No more typing reviews! Try our Samantha, our new voice AI agent.

Arbor DDoS vs Check Point DDoS Protector comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 5, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Arbor DDoS
Ranking in Distributed Denial-of-Service (DDoS) Protection
3rd
Average Rating
8.8
Reviews Sentiment
6.9
Number of Reviews
57
Ranking in other categories
No ranking in other categories
Check Point DDoS Protector
Ranking in Distributed Denial-of-Service (DDoS) Protection
22nd
Average Rating
8.0
Reviews Sentiment
7.0
Number of Reviews
11
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of September 2026, in the Distributed Denial-of-Service (DDoS) Protection category, the mindshare of Arbor DDoS is 5.7%, down from 11.7% compared to the previous year. The mindshare of Check Point DDoS Protector is 1.2%, up from 1.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Distributed Denial-of-Service (DDoS) Protection Mindshare Distribution
ProductMindshare (%)
Arbor DDoS5.7%
Check Point DDoS Protector1.2%
Other93.1%
Distributed Denial-of-Service (DDoS) Protection
 

Featured Reviews

reviewer1331304 - PeerSpot reviewer
Director Of Research And Development at a comms service provider with 11-50 employees
Automated threat intelligence and flow-based mitigation have improved our DDoS defense
A very useful feature in Arbor DDoS is its ability to send flow spec announcements to routers. For example, if it is clear that a Layer 3 or Layer 4 attack is occurring and the attack pattern is identified through source and destination IP addresses and ports, you can generate flow spec filters. These filters are transferred through BGP to border routers, which automatically build filters, mitigating the attack even at the network's boundary and preventing it from reaching the TMS. This allows the TMS to focus on other tasks. This is a highly effective feature that can mitigate huge volumetric attacks; for example, we experienced a 32-gigabit attack, and all those 32 gigabits were dropped by our border routers, not by Arbor DDoS itself. The flow spec announcement was generated by Arbor DDoS, and as far as I know, the same technology is used by Radware, but it comes under a different feature and a different license. At the time, we were told that flow spec mitigation was an additional very expensive license to purchase from Radware, while Radware included everything in one package.
reviewer2753559 - PeerSpot reviewer
Cyber Security Solution Engineer at a computer software company with 201-500 employees
Ensures service availability and handles attacks effectively though initial setup needs expertise
The best features that Check Point DDoS Protector offers, which stand out to me the most, are real-time detection and mitigation of application-layer DDoS attacks, easy integration with the existing Check Point security infrastructure, and low latency protection that does not disrupt legitimate traffic. The centralized console makes it easy to manage policy across devices, and the integration is straightforward since it works seamlessly with Check Point firewall and management and other security products. Check Point DDoS Protector has positively impacted my organization by improving uptime, reducing incidents, and providing cost savings. It will reduce the incidents up to 30%.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The Arbor Networks SP device provided great visualization of the network traffic."
"We have gained from this product, and our customers are also satisfied with this solution."
"Arbor DDoS is easy to use, provides effective blocking of DDoS attacks, and can be used for DNS, web, and main servers. Additionally, this solution is far easier to operate than others solutions, such as Fortinet DDoS."
"It prevents all unwanted or malicious traffic, using the Threat Intelligence feeds."
"Overall, it's a great product."
"Analytics and its attack mitigation capabilities are valuable features of the solution."
"Arbor DDoS helps consolidate visibility on traffic and on DDOS attacks attempts, can perform direct mitigation action on the network, and has helped us achieve our network and application uptime goals."
"The solution looks into volumetric attacks and gets them resolved."
"This product uses auto-learning and behavioral analysis to establish baselines for legitimate traffic, and automatically detects and blocks traffic behavior that does not conform."
"Currently, we have fewer incidents with viruses. We improved our IQ operations and security using this solution. Our company's better after using Check Point."
"Check Point is one of the solutions that give us the most value, and they are constantly innovating."
"This solution has improved our internet security and external security; Check Point is a good product that has improved a lot of security rules, resulting in fewer security incidents and fewer viruses while improving our operations and overall security."
"Check Point detects and automatically mitigates attacks, which helps our organization protect our infrastructure."
"We found that Check Point was able to provide us superior capabilities and features on the basis we were evaluating."
"The is a really low level of the false-positive alerts (when the clean traffic is marked as DDoS) due to some advanced techniques used by Check Point under the hood."
"As our business continues to grow, we can grow this product simultaneously."
 

