No more typing reviews! Try our Samantha, our new voice AI agent.

Arbor DDoS vs Check Point DDoS Protector comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 5, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Arbor DDoS
Ranking in Distributed Denial-of-Service (DDoS) Protection
3rd
Average Rating
8.8
Reviews Sentiment
6.9
Number of Reviews
57
Ranking in other categories
No ranking in other categories
Check Point DDoS Protector
Ranking in Distributed Denial-of-Service (DDoS) Protection
19th
Average Rating
8.0
Reviews Sentiment
7.0
Number of Reviews
11
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of August 2026, in the Distributed Denial-of-Service (DDoS) Protection category, the mindshare of Arbor DDoS is 6.1%, down from 12.1% compared to the previous year. The mindshare of Check Point DDoS Protector is 1.1%, up from 1.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Distributed Denial-of-Service (DDoS) Protection Mindshare Distribution
ProductMindshare (%)
Arbor DDoS6.1%
Check Point DDoS Protector1.1%
Other92.8%
Distributed Denial-of-Service (DDoS) Protection
 

Featured Reviews

reviewer1331304 - PeerSpot reviewer
Director Of Research And Development at a comms service provider with 11-50 employees
Automated threat intelligence and flow-based mitigation have improved our DDoS defense
A very useful feature in Arbor DDoS is its ability to send flow spec announcements to routers. For example, if it is clear that a Layer 3 or Layer 4 attack is occurring and the attack pattern is identified through source and destination IP addresses and ports, you can generate flow spec filters. These filters are transferred through BGP to border routers, which automatically build filters, mitigating the attack even at the network's boundary and preventing it from reaching the TMS. This allows the TMS to focus on other tasks. This is a highly effective feature that can mitigate huge volumetric attacks; for example, we experienced a 32-gigabit attack, and all those 32 gigabits were dropped by our border routers, not by Arbor DDoS itself. The flow spec announcement was generated by Arbor DDoS, and as far as I know, the same technology is used by Radware, but it comes under a different feature and a different license. At the time, we were told that flow spec mitigation was an additional very expensive license to purchase from Radware, while Radware included everything in one package.
reviewer2753559 - PeerSpot reviewer
Cyber Security Solution Engineer at a computer software company with 201-500 employees
Ensures service availability and handles attacks effectively though initial setup needs expertise
The best features that Check Point DDoS Protector offers, which stand out to me the most, are real-time detection and mitigation of application-layer DDoS attacks, easy integration with the existing Check Point security infrastructure, and low latency protection that does not disrupt legitimate traffic. The centralized console makes it easy to manage policy across devices, and the integration is straightforward since it works seamlessly with Check Point firewall and management and other security products. Check Point DDoS Protector has positively impacted my organization by improving uptime, reducing incidents, and providing cost savings. It will reduce the incidents up to 30%.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It's very flexible and we can easily deploy it to our network. It's very user-friendly. We can do everything via the web interface and troubleshoot easily from the CLI. It's not complicated."
"The most valuable feature is mitigation, which can blackhole the IP."
"It provides packet capture and we can block or whitelist whichever IPs we need to. Whatever traffic we want to block - and we get IPs from internal teams and from national teams - we block at the Arbor level only, because if it gets to the firewall then firewall bandwidth will be taken."
"Inside this product, there are many different configurations for protection, and we have one of the best experiences with it, specifically with the Atlas product."
"The auto-mitigation, that signaling feature, where it automatically raises an alarm that a line is under attack, is important. The upstream service provider will then do something to reduce the load on our internet lines. The fact that it's automated means I don't have to sit and always be looking at threats coming through. It does it almost automatically, without any intervention by me."
"In the GUI, the packet capture is a very good option, as is the option to block an IP address."
"It improves our organization by preventing attacks and improving the availability of the network on services, which provides a better service to customers."
"In terms of Arbor DDoS's reporting and analytics, Arbor DDoS is superior to Radware, especially when comparing it to the Radware model which I used previously."
"Check Point DDoS Protector has positively impacted my organization by improving uptime, reducing incidents, and providing cost savings."
"Now, all the ISP lines are protected and we can switch the users back and forth between them with the same level of security."
"This product uses auto-learning and behavioral analysis to establish baselines for legitimate traffic, and automatically detects and blocks traffic behavior that does not conform."
"It uses several layers of security."
"We found that Check Point was able to provide us superior capabilities and features on the basis we were evaluating."
"Currently, we have fewer incidents with viruses. We improved our IQ operations and security using this solution. Our company's better after using Check Point."
"As our business continues to grow, we can grow this product simultaneously."
"Check Point detects and automatically mitigates attacks, which helps our organization protect our infrastructure."
 

