Try our new research platform with insights from 80,000+ expert users
Network & Security Architect at Canac IT
Real User
Easy implementation, simple to add policies, and very stable
Pros and Cons
  • "The implementation is very simple."
  • "The web interface needs improvement. The new web interface that they have is not as easy to manage and we find it to be very slow."

What is most valuable?

The .1x authentication schema is the most valuable aspect of the solution. It makes it possible to have multiple policies and it can still adapt to us. We can authenticate and calculate our trajectory and so on. The policy is very easy to put in place. It's got to be easy due to the fact that we have more than 200,000 devices.

The implementation is very simple.

What needs improvement?

The web interface needs improvement. The new web interface that they have is not as easy to manage and we find it to be very slow.

The solution might require two authentications. They should make a new authentication to authenticate both the device and the users. Right now, we are authenticating the PC, the workstation, but not as a user. A good addition would be to authenticate the user separately to get more information.

For how long have I used the solution?

I've been using the solution for five years.

What do I think about the stability of the solution?

The solution is stable. I haven't witnessed bugs or glitches. It doesn't freeze or crash. It's reliable.

Buyer's Guide
Cisco Identity Services Engine (ISE)
August 2025
Learn what your peers think about Cisco Identity Services Engine (ISE). Get advice and tips from experienced pros sharing their opinions. Updated: August 2025.
865,295 professionals have used our research since 2012.

What do I think about the scalability of the solution?

The solution is quite scalable.

We started with two clients and we've since scaled up to 20 clients.

Which solution did I use previously and why did I switch?

Cisco ISE was the first full solution we've used.

How was the initial setup?

The initial setup wasn't complex for us. We found the process of implementing the solution very straightforward.

For our organization, in terms of deployment, the first implementation took one month, and for the global implementation took six months.

For maintenance, a company needs one or two people to handle it, one of which should be full-time.

What's my experience with pricing, setup cost, and licensing?

The pricing is okay. It's reasonable for functionality, however, if you're going to implement it as a full-stack with Cisco Connect, and a work station, and so on, it's very high.

What other advice do I have?

I'd advise other companies to really take care in regards to the network devices that they want to authenticate. 

For most of the cases, the biggest rooms are the easiest to manage, however, the smallest ones require specific implementation in all devices. It is very tricky due to the fact that you are obliged to put in place the rules that are not so secure and that's why it's very important to know what devices are connected on the network.

I'd rate the solution eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Batu Akalin - PeerSpot reviewer
Corporate Information Technology Security Manager at AG ANADOLU HOLDİNG A.S.
Real User
Top 10
Integrates well with other Cisco products, but they need to provide better network visibility and also release an agentless version
Pros and Cons
  • "The features that do work, work well, and we use it on a daily basis."
  • "The interface is not very user-friendly and it is not simple to use."

What is our primary use case?

We use Cisco ISE for 802.1 network authentication.

What is most valuable?

ISE integrates well with other Cisco products.

What needs improvement?

This solution does not provide us with enough visibility into our network. We would like to see additional information that it does not show. In general, the reporting is not very useful.

ISE needs to have better integration with third-party products.

A basic profiling engine would make a good addition because device profiling is very important.

This product requires the use of agents and ideally, I would like an agentless version. I think that they should get rid of them because they are hard to manage and deploy. Also, they are not useful.

The interface is not very user-friendly and it is not simple to use.

For how long have I used the solution?

I have been using the Cisco Identity Services Engine for six years.

What do I think about the stability of the solution?

This is a stable product. The features that do work, work well, and we use it on a daily basis.

What do I think about the scalability of the solution?

I would say that this product is scalable because we are using it in our central headquarters, in addition to several branch offices.

How are customer service and technical support?

We do not pay for Cisco SMARTnet, so we did not contact technical support.

Which solution did I use previously and why did I switch?

Prior to using ISE, we were using a solution by Trustwave. It is a different product because it uses Name Poisoning methods. It was an interesting solution but we changed because the price of support is too high. We opted to instead purchase a new product.

How was the initial setup?

The initial setup is not simple. I don't consider our deployment to be complete because we were unsuccessful at trying to use the majority of the features. The fact that we can't solve these problems is why we are searching for another solution.

What about the implementation team?

We had assistance from a consultant for the deployment.

Internally, we have a team of five administrators who manage this product.

