No more typing reviews! Try our Samantha, our new voice AI agent.

Aruba ESP vs Prisma Access by Palo Alto Networks comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Ranking in Secure Access Service Edge (SASE)
8th
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
22
Ranking in other categories
Secure Web Gateways (SWG) (6th), Internet Security (3rd), Web Content Filtering (1st), Cloud Access Security Brokers (CASB) (7th), ZTNA as a Service (8th)
Aruba ESP
Ranking in Secure Access Service Edge (SASE)
28th
Average Rating
0.0
Reviews Sentiment
5.9
Number of Reviews
2
Ranking in other categories
No ranking in other categories
Prisma Access by Palo Alto ...
Ranking in Secure Access Service Edge (SASE)
1st
Average Rating
8.2
Reviews Sentiment
6.9
Number of Reviews
65
Ranking in other categories
Secure Web Gateways (SWG) (4th), Cloud Access Security Brokers (CASB) (1st), Enterprise Infrastructure VPN (7th), ZTNA as a Service (5th)
 

Mindshare comparison

As of May 2026, in the Secure Access Service Edge (SASE) category, the mindshare of iboss is 3.0%, up from 1.7% compared to the previous year. The mindshare of Aruba ESP is 1.0%, up from 0.3% compared to the previous year. The mindshare of Prisma Access by Palo Alto Networks is 10.4%, down from 16.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Secure Access Service Edge (SASE) Mindshare Distribution
ProductMindshare (%)
Prisma Access by Palo Alto Networks10.4%
iboss3.0%
Aruba ESP1.0%
Other85.6%
Secure Access Service Edge (SASE)
 