Cons

"I would also like more visibility into their bad actor feeds, their fingerprint feeds. We try to be good stewards of the internet, so if there are attacks, or bad actors within our networks, if there were an easier way for us to find them, we could stop them from doing their malicious activity, and at the same time save money."
"On the application layer, they could have a better distributed traffic flow. They could improve that a bit. For network data it is very effective, but the application layer can be improved."
"I think the diversity of protection is extremely limited. It must be expanded in future upgrades and versions."
"An improvement would be to provide information on how pricing is done on different customer levels (e.g. is it done per gig or bandwidth?)."
"The solution's shortcomings are related to its documentation, so it's an area that needs to improve."
"On the main page there are alerts that we are unable to clear, even though the issue has been resolved."
"With Arbor DDoS, its integration issues with other technologies or other vendors' technologies is an area of concern that could be improved."
"There are some price issues with scalability, but technically speaking, the solution is fully scalable."
"Monitoring and reporting are the things that can be introduced in the future."
"It does not provide the capability to upload data for blacklisting/whitelisting in bulk."
"Check Point DDoS Protector does not provide the ability to upload data for the blacklist/whitelist in bulk, which is one of the big points that need to be improved to facilitate configurations."
"The product is expensive."
"Currently, two of the things that I would like would be applications for Android and IOS where we can follow the events, and, if necessary, make changes."
"The public documentation is a detail that must be improved in order to have greater implementations with the best practices in this case of the Check Point manufacturer."
"The solution should greatly improve its interface."
"The mitigation part could be improved."
 

Pricing and Cost Advice

"It is an expensive product. I use this product for its different features."
"The solution's pricing is based on a licensing model that is expensive when compared to other tools."
"I'm a technical guy. But I know it's expensive compared to its competitors. After you have the on-premise solution, for your solution to be effective you have to subscribe to an "upper level," so there's another cost. There is also a subscription to cloud services, which is another cost."
"As far as I know, they are the best in this sector, in DDoS protection. They know it, I know, because their service prices are too high. They provide cloud DDoS protection for ISPs, but that is also too expensive."
"I believe that the price of Arbor DDoS falls under the bracket of medium to high price."
"We do not use the Arbor Cloud DDoS solution because it is too costly."
"Arbor's products are very expensive. Their competitors are cheap when compared with Arbor."
"The solution is a bit costly if you're a small organization, but I think it's worth the price that they are charging."
"I don't deal with the pricing, but it seems that you need to get basic support in order to upgrade the DDoS database for new attacks and so on."
"It's an expensive solution. It's one of the most expensive solutions in the world. It's cheaper than Palo Alto and Cisco but these are expensive solutions. Fortinet is cheaper."
"The appliance comes with a loaded hardware license, and additional options such as SSL can be purchased and enabled."
report
Use our free recommendation engine to learn which Distributed Denial-of-Service (DDoS) Protection solutions are best for your needs.
911,436 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
15%
Comms Service Provider
13%
Outsourcing Company
8%
Manufacturing Company
7%
Comms Service Provider
34%
Construction Company
9%
Financial Services Firm
6%
Educational Organization
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business26
Midsize Enterprise14
Large Enterprise29
By reviewers
Company SizeCount
Small Business12
Midsize Enterprise2
Large Enterprise5
 

Questions from the Community

Which is the best DDoS protection solution for a big ISP for monitoring and mitigating?
I would say if it’s an ISP that will build a scrubbing center, Netscout/Arbor is a good solution. In all other solutions, Imperva is a great choice.
Which is the best DDoS protection solution for a big ISP for monitoring and mitigating?
Arbor would be the best bid, apart from Arbor, Palo Alto and Fortinet have good solutions. As this is an ISP, I would prefer Arbor.
What is your experience regarding pricing and costs for Arbor DDoS?
The prices for Arbor DDoS are expensive. The licensing is subscription-based. From our sales department, they discuss that prices are very high.
What is your experience regarding pricing and costs for Check Point DDoS Protector?
My experience with pricing, setup cost, and licensing is that it is straightforward with no challenges.
What needs improvement with Check Point DDoS Protector?
Check Point DDoS Protector can be improved in that initial fine-tuning of policies can be complex and may require expertise. Additionally, reporting and analytics could be more detailed and customi...
What is your primary use case for Check Point DDoS Protector?
My main use case for Check Point DDoS Protector is to protect our network perimeter against DDoS attacks, ensuring service availability and application layer attack in real time. I can give you a s...
 

Also Known As

Arbor Networks SP, Arbor Networks TMS, Arbor Cloud for ENT
No data available
 

Overview

 

Sample Customers

Xtel Communications
Boston Properties
Find out what your peers are saying about Arbor DDoS vs. Check Point DDoS Protector and other solutions. Updated: August 2026.
911,436 professionals have used our research since 2012.