TrustRadius: an HG Insights company

JFrog Artifactory

Score8.3 out of 10

35 Reviews and Ratings

What is JFrog Artifactory?

JFrog Artifactory is a software repository management solution for enterprises available on-premise or from the cloud, presented as a single solution for housing and managing all the artifacts, binaries, packages, files, containers, and components for use throughout the software supply chain. JFrog Artifactory serves as a central hub for DevOps, integrating with tools and processes to improve automation, increase integrity, and incorporate best practices along the way.

The only real option for large enterprises

Use Cases and Deployment Scope

Manages all of our dependencies for all of of our cloud applications. Used for dev, test and production build pipelines.

Pros

  • Very reliable
  • One central place for all artifacts
  • Scales up well

Cons

  • The User UI could be a bit nicer.

Return on Investment

  • In a large company with lots of applications a central repo is critical. Huge timesaver
  • Capable of scaling to a super large number of users which is a must in a large company.
  • Has the features needed for large companies, such as high security and scalability.

Usability

A DevOps Must-Have

Use Cases and Deployment Scope

It is one of the excellent repositories that allow integration with Docker and CLI and can be coupled with repositories like Maven, Yum, etc. This allows streamlined collaboration within the team or across teams, which helps faster deployment.

Pros

  • Range of repository type support
  • Pluggables with XRay which allow scanning with 3rd Party
  • Integration with CI/CD tool is easy

Cons

  • Performance is an issue when a large number of artifacts exist.
  • There is less documentation compared to API artifact support.
  • It needs a search of jar files in the repository.

Most Important Features

  • Easy to manage all kind of repository at a single location
  • Manage to store jar and its version
  • Collaboration with teams on same projects

Return on Investment

  • Product functionality and performance
  • Breadth of services
  • Strong services expertise

Alternatives Considered

Bitbucket and GitLab

Other Software Used

GitLab, Bitbucket

JFrog Artifactoy: A binary repository built for the future

Use Cases and Deployment Scope

JFrog Artifactory is being used as the single binary repository for our entire enterprise. We store everything from application artifacts to Docker images to NPM, Maven, and Python packages as dependencies in [JFrog] Artifactory. It's a mission-critical component of our CICD pipelines.

Pros

  • Stores and Manages build artifacts and packages.
  • Works as container registry as well.
  • Easily manages local and remote repositories along with live replication.

Cons

  • JFrog Artifactory X-Ray isn't mature enough.
  • There should be some built-in backup and restore features.
  • Support responsiveness needs to be improved it takes days to get response.
  • OSS version has very basic features and enterprise one is costly.

Most Important Features

  • Artifact, Package and Helm chart repository hosting.
  • Container image registry.
  • Integration support with build and CI tools.

Return on Investment

  • So many times it happens at the time of dependency resolution some of the servers are down e.g NPM, Maven central, PiPy in that cause our builds starts failing. By proxying these repositories with JFrog this is never happened again.
  • It reduced the additional cost of container image registry and management effort.
  • Support of integration with Build, Monitoring, and CI tools resulted in smooth automation and management.

Alternatives Considered

Sonatype Nexus Platform

JFrog Artifactory is fantastic

Use Cases and Deployment Scope

We are improving container security with artifacts and enabling deployments on AWS. For production deployments with a pipeline augmentation process and check for any known vulnerabilities when releasing the build. We'll use managed docker pipelines to integrate with pipelines to get the benefits of automatically updating new repository models, pushing container images, and extracting artifacts.

Pros

  • Artifact solves the problem of internal packages when there are new dependencies.
  • Package managers like pip for python yarn/npm have become toolkits for mainstream developers.
  • It can be configured as the main and mirror repository source for public packages.

Cons

  • If the website you're trying to access doesn't require authentication, you'll need to whitelist it, which can create performance issues.

Most Important Features

  • Faster download times.
  • Less corporate proxy load.
  • Add protection against known malicious packages.

Return on Investment

  • Support multiplatform driven artifacts.
  • Easy to locate any artifact by name, size and type.

Other Software Used

AWS CodeArtifact, Slack, Docker

Usability

Secure artifact registry management tool for storing and securing containers images

Use Cases and Deployment Scope

JFrog Artifactory has been used in my organization primarily as private artifact registry to manage and store application packages, component dependencies, application libraries, Docker containers and images, and Helm charts. As a business usecase, the product has been integrated in our Azure Devops CI/CD pipeline which means the docker images are scanned and pulled in from the artifact registry before the images gets eventually deployed from the release pipeline to our Kubernetes cluster, in our case its Openshift. The product can easily integrate with our existing technology stack and thereby overcome the complexity of working with different software package management systems, and hence provides consistency to our Cl/CD process.

Pros

  • Artifactory Management acting as a repository manager of docker images, application and component dependencies
  • Automate pipelines and thereby releasing changes faster
  • Supports high availability and scalability with multi site replication

Cons

  • Product support can be improved so that the problem ticket can be addressed quickly
  • Enterprise version is bit costly
  • Retrieving images from artifactory registry sometimes result in a cached image which enforce our CI pipeline to rebuild the entire image for the latest changes to reflect

Most Important Features

  • They are highly available and scalable with multi site replication
  • Its one of the best to be used as a private container image registry
  • It has its own JFrog pipelines which has a full integration and support to provide an end to end CI-CD pipeline

Return on Investment

  • It has its own mature private registry which not only provides an artificatory management product but also all images are securely scanned along with container security
  • It has a integration of its own jfrog pipelines so that it can seamlessly work with the existing technology stack
  • It has also very good integration and support with various CI, build and monitoring tools

Alternatives Considered

JFrog Pipelines (formerly Shippable) and JFrog Xray

Other Software Used

GitHub, Jenkins, Azure DevOps Services (formerly VSTS)