Try our new research platform with insights from 80,000+ expert users

Check Point CloudGuard WAF vs F5 Advanced WAF comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Cloudflare
Sponsored
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
71
Ranking in other categories
CDN (1st), Distributed Denial-of-Service (DDoS) Protection (1st), Managed DNS (1st), Cloud Security Posture Management (CSPM) (14th)
Check Point CloudGuard WAF
Average Rating
8.8
Reviews Sentiment
8.0
Number of Reviews
33
Ranking in other categories
Application Security Tools (10th), Web Application Firewall (WAF) (14th)
F5 Advanced WAF
Average Rating
8.6
Reviews Sentiment
7.4
Number of Reviews
65
Ranking in other categories
Web Application Firewall (WAF) (2nd)
 

Featured Reviews

Spencer Malmad - PeerSpot reviewer
It's easy to set up because you point the DNS to it, and it's working in under 15 minutes
Cloudflare is highly scalable. Cloudflare is a system with a web portal that the end users like me see. It's a console where we can adjust the DNS, caching, and security features all in that console. Cloudflare owns thousands of servers across the world that cache the data. It's a powerful solution. When clients sign up for Cloudflare, they're getting this monster content delivery network, security, and a web application firewall in one. It's all rolled into one, and it's massive. Unless you have your website hosted on a massive hosting provider, there's no way that you can deliver the amount of data that Cloudflare can provide to the end users. If you have static content, there's no way that you can ever match what Cloudflare can do. Obviously, there are competitors to Cloudflare that do the same, but I'm saying other types of solutions. Let's say you go with F5. Great, that's on-prem. That's in your colo. You can't deliver as much data to the internet as you can with a CDN. You don't have to spend $20,000 on a net scaler, F5, or whatever Cisco's selling now. You don't have to buy that. You pay them $50 a month or $150 a month. It's totally worth it because even in five years, you'll never get the performance value, not just the actual ROI. You have to consider how much throughput you can get with Cloudflare.
Ashish Upadhyay - PeerSpot reviewer
Automation capabilities also help streamline security processes and smooths down API integration processes and detects API availability
There is room for improvement in the pricing strategy. By reducing their cost and extending the trial period, Check Point can attract more partnerships and customers, keeping up with other vendors in the field. It has a trial period, but they can extend it so we can better evaluate how it's working in our environment and how well it is suited. It should be converted to activate some discounts on buying standard versions. This will attract more of us, and we'll get more time to check the application and how it works. Additionally, their effort to involve IT teams would mean continuous adaptation to meet business requirements. This can help with the price picture and increasing the trial period so we can better evaluate the cost-effectiveness. Also, Check Point need to continue developing new features and arrangements in line with changing business requirements. The analysis time while it analyzes itself is very time-consuming. They need to improve the latency and minimize the steps involved. Also, the documentation needs to be updated, more improved, and simplified... so that even a beginner can start with this application. It can make things more beginner-friendly. Also, Check Point can bring some updates to the integration features with other security solutions, making it easier to integrate. For instance, it needs to integrate with solutions someone might have various firewall solutions from IBM and others, depending on which ones the business wants to integrate with.
Ahmed Moamen - PeerSpot reviewer
Protects applications with versatile authentication features
F5 offers a versatile solution that can be integrated with APM in cases where integration with an external IDB is needed. It is useful for authentication backup if the on-prem directory service is unavailable. Additionally, its WAF functionality is valuable for protecting applications from attacks. It is a versatile and strong solution that's easy to understand and deploy.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"When using services like Heroku, Cloudflare is very useful for CNAME flattening. I also use it for their end-to-end SSL with TLS authentication on nginx for securing servers."
"I rate its stability a ten out of ten."
"It is a stable solution. I rate the stability a ten out of ten...I rate the scalability a ten out of ten."
"Easier http to https redirect using page rules"
"The DDoS protection is the most valuable aspect of the solution."
"Its most significant benefit to date is the speed with which it refreshes DNS records on the internet once you change it. If you are changing a website or registering a new record, it is very quick."
"DDoS attacks target unprotected machines. Cloudflare detects and stops these attacks using internal systems. It identifies incoming DDoS attacks, issuing challenges or blocking them immediately."
"We're using dynamic components to build flexible pages to create and manage Git merge requests for code and reviews."
"After integrating AppSec with other applications, team members can easily work without fear of confidential information exposure."
"They offer free trials, which is quite appreciative and grabs more attention from new users and businesses."
"The tool performs device health checkups and updates us. It helps us to be compliant with regulatory policies."
"The solution offers continuous security monitoring and alerting, which can help organizations detect and respond to security incidents in real time."
"It offers good functionality of the application that is currently running."
"Whenever there was a new CVE, Check Point CloudGuard WAF used to block them."
"By using a cloud application security solution, our company can save costs by reducing the need for additional security hardware and software and improving operational efficiency."
"The tool's most valuable feature is AI, which makes operations easier. Moreover, it is easy to deploy."
"The solution is stable."
"I like the security features, especially against SQL injection."
"In terms of F5 Advanced WAF's most valuable features, I would definitely say its stability. F5 is one the most stable products. Either as the load balancer or the web application firewall, it is very stable."
"There are a lot of good features."
"F5 Advanced WAF secures our connectivity and combines both the main functions of WAF (balancing and web application security)."
"The web application firewall itself is most valuable. It provides positive security and negative security. In negative security, it blocks a task such as cross-site scripting, code injection, etc. In positive security, it lets you specify and enforce things, such as the parameters allowed in username and password fields and the number of characters allowed in a field."
"It ensures compliance with security standards by providing features like PCI DSS checks."
"We can monitor IP locations, but we have constraints from each country. It has a replication feature. Licenses can be shared, taking turns with each license."
 

