Try our new research platform with insights from 80,000+ expert users

AWS WAF vs F5 Silverline Managed Services comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 1, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cloudflare
Sponsored
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
74
Ranking in other categories
CDN (1st), Distributed Denial-of-Service (DDoS) Protection (1st), Managed DNS (1st), Cloud Security Posture Management (CSPM) (14th)
AWS WAF
Average Rating
8.0
Reviews Sentiment
7.6
Number of Reviews
59
Ranking in other categories
Web Application Firewall (WAF) (1st)
F5 Silverline Managed Services
Average Rating
7.8
Reviews Sentiment
6.9
Number of Reviews
15
Ranking in other categories
Web Application Firewall (WAF) (25th), Distributed Denial-of-Service (DDoS) Protection (15th)
 

Featured Reviews

Spencer Malmad - PeerSpot reviewer
It's easy to set up because you point the DNS to it, and it's working in under 15 minutes
Cloudflare is highly scalable. Cloudflare is a system with a web portal that the end users like me see. It's a console where we can adjust the DNS, caching, and security features all in that console. Cloudflare owns thousands of servers across the world that cache the data. It's a powerful solution. When clients sign up for Cloudflare, they're getting this monster content delivery network, security, and a web application firewall in one. It's all rolled into one, and it's massive. Unless you have your website hosted on a massive hosting provider, there's no way that you can deliver the amount of data that Cloudflare can provide to the end users. If you have static content, there's no way that you can ever match what Cloudflare can do. Obviously, there are competitors to Cloudflare that do the same, but I'm saying other types of solutions. Let's say you go with F5. Great, that's on-prem. That's in your colo. You can't deliver as much data to the internet as you can with a CDN. You don't have to spend $20,000 on a net scaler, F5, or whatever Cisco's selling now. You don't have to buy that. You pay them $50 a month or $150 a month. It's totally worth it because even in five years, you'll never get the performance value, not just the actual ROI. You have to consider how much throughput you can get with Cloudflare.
Kavin Kalaiarasu - PeerSpot reviewer
AWS's cloud-native security simplifies rule enforcement but needs better DDoS integration
The dashboarding could be improved, and the default metrics provided by AWS WAF could be upgraded. The rate at which AWS updates their managed rule sets could be better. Features like bot protection or DDoS mitigation, available with other WAF vendors, do not come natively with AWS WAF. Instead, they are part of AWS Shield. Providing DDoS protection as part of their WAF solution would be beneficial.
DejanBlagojevic - PeerSpot reviewer
Mitigates more bot activity when defending web applications than any other vendor but comes at a price
F5 Silverline Managed Services is expensive. You do get world-class quality of mitigation, but I think it is still pricey. You can find similar services, potentially of slightly lower quality, from other vendors like Cloudflare or Akamai for about half the price. When you compare what you get for the money you spend at Cloudflare or Akamai, you do get less protection but you are not dishing out too much for it. On the other hand, at F5 Silverline Managed Services, you do get better protection but, but you are paying double for it. We have had mixed feedback from our clients about this. Most of them would rather pay less for a bit of a lower-quality defense than overshoot their budget. The most common piece of feedback we receive is that the difference in protection levels is not reflected in the price.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Easier http to https redirect using page rules"
"There are key things that are used for our enterprise customers, such as Lambda and DNS."
"The most valuable feature of Cloudflare DNS is security."
"Cloudflare allows us to self-host services such as Rocket.Chat and Node-RED, in high-availability mode, thanks to round robin DNS which allows us to share one hostname between our two locations."
"Even when there is a high load on our servers, Cloudflare is able to cache the data and serve it to users, ensuring they can still access the website."
"The most valuable feature of Cloudflare is the GUI. You are able to control the solution very well through the interface. There is a lot of functionality that is embedded in the service."
"It is easier to configure and develop documentation to see how we have configured firewalls."
"New and innovative way to protect the client's data."
"AWS has flexibility in terms of WAF rules."
"AWS WAF helps mitigate different kinds of bot attacks and SQL injection that happen within the retail industry."
"The initial setup was very straightforward. Deployment took about ten minutes or less."
"The ease of deployment of the product is valuable to me."
"The most valuable features are the geo-restriction denials and the web ACL."
"The most valuable feature is the scalability because it automatically scales up or scales down as per our requirements."
"It is a one-click WAF with no effort needed."
"AWS WAF is something that someone from a cloud background or cloud security background leverages. If they want to natively use a solution in the cloud, AWS WAF comes in handy. It's very useful for that, and the way we can fine-tune the WAF rules is also nice."
"Its flexibility is the most valuable because it is a managed service. The good part is that you don't need to set it up. It just needs DNS routing, which is the easiest thing. Our client had Akamai for certain websites because they were using CDN features. They had NetScaler on the internal zone, F5 AWAFs on the data centers, and no WAF at all in the cloud. One of the main activities of the project was to move all these policies into a single WAF so that we could control and use that as a choke point. That exercise itself was very easy because it was a managed service and F5 Silverline Web Application Firewall does that for you. That's the best thing about F5 Silverline Web Application Firewall. It is easy to apply policies on-premises. If you have AWAF on-premises and you want to replicate some policies on F5 Silverline Web Application Firewall, other than the policies that it applies by itself, it is easy because you have a team that supports it. F5 Silverline Web Application Firewall works perfectly fine. It pretty much does everything that an Advanced WAF on-premises should do."
"The most valuable feature is flexibility."
"The most valuable feature of F5 Silverline Managed Services is the benchmark performance."
"The product’s UI is easy to understand."
"The initial setup is straightforward."
"The most important feature is that they have seven firewall protection, to protect our web servers."
"We have a lot of businesses that we put behind this solution, and it has really helped us in terms of monitoring the logs and incidents."
"The most valuable features are the configuration and configuring the process."
 

