The Cisco Crosswork Cloud Trust Insight module is a cloud service that provides operational intelligence on integrity and security posture of Cisco IOS XR devices. The service brings together Cisco Knowledge and Trust Anchor technologies combined with customer devices to provide a holistic view of the trustworthy status of their network assets.
Cisco Crosswork Trust Insights is a software-as-a-service solution that provides intuitive visualization, rich analytics, and alerts on actionable device integrity events. It empowers you with visibility to help assess the integrity and affirm trust in your network routing infrastructure. It aggregates hardware and software signature information from your network devices and gathers evidence to validate if the hardware is authentic and running software maps to published Known Good Values (KGVs). The service enables you to take maximum advantage of the trustworthy technologies baked into the Cisco platforms and implement operational best practices to collect and validate changes in system integrity information.
Crosswork Trust Insights offers an IOS XR network device monitoring solution for complex enterprise and service provider networks. The solution supports IOS XR software and hardware systems. The Crosswork Trust Insights solution captures, enriches, and analyzes trustworthy network equipment status to help service providers, web companies, and enterprises to validate the integrity of their network infrastructure assets. A trustworthy network is one that continues to ensure performance, reduce management costs, gain deep visibility, and reduce downtime caused by malicious or non compliant changes.
Prepaid devices quantities are for a fixed contract rate, if more devices are used, then a post paid quantity will be billed at the related price band, based on the average monthly devices configured
If you use 30 Devices and prepay 20, you will be billed for the additional 10 devices at the post paid device rate, per month for all additional devices.
Highlights
Crosswork Cloud Trust Insights is Ciscos first cloud-based service that presents continuous and verifiable network device integrity information.
Cisco is committed to continually enhance the security and resilience of our networking solutions. Trust Insights uniquely leverages the built-in trust technologies.
Trust Insights delivers the critical consumer experience component as part of the Cisco Trust Anchor technology evolution.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on the duration and terms of your contract with the vendor, and additional usage. You pay upfront or in installments according to your contract terms with the vendor. This entitles you to a specified quantity of use for the contract duration. Usage-based pricing is in effect for overages or additional usage not covered in the contract. These charges are applied on top of the contract price. If you choose not to renew or replace your contract before the contract end date, access to your entitlements will expire.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
You pay per device you monitor. Both dimensions charge by the individual IOS XR router placed under management. The Postpaid Per Device Unit Price bills you after usage, so your cost tracks the devices you actually configure. The Essentials Tier uses a prepaid Per Device Unit Price, where you commit and pay for device capacity ahead of the term. Both scale directly with device count, so adding routers raises your total. Choose the billing timing that fits your budgeting: pay after use, or pay up front.
Top-of-mind questions for buyers
What counts as one device for billing under both pricing dimensions?
One device is a single Cisco IOS XR router placed under management. Each router you configure for monitoring counts as one device unit. The service aggregates hardware and software signatures from each router. Adding another router adds one more billable device to your total.
What happens to my bill if I add more routers mid-term?
Cost scales directly with device count. Adding routers raises your total, since both dimensions charge per configured device. The service lets you add capacity or term as needed. Under postpaid billing, new devices show up on later invoices. Under prepaid, you commit to device capacity ahead of the term.
Is the on-premises data collector an extra charge on top of per-device pricing?
No. The Crosswork Data Gateway software is included in your application cost. You deploy it as a virtual machine to securely collect integrity measurements from your on-premises IOS XR devices. It is fully cloud managed and needs no ongoing maintenance. It cannot be used for other on-premises Crosswork applications.
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
The Cisco Crosswork Cloud Traffic Analysis™ platform addresses Traffic Analysis, Peering Prospecting, and Peering Engineering challenges by providing a comprehensive network view and analysis of traffic at network peering boundaries designed to visualize and optimize traffic flows.
Intelligent automation has transformed traffic management and now cuts migration windows in half
Reviewed on Sep 23, 2026
Review provided by PeerSpot
What is our primary use case?
I use Cisco Crosswork Network Automation for closed-loop network automation, mass configuration deployment, and real-time telemetry to manage traffic optimization during large-scale network consolidations. This is from one of the major post-merger integrations that I was involved with, where I used Cisco Crosswork Network Automation's optimization engine and telemetry to dynamically steer traffic from congested links before decommissioning duplicated sites. By automating segment routing policies based on real-time latency and bandwidth thresholds, I was able to cut over maintenance windows by roughly half, with zero packet loss or subscriber disruption.