Featured Reviews

Ashok Ananthula - PeerSpot reviewer
Senior Consultant Proxy Engineering at a financial services firm with 10,001+ employees
Cloud gateway has strengthened remote web security and now needs better Mac and ISP support
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent for the Mac agents. That is where in 2025, we had to migrate to the Palo Alto-based platform. If your use case is for just Windows laptops,you can consider this platform as an option One issue is the data center resiliency part. In India especially, they are not tied up with the Tier 1 ISPs like Tata or Airtel; they were having Tier 2 ISPs and encountered many issues reaching few major sites that my organization depends on, and they were having problems that they could not fix quickly. They also lack a mechanism to route that traffic within their data center; rather, they ask customers to make a pac file change to route it to Singapore explicitly. It would be better if they route from their backend , i mean even if I send it to India DC, they should be able to route it internally to make that work; however, they fail to do that and ask the customer to route it in the pac file. Another suggestion is that in China, they do not have the proper setup; they used to have numerous problems with slowness and lack of premium circuits in China as well. That leads to multiple sites working slowly with latency-related issues. So the main issue is the ISP-related problems that need to be solved.
SatishKumar13 - PeerSpot reviewer
Deputy Manager at Savex Technologies Pvt Ltd
Has improved remote connectivity with secure segmentation for traveling users
The scenario has totally changed after COVID. Earlier, people used to work from office culture, but now it has shifted to work from anywhere. Devices are not fixed either. Previously it was fixed asset, but now people are using smartphones, IoT devices, laptops, and other devices, connecting from anywhere. Segmenting network traffic is very difficult and complicated because putting a firewall across devices is very difficult and nearly impossible. EdgeConnect, which includes endpoint protection or SSE, is very agent-based. POPs are nearly reachable across the globe, so users can access services globally whenever they want to reach the data center or access the internet. It creates segregation, and after segregation, it comes with security functionality including CASB, web, anti-malware, and antivirus functionality. It protects the endpoint whenever connecting with unsecured networks. The first level post-check of security parameters matches all functionalities. Their segregation part allows us to define parameters through ZTNA functionality, Zero Trust Network Access where we can define postures, whether devices relate to corporate network or personal use, if antivirus is running, if OS is updated, and many more things. Based upon that, it helps customers protect the complete infrastructure, whether connecting with office network, unsecured network, or remote office.
IgorPinter - PeerSpot reviewer
Director at PULSEC
Zero-trust access has improved remote security and now simplifies cloud-based firewall management
Regarding the integration part for Prisma Access by Palo Alto Networks, the integration with identity providers is pretty much good. It is basically firewall as a service, so it performs well. I completed the integration without any issues. What Palo Alto Networks can do better for Prisma Access by Palo Alto Networks is probably to have the point of presence available in more locations. The point of presence from the Serbia region has the nearest POP in Frankfurt, which is an issue since it is your gateway—when you start browsing the internet, you go through a commercial connection in Germany. They definitely need to spread the service in other countries.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I would definitely recommend iboss for web filtering purposes to other organizations or individuals."
"From a use-case scenario, what I like the most is the plug-in. I like the fact that we can do the filtering of these devices offsite independent of the network they are connected to, and we do not have to have traffic coming back inside our network."
"As I mentioned, the return on investment is significant, as it saved our office locations' bandwidth because when you are working remotely at home, your internet traffic routes directly to iboss and will not go to your office building, saving bandwidth bottlenecks and ensuring that issues with our building internet circuits will not impact your internet connectivity because you are directly going to the iboss data center."
"Because of iboss, I did not have to assign web filtering tasks to my techs on a daily basis."
"I would say iboss is a very good product; its scalability is very good, and it's seamless for the user."
"Iboss is a solution that prevents advanced persistent threats, and has a zero tolerance for attacks."
"It was a very easy product to install. It can be deployed very fast."
"iboss is pretty scalable. They provide good support. The case managers you work with to coordinate what you need are pretty good."
"It provides a single umbrella for the complete network infrastructure, which is a very key differentiator from other products."
"Aruba ESP is a single place where you manage everything, and you have integrations with a lot of other vendors together on the same platform."
"Palo Alto Firewall is one of the best firewalls in the world."
"There is a system for monitoring the traffic. You can monitor the traffic of the connected people and point out any issues on the connection part."
"The most valuable features of the solution stem from the fact that it offers stability and scalability while being a very secure product."
"The crux of why we're using the product is because of the automations, and we are very confident that the product will keep us secure at all times."
"It's great that we can make sure a machine meets the minimum requirements before users are allowed to log in."
"It supports auto-scaling for mobile users. It auto-scales depending on the mobile user traffic. For example, if 1,000 people are working from home today, and tomorrow, the number increases to 2,000, it is not going to be an issue."
"The Autonomous Digital Experience Management (ADEM) offered by Palo Alto is a good reporting tool. It gives insights into how things are going within the network. It takes all the data from the users' endpoints and does an analysis, and it suggests changes as well."
"Customers are quite happy with Prisma Access by Palo Alto Networks because there is less spending on technologies."
 

Cons

"For zero trust implementation, we encountered complexity issues, especially with a large infrastructure company ExxonMobil."
"The endpoint-type solution is an area that needs some improvement."
"Sometimes, obviously, there are bugs."
"The area I would like to see improvement in is the ability within the reporter to navigate directly to the content the user is traversing."
"One thing I would like to see differently with their Zero Trust platform is that some of the AI aspects related to high-risk activities have more false positives."
"If they could implement an extra security layer preventing access to iboss from the open internet, it would be great."
"The reporting feature needs improvement."
"The problem our organization had is that iboss failed for the Mac devices; it is not able to give a successful agent for the Mac agents, and that is where in 2025 we had to migrate to the Palo Alto-based platform."
"Segmenting network traffic is very difficult and complicated because putting a firewall across devices is very difficult and nearly impossible."
"Aruba ESP should include more integrations with third-party vendors."
"The cloud setup is straightforward, and the onboarding process is much better, but the on-premises initial setup is slightly complex."
"The only drawback at the moment is that a cloud solution like Prisma Access requires Palo Alto Panorama, which is normally a VM that sits in your data center."
"I would like the solution to support a different type of authentication."
"When it comes to the VPN, it uses the global protect VPN functionality to connect remotely, but it has a feature limitation for assigning multiple IP sub-links to different user groups. It would be much better if we are able to assign the current IP blocks for the sub-links based on the user groups."
"Sometimes, we encountered a portal crash. When we told Palo Alto they said it might be the browser or cache, but I think they need to improve it on their side."
"I would like to see support for custom applications."
"Palo Alto Prisma 10 came out over a year ago. Palo Alto added this identity management feature. The legacy way Palo Alto selected which user is sitting on an IP address it passes through has been clunky."
"My clients would like to see a more feature-rich product."
 