Cons

"The timing aspect can lead to it being considered overpriced. This is a particular concern we have with Cloudflare, as they may struggle with accurately detecting the client."
"Sometimes their more advanced caching tools can cause higher first-byte times and problems with JavaScript."
"The documentation could improve for Cloudflare DNS."
"They lack a good way to manage DNS as a company, since everything is relegated to single account logins until you get to the higher levels. They have come out with a paid feature to remedy this, but I have not had a chance to fully review it yet to know if it fixes the access problem."
"The pricing could be improved."
"There should be a specific price list for enterprise-level customers."
"It should be easier to collect the logs with companies like Sumo. However, based on my discussions with the salespeople, I understand that's how they make their money. With the enterprise product, they want people doing those kinds of enterprise features to do the logging. They want them to pay a lot of money, and that's where I have an issue with them. That should be a default. You should be able to get the log no matter what. The logging should be universal."
"Cloudflare should add more documentation and pricing to the cloud version."
"In a future release I would like to see automation. There's no interaction between the applications and that makes it tedious. We have to do the preparation all over again for each of our other applications."
"We have issues with reporting, troubleshooting, and analytics. AWS WAF needs to bring costs down."
"I find the documentation somewhat complex to implement during the initial stages."
"I'd like to see improvements in its usability and functionality. I'm also concerned about being too dependent on the cloud provider's WAF version. For security, using multiple vendors and not putting all our eggs in one basket is better."
"We need more support as we go global."
"The default content policy available in the tool is not very strong compared to the competitors."
"Rule exclusion could be a bit more transparent."
"In a future release of this solution, I would like to see additional management features to make things simpler."
"We'd like more AI to be used. Right now, they don't use it enough."
"There is room for improvement in the stability of the solution."
"We need to have support for cloud protection, which is not offered by this solution."
"Improvements could include the creation of highly optimized profiles, optimization deployments, and compression profiles for better performance."
"The navigation is difficult to use."
"F5 Silverline Web Application Firewall, being a new product in the market or comparatively related to a new product, currently supports less number of PoPs. They should introduce more PoPs. The current number of PoPs that they have is around 10 or 12, which is still relatively less as compared to 2,400 plus PoPs that Akamai offers. The user latency or the number of hops a user needs before reaching the actual web application is less in Akamai because it has its internal fabric to route the traffic. They need to spin up more data to increase its traffic handling capability. They can also include the bot detection capability, though it is a pretty advanced functionality. If they could include DataDome like functionality, that is, bot prediction, then F5 Silverline Web Application Firewall will be top-notch in the market."
"There is a lot of room for improvement with their tech support. I am not sure F5 Silverline Managed Services can be classified as having tech support."
"Sometimes tech support can be slow. They take more time assigning engineers to complex issues, however, they resolve the issues by joining me to fix them."
 

