AppGate SDP (software-defined perimeter) from Cyxtera Technologies headquartered in Addison is a zero trust network security product.
N/A
Palo Alto Networks Prisma Access
Score 8.9 out of 10
N/A
GlobalProtect™
delivers the protection of next-generation security platform to the mobile
workforce in order to stop targeted cyberattacks, evasive application
traffic, phishing, malicious websites, command-and-control traffic, and known
and unknown threats.
I would recommend AppGate SDP to anyone that has fairly clear cut use cases for systems with user access with less than 5K resources per user. We found it works well in those cases and fully as advertised. The application can easily hide applications and resources from unauthorized access and is a reliable tool in your ZeroTrust arsenal.
Depending on the complexity of your equipment, devices, the network you are with, the size of your company, or the budget you are willing to pay, you should consider buying Prisma. I have in mind that it is a tool to make the leap to extra security for your devices; it is a complex tool that cannot be learned in a single day. Without a doubt, I would recommend her to a company that has a proven track record and knows what it wants.
Live logging in the client. Currently you have to "download" the logs into a zip file and then open that zipfile to look at the logs. There's no logfile to tail or watch.
Load balancing between controllers could be better. Currently relies on round robin DNS and sometimes a browser will pick a different IP than previous and you'll get a big "LOST CONNECTION TO CONTROLLER" message.
It has created another area for us to manage some of the internet traffic for our users. Sites being open on-site and not on remote access or vice versa.
In general, the certificates are easier to handle than while on Cisco solution, it is still a pain to get the remote device a cert in place if it has "broken."
We would like to lock in the ability of which gateway we use to connect to the network. While it's not been an issue for us we have seen some oddness when using a different gateway than the preferred one.
I still say that Palo Alto Networks Prisma Access is the best. I love their GUI, their policies are easy to manage, the sales team is VERY helpful (especially when support is not). I still recommend them to everyone I talk to.
The company has been supportive overall of our needs and desired features. I have not personally called the support services, but I've heard no direct complaints either.
The existing system was FortiGate. The management of the system was a hassle. Because IT personnel had to manually create VPN accounts, user passwords were known to who created them and the end user did not have a way to change them. This created a security issue in the event an IT engineer left the company.
Palo Alto Networks Prisma Access is better than all the choices we looked at. With our in-house knowledge, ease of use, and Palo track record for innovating and having excellent security, it was a no-brainer to go with Palo Alto Networks Prisma Access. That being said, watch out for Cato.
It freed up IT personnel time. No longer did they have to manually create the account on the VPN endpoint and manually install the client or create VPN profiles on the employees computer.