What's my experience with pricing, setup cost, and licensing?

The SMARTnet technical support is available at an additional cost.

Which other solutions did I evaluate?

I am currently doing research on Fortinet FortiNAC because I find that Cisco ISE is not a very powerful tool.

What other advice do I have?

My advice for anybody who is considering Cisco ISE is to first run a proof of concept to see that all of the features work well. In my opinion, you have to see all of the features.

I would rate this solution a seven out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Cisco Identity Services Engine (ISE)
August 2025
Learn what your peers think about Cisco Identity Services Engine (ISE). Get advice and tips from experienced pros sharing their opinions. Updated: August 2025.
865,295 professionals have used our research since 2012.
Smart Information and Communication Technology Engineering student at INPT
Real User
Provides significant benefits including enhancing compliance and security
Pros and Cons
  • "It provides client provisions and profiling as well as guest access."
  • "Difficult to figure out the protocols and nodes in order to implement correctly."

What is our primary use case?

I'm an engineering student, studying smart information and communication technology.

What is most valuable?

The product has many useful features. It enhances compliance and security posture. It provides client provisions and profiling as well as guest access, features not available in other solutions. The product can be customized. 

What needs improvement?

Although the solution is easy to implement it's not so easy to understand. You need to be able to figure out the protocols, the nodes, and the personals of the nodes in order to implement correctly and make good use of it. Because it's a Cisco product, if you're not in a Cisco environment, it's difficult to integrate with anything else, so the big concern is its interoperability with other technologies and other vendors. 

For how long have I used the solution?

I've been using this solution for two months. 

What do I think about the stability of the solution?

The solution is stable. 

What do I think about the scalability of the solution?

ISE is extensible. It can be deployed for small and large organizations, and can even be distributed and centralized. 

How are customer service and support?

We haven't used the customer support but if I do need some assistance my supervisor and the manager I'm working with can help. 

What other advice do I have?

I've looked at other network access control solutions and ISE is among the leading technologies. I recommend it but suggest taking a close look at the technology before implementing it. Try to really understand it, because if you miss anything and don't configure correctly, it's going to be awful and you'll lose the benefits that the solution provides. Even if you only need one or two of the features that the solution provides, I would recommend using it. 

I rate this solution nine out of 10. 

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer1905516 - PeerSpot reviewer
Director of Engineering at a tech services company with 51-200 employees
Real User
Allowed us to pull in multiple authentication databases, then centralize them into a captive portal system
Pros and Cons
  • "It has allowed us to pull in multiple authentication databases, then centralize them into a captive portal system."
  • "Documentation is probably the worst part of the software."

What is our primary use case?

We use it for Community WiFi and TACACS authentication. It is service provider authentication, both for the core infrastructure and Community WiFi.

We were looking to solve captive portal and centralized authentication with Cisco ISE.

How has it helped my organization?

It has allowed us to pull in multiple authentication databases, then centralize them into a captive portal system.

It is important for our organization that the solution considers all resources to be external. It treats them with minimum trust.

What is most valuable?

Integration is a big factor. That has really been the driving force behind it.

What needs improvement?

Documentation is probably the worst part of the software.

For how long have I used the solution?

I have been using it for about five years.

What do I think about the stability of the solution?

It is very stable. I would rate the stability as 10 out of 10.

What do I think about the scalability of the solution?

We don't use its scalability. I would rate it as five out of 10.

How are customer service and support?

The technical support is good. I would rate them as six out of 10.

How would you rate customer service and support?

Neutral

Which solution did I use previously and why did I switch?

We previously used an open-source solution. We switched for vendor support and scalability.

What was our ROI?

We don't monetize this solution.

What's my experience with pricing, setup cost, and licensing?

It is fair.

Which other solutions did I evaluate?

We did not evaluate other options.

What other advice do I have?

It is worth checking out the integration that it provides. It is a strong platform.

Cybersecurity resilience has not been that important for our organization.

I would rate ISE as eight out of 10. It does exactly what it is supposed to do without much issue.

Which deployment model are you using for this solution?

Private Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company has a business relationship with this vendor other than being a customer. Reseller
PeerSpot user
reviewer1792131 - PeerSpot reviewer
Chief ICT Specialist at a government with 10,001+ employees
Real User
Helps us to better recognize our endpoints and know whether they are allowed to access our network
Pros and Cons
  • "The integration with Active Directory is the most valuable feature for us."
  • "The admin interface is really slow. It's horrible."