Pricing and Cost Advice

"We are using the free tier of the solution."
"That is one of the great features. I was able to access the majority of the features and services for free."
"The product's pricing is cheap."
"It's a premium model. You can start at zero and work your way up to the enterprise model, which has a very high pricing level."
"The price is reasonable."
"I think the pricing is competitive. I think as far as licensing is concerned it's pretty straightforward because it's based on domain. It's just that sometimes domains could be tricky with some customers."
"We don't have any issues with the price."
"The pricing depends on the usage, but the cheapest would be around 5,000 USD a month."
"For our infrastructure, we probably pay around $16,000 per month for AWS WAF. Because alternative WAF solutions provide even more features, I think the AWS WAF is a bit pricey"
"You need an additional AWS subscription for this product if you are buying a managed tool."
"The product is moderately priced."
"The price is average."
"The solution is affordable."
"The solution's cost depends on the use cases."
"The price of AWS WAF is reasonable, it is not expensive and it is not cheap."
"AWS WAF costs $5 monthly plus $1 for the rule. It's cheap, cost-wise. It's worth the money."
"The product’s pricing is reasonable."
"The price of F5 Silverline Managed Services could be reduced."
"The price of F5 Silverline Managed Services could be better, they are not very flexible. The price of the solution is based on the requirements of the enterprise."
"F5 Silverline Web Application Firewall works based on your bandwidth. They look at the clean bandwidth and do the pricing. 20% of a total pipe would be a clean bandwidth. The list price or a non-negotiated price for F5 Silverline Web Application Firewall would be around $2,200 per application per year for everything that you need. When you get into an enterprise kind of a setup, they negotiate this to the last bit. I would easily take 20% on that, which would be the cost, but it should cover all your Advance WAF features, bot protection, tech campaign, etc. It is built as a package and gives you most of the capability. You don't get the mobile SDK, which is an additional license. Mobile SDK is required only if you're buying or if you have a mobile application, and you are going to instrument F5 or Imperva into your mobile appliance. This anyways would be an additional module. It doesn't come within the WAF, but it is a WAF feature."
report
Use our free recommendation engine to learn which Web Application Firewall (WAF) solutions are best for your needs.
847,646 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
19%
Computer Software Company
13%
Comms Service Provider
9%
Financial Services Firm
8%
Computer Software Company
16%
Financial Services Firm
14%
Manufacturing Company
8%
Government
6%
Financial Services Firm
21%
Insurance Company
13%
Computer Software Company
11%
Comms Service Provider
10%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is the best DDoS protection solution for a big ISP for monitoring and mitigating?
Cloudflare. We are moving from Akamai prolexic to Cloudflare. Cloudflare anycast network outperforms Akamai static GR...
Which would you choose - Cloudflare DNS or Quad9?
Cloudflare DNS is a very fast, very reliable public DNS resolver. It is an enterprise-grade authoritative DNS service...
What do you like most about Cloudflare?
Cloudflare offers CDN and DDoS protection. We have the front end, API, and database in how you structure applications.
What are the limitations of AWS WAF vs alternative WAFs?
Hi Varun, I have had experienced with several WAF deployments and deep technical assessments of the following: 1. Im...
How does AWS WAF compare to Microsoft Azure Application Gateway?
Our organization ran comparison tests to determine whether Amazon’s Web Service Web Application Firewall or Microsoft...
What do you like most about AWS WAF?
The most valuable feature of AWS WAF is its highly configurable rules system.
Is Citrix ADC (formerly Netscaler) the best ADC to use and if not why?
For ADC, any ADC can do a good job. But in case if you want to add WAF functionality to the same ADC hardware you hav...
What is your experience regarding pricing and costs for F5 Silverline Managed Services?
The solution is expensive, however, the quality and performance are good.
 

Also Known As

Cloudflare DNS
AWS Web Application Firewall
F5 Silverline Web Application Firewall, F5 Silverline DDoS Protection
 

Overview

 

Sample Customers

Trusted by over 9,000,000 Internet Applications and APIs, including Nasdaq, Zendesk, Crunchbase, Steve Madden, OkCupid, Cisco, Quizlet, Discord and more.
eVitamins, 9Splay, Senao International
City Bank, Ricacorp Properties, Miele, American Systems, Bangladesh Post Office
Find out what your peers are saying about AWS WAF vs. F5 Silverline Managed Services and other solutions. Updated: April 2025.
847,646 professionals have used our research since 2012.