Cons

"The product needs to improve its automation."
"The timing aspect can lead to it being considered overpriced. This is a particular concern we have with Cloudflare, as they may struggle with accurately detecting the client."
"We are a product integrator and reseller, and we would like to have a better partner relationship, similar to a channel sales relationship. Sometimes we are on our own or get diverted by Cloudflare because they have direct sales, which competes with us and makes it difficult to build a relationship with this company since we want to be an MSP or a managed service provider for the solution."
"Latencies are always a problem."
"DNS Management."
"The analytics, basically the dashboard, doesn't have much to it."
"There might be helpful if there was some web application firewall feature."
"It should have easier documentation for the configuration. It's very technical and people who aren't technical should also be able to do the configuration."
"Improving the process for handling licensing renewals would be a welcome enhancement."
"A feature we'd like to see in the future is something that could protect against other attack vectors, with a focus on application protection."
"They should improve in the delivery of more detailed reports with more information."
"I advise proactive threat detection intelligence offline, which can also help monitor and ensure system checks and compliances are in place."
"Support could be improved, particularly in terms of availability."
"I feel like I need more clarity in understanding pricing for DDoS protection."
"CloudGuard for Application Security, like the other Check Point applications, has been presenting major latency problems when entering their administrative portal."
"We would like the solution to be more economical since it is not accessible to all clients."
"It should be a little bit easy to deploy in terms of the overall deployment session. One of our customers is a bit unhappy about the reporting options. Currently, it automatically deletes event logs after some limit if a customer doesn't have any external Syslog server. It is a problem for those customers who want to review event logs after a week or so because they won't get proper reports or event logs. They should increase the duration to at least a month or two for storing the data on the device. F5 is not a leader in Gartner Quadrant, which affects us when we go and pitch this solution. Customers normally go and take a look at such annual reports, and because F5 is currently not there as a leader, the customers ask about it even though we are saying it is good in all things. F5 is not known for something totally different or unique. They were a major player in ADP, and they are just rebranding themselves into security. They should improve or increase their marketing as a security company now. They have already started to do that, but they should do it more so that when it comes to security, customers can easily remember F5. At the moment, if we say F5, load balancing comes to mind. With rebranding and marketing, all customers should get the idea that F5 is now mainly focusing on the security part of it, and it is a security company instead of load balancing. This is the first solution that should come to a customer's mind for a web application firewall."
"One area for improvement in the product is its SSO integration, which posed challenges and required significant effort to resolve."
"There should be more ability to rate limit certain scenarios. The majority of the time, it is either on or off. For certain types of use cases, there should be the ability to rate limit, not just enable or disable."
"The deployment side is quite complex."
"I would like to see the API Protection improved."
"They should work on the virtualization of NGINX."
"F5 Advanced needs to improve its bot protection. The solution needs to have machine learning to learn the behavior of the customer to recognize the human versus the bot. This is a difficult feature to explain to our customers. I would like documentation about the bot feature to make it easier for the customer to understand."
"While F5 Advanced WAF does limit the number of partners in certain regions to ensure successful business transactions, they could also benefit from expanding their partnerships and making it easier for more people to learn about and become experts in F5 Advanced WAF. By doing so, they could increase the reach and exposure of their solution, similar to how Cisco has become widely recognized in the security industry."
 