Pricing and Cost Advice

"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"It is expensive compared to one of its competitors."
"The overall pricing for iboss is very competitive and transparent."
"It is probably in line with other solutions, but I do not deal with the financial side."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"Users need to pay a yearly license for three, five, seven, or ten years based on their requirements."
"They price their products using credit modules."
"Prisma SaaS is more expensive than similar solutions but I think it's worth it."
"The solution is expensive."
"In terms of pricing, considering that it is a two or three years old solution, they should apply big discounts for the next two or three years. This approach will be better for them to capture the market."
"It is pretty expensive. We have to balance the cost of some features. They need to work on some of the services and products, price-wise."
"The pricing for this solution is on the higher end."
"It is not cheap. It is expensive. The good thing is that you are able to pay for what you need, but overall, it is not cheap. The pricing is not based on packages. You pay based on the features. If you want DLP, you only pay for DLP. They are very flexible. It is not cheap, but the licensing is flexible. There are no additional costs in addition to the standard licensing fees."
"The price has been good for the ROI during these difficult times for the cruise industry. There are no hidden costs; what the product offers is what you get."
report
Use our free recommendation engine to learn which Secure Access Service Edge (SASE) solutions are best for your needs.
893,221 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Manufacturing Company
9%
Computer Software Company
9%
Construction Company
7%
No data available
Financial Services Firm
12%
Manufacturing Company
11%
Computer Software Company
8%
Healthcare Company
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise7
Large Enterprise8
No data available
By reviewers
Company SizeCount
Small Business24
Midsize Enterprise21
Large Enterprise27
 

Questions from the Community

What needs improvement with iboss?
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent ...
What is your primary use case for iboss?
We used iBoss mainly for Internet Access by having an Agent on Windows laptops Primarily because when we try to use i...
What is your experience regarding pricing and costs for iboss?
I am not involved in pricing, but as per the information I have, during that time, the Blue Coat proxies we were usin...
What needs improvement with Aruba ESP?
The scenario has totally changed after COVID. Earlier, people used to work from office culture, but now it has shifte...
What is your primary use case for Aruba ESP?
I am working for the SASE portfolio as a product manager, so I cannot give any comment on other products. If there ar...
What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure ac...
What do you like most about Prisma Access by Palo Alto Networks?
The most valuable features of the solution are in the areas of the secure remote access it provides while also being ...
What is your experience regarding pricing and costs for Prisma Access by Palo Alto Networks?
From my experience, Palo Alto is more expensive compared to solutions like Netskope and Triscale.
 

Also Known As

iBoss Cloud Platform
No data available
Palo Alto Networks Prisma Access, Prisma Access, GlobalProtect, Palo Alto GlobalProtect Mobile Security Manager, Prisma SaaS by Palo Alto Networks, Prisma Access
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Information Not Available
Concord Hospital, State of Colorado, Essilor International, RheinLand Versicherungsgruppe, University of Westminster, Universidade Nove de Julho, SPAR Austria, CAME Group, ZipRealty, Greenhill & Co., IKT Agder, Aviva Stadium, Animal Logic, Management & Training Corporation, Brigham Young University Hawaii, School District of Chilliwack
Find out what your peers are saying about Aruba ESP vs. Prisma Access by Palo Alto Networks and other solutions. Updated: April 2026.
893,221 professionals have used our research since 2012.