Cons

"Auto mitigation is a feature provided when DDoS is observed on any of link/customer (configured under auto mitigation). It automatically starts mitigation with default filters; in default filter mode, there could be an impact on the customer’s link, e.g., if we have enabled monitoring of internal traffic for that link/customer, it starts mitigation on legitimate traffic."
"There is some room for AI to take place."
"I have observed that the SNMP traps aspect that sends information to third-party solutions needs improvement."
"The support got worse after NETSCOUT acquired Arbor."
"As long as you don't touch it, it's very stable. But if you try to configure new features or some new deployment, sometimes that can be a problem."
"Their RESTful API is still a work-in-progress."
"Unfortunately, these devices are not scalable and we have to upgrade to the next model in order to increase the threat mitigation capabilities."
"They should improve the reporting section and make it a little bit more detailed. I would like to have much better and more detailed reports."
"The product is expensive."
"Check Point should develop a DDoS solution because they don't have one and we need to use another solution, in our case, Imperva. This is a problem because we need to have two firewalls. We would like to only have one solution because it would improve the management, we would have fewer incidents, and we wouldn't need to talk to more than one person for support."
"For a long time, there was no software version of R80.10 available for the Check Point DDoS Protector software appliances, and we had to stay on the quite outdated R77.30 version."
"The solution should greatly improve its interface."
"Check Point DDoS Protector does not provide the ability to upload data for the blacklist/whitelist in bulk, which is one of the big points that need to be improved to facilitate configurations."
"The public documentation is a detail that must be improved in order to have greater implementations with the best practices in this case of the Check Point manufacturer."
"Check Point DDoS Protector can be improved in that initial fine-tuning of policies can be complex and may require expertise."
"Monitoring and reporting are the things that can be introduced in the future."
 

Pricing and Cost Advice

"The price of Arbor DDoS depends on many parameters. It depends on the physical capacity of the environment, and it is not a straight-line price. It's fairly competitive in the market on the price."
"Start with a small license. Measure your bandwidth requirements."
"As far as I know, they are the best in this sector, in DDoS protection. They know it, I know, because their service prices are too high. They provide cloud DDoS protection for ISPs, but that is also too expensive."
"It is an expensive product. I use this product for its different features."
"The solution's pricing is based on a licensing model that is expensive when compared to other tools."
"I don't know about the pricing details as our company's service provider offers us the solution as an inbuilt feature within the internet bandwidth they provide us."
"Pricing is slightly on the higher side."
"Arbor's products are very expensive. Their competitors are cheap when compared with Arbor."
"It's an expensive solution. It's one of the most expensive solutions in the world. It's cheaper than Palo Alto and Cisco but these are expensive solutions. Fortinet is cheaper."
"The appliance comes with a loaded hardware license, and additional options such as SSL can be purchased and enabled."
"I don't deal with the pricing, but it seems that you need to get basic support in order to upgrade the DDoS database for new attacks and so on."
report
Use our free recommendation engine to learn which Distributed Denial-of-Service (DDoS) Protection solutions are best for your needs.
912,788 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
15%
Comms Service Provider
12%
Outsourcing Company
10%
Manufacturing Company
6%
Comms Service Provider
34%
Construction Company
10%
Financial Services Firm
6%
Manufacturing Company
4%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business26
Midsize Enterprise14
Large Enterprise29
By reviewers
Company SizeCount
Small Business12
Midsize Enterprise2
Large Enterprise5
 

Questions from the Community

Which is the best DDoS protection solution for a big ISP for monitoring and mitigating?
I would say if it’s an ISP that will build a scrubbing center, Netscout/Arbor is a good solution. In all other solutions, Imperva is a great choice.
Which is the best DDoS protection solution for a big ISP for monitoring and mitigating?
Arbor would be the best bid, apart from Arbor, Palo Alto and Fortinet have good solutions. As this is an ISP, I would prefer Arbor.
What is your experience regarding pricing and costs for Arbor DDoS?
The prices for Arbor DDoS are expensive. The licensing is subscription-based. From our sales department, they discuss that prices are very high.
What is your experience regarding pricing and costs for Check Point DDoS Protector?
My experience with pricing, setup cost, and licensing is that it is straightforward with no challenges.
What needs improvement with Check Point DDoS Protector?
Check Point DDoS Protector can be improved in that initial fine-tuning of policies can be complex and may require expertise. Additionally, reporting and analytics could be more detailed and customi...
What is your primary use case for Check Point DDoS Protector?
My main use case for Check Point DDoS Protector is to protect our network perimeter against DDoS attacks, ensuring service availability and application layer attack in real time. I can give you a s...
 

Also Known As

Arbor Networks SP, Arbor Networks TMS, Arbor Cloud for ENT
No data available
 

Overview

 

Sample Customers

Xtel Communications
Boston Properties
Find out what your peers are saying about Arbor DDoS vs. Check Point DDoS Protector and other solutions. Updated: September 2026.
912,788 professionals have used our research since 2012.