A senior technical consultant at a Cisco Gold Partner shares how organizations use Cisco Identity Services Engine (ISE) to gain visibility into connected devices and enforce network access control across enterprise environments.
In this practitioner review, the consultant explains how many organizations adopt Cisco ISE to implement 802.1X authentication for both wired and wireless networks, along with features such as device posture checks, guest access, and device administration. One of the most valuable capabilities is the ability to see exactly which devices are connected to the network and control access through dynamic policies.
The reviewer also discusses how Cisco ISE provides more advanced policy control and visibility than traditional RADIUS-based solutions such as Microsoft NPS, while offering a more intuitive configuration experience compared with alternatives like ClearPass.
Read the full written review here:
https://www.peerspot.com/product_revi...
https://www.peerspot.com
“The review is not subject to editing or approval by the vendor.”
Transcript Summary
Darren Hill is a senior technical consultant working in professional services for a Cisco Gold Partner. Over the past decade, he has worked with Cisco Identity Services Engine (ISE) across a wide range of customer environments, including small deployments and large enterprise upgrades.
According to the reviewer, organizations commonly deploy Cisco ISE to implement network access control using technologies such as 802.1X authentication for wired and wireless networks, MAC authentication bypass (MAB), device posture checks, and guest access management. These capabilities allow organizations to identify devices on the network and enforce security policies before granting access.
One of the most valuable aspects of Cisco ISE is network visibility. Many organizations initially lack a NAC solution, making it difficult to understand what devices are connected to their networks. Cisco ISE provides detailed operational and live logs that allow administrators to quickly identify devices and block suspicious activity with a single action.
Compared with alternatives such as Microsoft NPS and Aruba ClearPass, the reviewer notes that Cisco ISE offers more advanced policy capabilities, stronger visibility, and a more intuitive management experience.
Deployment complexity varies depending on the features being implemented. Basic use cases such as device administration or wired authentication can be straightforward, while more advanced capabilities like posture checks, profiling, and guest access introduce additional complexity.
The platform is commonly deployed as virtual appliances on-premises, although the reviewer is seeing increasing interest from customers in cloud deployments such as Microsoft Azure. Overall, the product is considered stable and scalable, with many organizations running clustered deployments to support larger environments.
The reviewer rates Cisco ISE approximately nine out of ten, citing upgrade and licensing complexity as the primary areas that could be improved.