How has it helped my organization?
Cisco Crosswork Network Automation has structurally lowered my organization's OPEX by basically eliminating manual traffic re-routing tasks, and has reduced maintenance windows roughly by half. It has also preserved enterprise SLAs and protected revenue during complex network migrations because it can handle traffic congestion automatically.
I saw an estimated 25% reduction in recurring network operations OPEX by automating routine traffic tasks. Change windows that used to take four to six hours per maintenance event were compressed to 90 minutes roughly, with zero manual intervention or rollbacks.
What is most valuable?
I think the standout capability of Cisco Crosswork Network Automation is the closed-loop remediation that it offers, which shifts operations from reactive firefighting mode to proactive traffic management. The only initial learning curve is the initial multi-vendor API connection, but once established, I think it scales effortlessly as you add more operations to the product.
The best features Cisco Crosswork Network Automation offers are the optimization engine for dynamic segment routing and the real-time path calculations, which stand out the most for me. If you combine it with model-driven telemetry, it provides you granular visibility that basically helps you prevent congestion before it impacts service and customer experience.
Cisco Crosswork Network Automation replaces manual routing adjustments by automatically recalculating and re-routing segment paths the moment latency spikes or link saturations occur. In my daily workflow, this reduces routine traffic engineering tickets by roughly 60 to 70%, frees up my operations team from firefighting, and allows them to focus purely on strategic capacity planning, customer retention, acquisition, and churn reduction tasks.
My final thoughts on the features would be the zero-touch provisioning and change management automation, which are quite critical for my organization as they let you push mass configuration updates across thousands of nodes within minutes. You can also add automated pre- and post-validation checks, which basically eliminates human error during change windows, and that can be very costly.
What needs improvement?
I think the biggest improvement needed for Cisco Crosswork Network Automation is its multi-vendor support, which needs to be more robust. Ingesting telemetry and deploying policies across third-party gear still requires heavy custom API development, so lowering the initial cluster deployment complexity and flattening the learning curve for non-Cisco gear would significantly accelerate time to value.
I think the technical documentation for Cisco Crosswork Network Automation is pretty solid, especially for greenfield Cisco environments. However, troubleshooting multi-vendor API issues requires senior Cisco TAC involvement, so if they provide more plug-and-play SDK templates and clear integration patterns for non-Cisco equipment, that would make third-party deployments much smoother.
For how long have I used the solution?
I have been using Cisco Crosswork Network Automation for three to four years across large-scale service provider transformations and network consolidation programs.
What do I think about the stability of the solution?
The accuracy is very high for the traffic anomaly detection and path computation parts because it grounds its response and reasoning in real-time telemetry and deterministic versus probabilistic network topologies. I would say reliability is rock solid since the recommendations need to be validated against defined policy thresholds before any action can be taken, which eliminates any false positives in production routing.
What do I think about the scalability of the solution?
I think the scalability of Cisco Crosswork Network Automation is rock solid. You can push out configuration changes and pre- and post-health checks to thousands of nodes within minutes, and I have used it in live deployments in excess of 50,000 sites many times.
How are customer service and support?
I think the TAC solution support for Cisco Crosswork Network Automation is quite responsive and highly knowledgeable on the core feature. However, solving complex custom integrations and third-party APIs can require escalations as it usually becomes a blame game between different parties and takes time to resolve at whose end the problem actually lies. Overall, the support is quite dependable.
Which solution did I use previously and why did I switch?
I relied on legacy Cisco Network Services Orchestrator combined with custom Python and Ansible scripts before using Cisco Crosswork Network Automation. I switched because NSO alone lacked real-time closed-loop remediation, and the switch made proactive traffic steering possible, which simply would not have been feasible during those rapid network consolidations.
How was the initial setup?
I evaluated Juniper's Paragon Automation product, Nokia Network Services Platform, and Ericsson's Cloud Automation Platform before choosing Cisco Crosswork Network Automation, which I selected primarily due to its superior integration with my existing routing architecture and its end-to-end telemetry pipeline.
What was our ROI?
I have already mentioned that it has delivered real ROI in terms of man-hours saved and OPEX reduction, and helped me strategize better in some of those complex network consolidation projects that I do. However, I would deduct two points because most of my clients have multi-vendor environments, and if that integration with third-party vendors were smoother, I would happily add the two points that I took out.
What other advice do I have?
I would say that when looking into using Cisco Crosswork Network Automation, start with focused use cases like telemetry and visibility before turning on closed-loop automation. Additionally, audit your multi-vendor environment early so you can budget time for custom API integration.
