Had no heard of that product but after reading it it sounds like a shiny overlay on wpa2 enterprise with radius. We just pulled out a zd 1100 after three years of intermittent reliability (thanks SNUP 'experts' ) and replaced it with a local (if ram hogging)
ruckus smart zone essentials with a shelf life longer than your average organic yougart - or ZD controller - and it works very well, being a vm on decent hardware it works way better and gives way more information about everything that it does, as there is
no hardware component it is cheaper and you can have multiple zones with different firmware versions if a poorly planed, executed and supported Snup leaves you with a bunch of old WAPs.
Migration is a pain involving manually doing all the firmware upgrades if you are lucky enough to have a no longer supported zd1100 but the end result should at least last more than a couple of years like the last 'upgrade'.
Wandering back to the topic, wpa2 enterprise with radius works very well with most remotely modern devices and let's you use user creds to authenticate. Also works great when coupled with an intelligent filtering platform like Linewize that can ID users based
on that login. SSO is great when it works.