What is our primary use case?

We use it for SDA infrastructure. We have a challenge in recognizing different kinds of devices and that's what we are using ISE for in the SDA fabric.

How has it helped my organization?

We can better recognize our endpoints and we know whether they are allowed to access our network. That's really important for us.

It has also eliminated some rogue devices from accessing our network.

What is most valuable?

The integration with Active Directory is the most valuable feature for us.

What needs improvement?

The admin interface is really slow. It's horrible.

For how long have I used the solution?

I have been using Cisco ISE (Identity Services Engine) for five years.

What do I think about the stability of the solution?

It's really stable.

What do I think about the scalability of the solution?

It's scalable, but we need to upgrade some of our hardware to support more users.

Our SDA fabric has about 1,500 users that we are authenticating. We have plans to use it throughout the City of Helsinki, which has about 38,000 personnel whom we will need to authenticate in the future.

How are customer service and support?

I haven't used the tech support.

Which solution did I use previously and why did I switch?

We also currently have Microsoft RADIUS, but we are planning to move away from it and use ISE as our only authentication solution.

What other advice do I have?

Other than the slow admin interface, it's an excellent product.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer1882776 - PeerSpot reviewer
Network Specialist
Real User
Improves internal security, great for authorization and authentication
Pros and Cons
  • "Among the most valuable features is TACACS."
  • "The area where things could be improved is education. It's complicated to deploy initially because you have to know what you're getting into."

What is our primary use case?

I use it for licensing and profiling. It's like a "traffic cop." It's an endpoint user migration tool. It's also a TACACS server. It depends on what I'm using it for at the moment.

For the applications it's authentication and then authorization into the network. It's the networks you're on and what AD gives you. Your profile is based in AD or an LDAP server. ISE talks to those two servers and says, "What groups do you belong to, and should you have access to those roles?" With ISE, if AD says you can have it, then go for it.

I use it in big campus environments, anywhere that needs authentication and authorization to work with AD. It's a great tool for that, if you want to profile your network and you want to secure your network inside. We're not talking about firewalls but about what the tool can do for you, what it's designed for.

How has it helped my organization?

It has improved internal security, in-to-out, out-to-in. Without ISE, you can't posture or profile your network. Authorizations, authentications. ISE is not the only product that can do it, but it's a great tool.

What is most valuable?

Among the most valuable features is TACACS. Also, the rules and logging, but TAC is just as easy. Cisco TAC is great.

What needs improvement?

The area where things could be improved is education. It's complicated to deploy initially because you have to know what you're getting into. That's true with any customer. I don't know them so I have to learn about them. I have to figure it out, but there are very limited windows to do that. If a customer's going to hire you, you are the professional. You should know this already. You should come in with a base knowledge of what you need to do and, after that, grow with the customer. More education is how it can be improved.

For how long have I used the solution?

I have been using Cisco ISE (Identity Services Engine) since 2016. I usually come into an environment after everything is there already. Customers bring me in to fix things that are broken.

What do I think about the stability of the solution?

The stability of the solution depends on how you scale it. If you have set it up properly, it will be great. If you put all your eggs in one basket, in one part of the network, and that goes down, then you have lost everything.

What do I think about the scalability of the solution?

It's scalable. It can grow with your network. You can create new nodes or move everything from local to the cloud. It's easy to spin up a VM, so you can put it on a VM real quick and be done within a couple of days. But you have to know what you're doing. You can't just do it with the assumption that you can copy and just redeploy it. ISE doesn't work like that. It has to be done properly.

How are customer service and support?

Cisco's TAC is excellent. Cisco always has great support.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I previously used the older versions of the hardware that were the original predecessors to ISE.

How was the initial setup?

The deployment model for ISE depends on the customer: where their data centers are, what they can afford, and what type of maintenance agreements they have with Cisco's support. Are they on a VM or a physical device? Deployment depends on what we are trying to do and the environment.

What other advice do I have?

In terms of establishing trust for every access request, trust is only as good as the rules and definitions you build. Without that, you need not only to trust the device, you need the trust of the customer too. That's important.