Cisco Crosswork Network Automation is a dependable and high-performing platform for large-scale transport network automation, and when paired with the right operation discipline, you do see the ROI on that. My overall review rating for this product is 8 out of 10.
Mahamane Dian Djiteye
Automation has streamlined lifecycle workflows and delivers faster anomaly detection
Reviewed on Sep 19, 2026
Review provided by PeerSpot
What is our primary use case?
My main use case for Cisco Crosswork Network Automation is network lifecycle automation, real-time telemetry collection, and configuration change and orchestration.
I have an outstanding capability to process massive volumes of streaming telemetry via Cisco Crosswork Network Automation and gain insight to detect network anomalies significantly faster than traditional SNMP polling.
Multi-vendor capability while optimized for Cisco hardware, it interfaces smoothly with third-party devices using the OpenYANG model and standard API, and that covers my main use case.
What is most valuable?
The best features Cisco Crosswork Network Automation offers include more pre-built automation templates to accelerate time to value without requiring custom development from scratch.
The user interface streamlines navigation between module health, health insights, change automation, and optimization to make the user experience more seamless, which stands out for me.
Cisco Crosswork Network Automation positively impacts my organization by simplifying deployment complexity, providing stable scalability, and managing thousands of network devices without performance bottlenecks.
The positive outcomes from Cisco Crosswork Network Automation include distributed collection with lightweight virtual collection deployed to add devices to the main platform and reduce latency, and I gain significant time for fast deployment.
What needs improvement?
Cisco Crosswork Network Automation needs improved API documentation, an expense integration guide, and code samples to simplify custom script development for DevOps and NetOps teams.
I would like to see more templates and an improved user interface, as well as enhancements in network lifecycle automation and real-time streaming telemetry.
There are other improvements needed for Cisco Crosswork Network Automation, particularly for the on-premise system.
For how long have I used the solution?
I have been using Cisco Crosswork Network Automation for two years.
What other advice do I have?
My advice to others looking into using Cisco Crosswork Network Automation is that I have provided a lot of information about Cisco Crosswork Network Automation, and currently, it is a perfect technology that builds high availability, automation, and accelerates time to deployment for network security.
Regarding Cisco Crosswork Network Automation's AI capabilities, I think it has good governance of security, though Cisco automation can improve its AI technology.
It has good governance of security when it comes to the accuracy and reliability of output in Cisco Crosswork Network Automation.
I found this interview valuable as it provides more information on Cisco Crosswork Network Automation for people who are unfamiliar with it. I would rate this review an 8 out of 10.
Shreyans P.
Cisco Zero Trust Network provides the most secure access and is great against network attacks
Reviewed on Aug 27, 2021
Review provided by G2
What do you like best about the product?
What I love most about Cisco's Zero Trust Network is the ability to provide users with the ability to safely and securely correlate their networks across the organization. The Cisco Zero Trust Approach also provides access control and eliminates trust in the overall network, which leads to seamless security provisions and protocols. This means comprehensive security for the company's numerous devices and users. It can restrict access from non-compliant devices. It relies on the comprehensive monitoring of every attempt to access a network rather than assuming that somebody can trust their devices entirely. All applications and layers of the technology stack should definitely be secured, and Cisco ZTN allows us to issue access on a per-connection basis. This level of specificity is amazing to have in an organization.
What do you dislike about the product?
Cisco Zero Trust Networking can continue to be improved by managing additional use cases, including further unified endpoint management with mobile access. Cisco can also improve its comprehensive network and application monitoring solution integrations to continuously assess and manage risk and trust and ensure that the right security posture is maintained. You can utilize granular user segmentation by using Cisco's Zero Trust Network, which limits universal access to networks, programs, devices and software programs to only the employees who need that specific access. This protocol helps to minimize risks within the organization.
What problems is the product solving and how is that benefiting you?
We use Cisco ZTN to fully protect a company's network, infrastructure, applications, and security in hybrid cloud environments. With the broad coverage of Cisco's ZTN, the organization has very expansive coverage across thousands of global users across our organization. Prior to utilizing Cisco Zero Trust network, we did experience the challenge of blocking attacks originating from inside our network. Cisco ZTN eliminates the unauthorized access to data and services and makes the access control enforcement systems very fine-tuned.
Recommendations to others considering the product:
The Cisco Zero Trust network is easy to set up and offers robust role-based access control management and the right access to the appropriate resources and connections.