looking at ClearPass on a very full-blown basis. My advice would be to just make sure to do a proper spectrum analysis, and each of your properties are areas that you intend to put WiFi, because it will be critical to where you put APs and how closely you put them together.

Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
PeerSpot user
Buyer's Guide
Download our free Aruba ClearPass Report and get advice and tips from experienced pros sharing their opinions.
Updated: May 2025
Buyer's Guide
Download our free Aruba ClearPass Report and get advice and tips from experienced pros sharing their opinions.