Compare VMware NSX-T to Illumio ASP

Distributed infrastructure, visibility constraints, and policy creation complexity can all impact the effectiveness of a segmentation solution. VMware NSX-T provides many capabilities, including network segmentation, a distributed firewall, load balancing, and cloud access. But if you are looking for a scalable micro-segmentation solution that is easy to manage across the data center, cloud, and containers, you hit certain limitations.

Capabilities

Capabilities

Illumio ASP

VMware NSX-T

VISIBILITY

Auto-generated application dependency map

+
-

Auto-generated application dependency map for >100 workloads

+
x

Auto-generated application dependency map for managed cloud workloads

+
x

Auto-generated application dependency map for bare-metal and KVM workloads

+
x

Auto-generated vulnerability map

+
x

MICRO-SEGMENTATION

Whitelist “Zero Trust” policy model

+
+

Automatic policy generation

+
-

Automatic policy generation for cloud, bare-metal, and KVM workloads

+
x

Automatic policy generation for 1000s of workloads

+
x

Support for bare-metal servers

+
-

Managed workload support for AWS, Azure, GCP, Oracle Cloud

+
x

Mainstream OS support on hypervisors (Windows, Linux)

+
+

Encryption for data in motion between workloads

+
x

MANAGEMENT

Federation of management to support up 225k workloads

+
x

App-based SIEM integration

+
x

Integration of vulnerability data to provide vulnerability-based segmentation

+
x

Try Illumio Edge

Try Illumio ASP