Trust is only eliminated when a customer wants the rules loosened. When the customer says, "This is too difficult, you're making it too hard," that is when exposure happens, things start collapsing, and there are breaches. You can't give the customer everything they want, because they don't know the consequences. You have to educate them. They need to know that the inconvenience of hitting "enter" to log in, and having it take three seconds or five seconds is because you'd rather have the machine and the network think before they let you on the network. A lot of times a customer will say, "If I'm hitting enter and it's not bringing me to where I need to be, then this is not a good solution." You have to educate them.

The solution is like an iPad that someone set up for you. If they didn't do a good job setting it up, you're going to rate the tool as bad. A lot of times, I come in and it's already done and I have to fix the problems. There are times that I do create it from scratch and it works really well. 

Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
Gerald Jimenez - PeerSpot reviewer
IT Operations Supervisor at Aboitiz Equity Ventures, Inc.
Real User
Good integration between IT and OTs but still has some bugs
Pros and Cons
  • "ISE's most valuable feature is integration between IT and OTs."
  • "There are still some bugs in ISE that need to be worked out."

What is our primary use case?

I primarily use ISE for segregating identities, IP addresses, and ports.

What is most valuable?

ISE's most valuable feature is integration between IT and OTs.

What needs improvement?

There are still some bugs in ISE that need to be worked out.

For how long have I used the solution?

I've been working with Cisco ISE for three years.

What do I think about the stability of the solution?

ISE is stable.

What do I think about the scalability of the solution?

ISE is scalable.

How are customer service and support?

Cisco's tech support could be improved.

How was the initial setup?

The initial setup was straightforward.

What other advice do I have?

Regardless of your industry, I would recommend Cisco ISE if you want good identity management. I would rate this solution seven out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer1024695 - PeerSpot reviewer
Owner at a tech services company with 11-50 employees
Real User
A network administration product that is easy to use, but migration could be better
Pros and Cons
  • "I like that Cisco ISE is easy to use."
  • "Migration could be better. Right now, we back up with the new version, and it requires a lot of licensing and other things. Whenever we choose a product, it's very difficult because we have to meet the requirements of each feature. There is no standard feature, so the best system that we bought may not fit the solution. We have to look at every feature that the customer uses. If you compare it with other products like Aruba, it's not the same. With Cisco, I have to read all about the features on this version and the licensing required for the product. In Aruba, that thing is covered when you get one license because it covers almost everything. It could also be more scalable."

What is our primary use case?

We use Cisco ISE to develop products for other people. We don't really use it in our system. We just buy it and implement it when our customers require ISE.

What is most valuable?

I like that Cisco ISE is easy to use.

What needs improvement?

Migration could be better. Right now, we back up with the new version, and it requires a lot of licensing and other things. Whenever we choose a product, it's very difficult because we have to meet the requirements of each feature. There is no standard feature, so the best system that we bought may not fit the solution. 

We have to look at every feature that the customer uses. If you compare it with other products like Aruba, it's not the same. With Cisco, I have to read all about the features on this version and the licensing required for the product. In Aruba, that thing is covered when you get one license because it covers almost everything. It could also be more scalable.

For how long have I used the solution?

We have been using Cisco ISE for 20 to 30 years.

What do I think about the scalability of the solution?

It could be more scalable. It's easy to scale initially, but it will become very difficult at a certain point. In the beginning, it's in the previous environment, and it's pretty easy. But after we integrate it, we need to do a couple more to scale the product, which is more difficult.

We have less than 300 people using it worldwide. We deal with an airline company, so people who come to use it aren't many, but it's available to everyone from everywhere around the world.

How are customer service and support?

We deal with a local Cisco partner for technical support. I haven't dealt with Cisco directly in Bangkok. 

How was the initial setup?

I think Cisco takes around six months to complete the migration from the old one to the new one. This is because we have compliance and a lot of other things here.

What about the implementation team?

Our in-house team implements this solution. It takes about three people to maintain this solution.

What's my experience with pricing, setup cost, and licensing?

It costs around 50,000 baht in the first year, but I'm unsure about the second year.

What other advice do I have?

On a scale from one to ten, I would give Cisco ISE a seven.

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Download our free Cisco Identity Services Engine (ISE) Report and get advice and tips from experienced pros sharing their opinions.
Updated: August 2025
Buyer's Guide
Download our free Cisco Identity Services Engine (ISE) Report and get advice and tips from experienced pros sharing their opinions.