Pricing and Cost Advice

"The pricing for the service is reasonable, neither excessively cheap nor prohibitively expensive. It aligns well with the value of their solution."
"The tool is a premium product, so it is very expensive."
"There are no additional costs beyond the standard licensing fees."
"I believe their performance has improved, but I'd like to refrain from discussing the pricing aspect related to the cloud. The pricing, in my opinion, could be simplified, and I think they should consider reevaluating the pricing for support, as it can be quite high. At times, this cost can make it challenging to choose CARFAGuard or opt for the support."
"The product's pricing is minimal compared to other products."
"When you compare Cloudflare DNS to other solutions, such as Akamai, the price is reasonable."
"So far I use free tier and happy with it. You can subscribe to business package if needed."
"We don't have any issues with the price."
"The pricing is not that expensive considering what it offers."
"Check Point CloudGuard WAF is expensive compared to Azure WAF."
"I find the pricing to be reasonable."
"Check Point CloudGuard Application Security's pricing is comparable to other products in the market."
"Check Point CloudGuard Application Security's pricing is not friendly."
"Considering all the benefits we've observed, we find the price to be satisfactory."
"The tool's licensing costs are yearly and competitive."
"The pricing is competitive compared to other solutions on the market. So, the licensing cost is average."
"The price of the solution is reasonable when compared with other products, such as FortiWeb. I am very satisfied with the price."
"F5 Advanced WAF technical support comes at a cost, and it's expensive."
"Licensing fees for this solution are paid on a yearly basis."
"The solution is very expensive so should only be used in the right environment."
"There is an annual subscription for this solution."
"I am not sure about pricing but licenses are available on Google."
"It is expensive. Its price should be better. Its licensing is on a yearly basis. Its licensing is also based on the model. There are no additional costs."
"There are various plans available for Fortinet FortiWeb Cloud WAF as a Service, including a trial version."
report
Use our free recommendation engine to learn which Web Application Firewall (WAF) solutions are best for your needs.
824,067 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
25%
Computer Software Company
13%
Comms Service Provider
7%
Financial Services Firm
7%
Financial Services Firm
20%
Computer Software Company
11%
Security Firm
9%
Manufacturing Company
7%
Computer Software Company
15%
Financial Services Firm
15%
Government
8%
Manufacturing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is the best DDoS protection solution for a big ISP for monitoring and mitigating?
Cloudflare. We are moving from Akamai prolexic to Cloudflare. Cloudflare anycast network outperforms Akamai static GR...
Which would you choose - Cloudflare DNS or Quad9?
Cloudflare DNS is a very fast, very reliable public DNS resolver. It is an enterprise-grade authoritative DNS service...
What do you like most about Cloudflare?
Cloudflare offers CDN and DDoS protection. We have the front end, API, and database in how you structure applications.
What do you like most about CloudGuard for Application Security?
We have not had any incidents. We could realize its benefits immediately. We watched and monitored the traffic, and i...
What is your experience regarding pricing and costs for CloudGuard for Application Security?
Pricing is average—not too expensive, yet not cheap either. CloudGuard offers bundled packages, which may reduce cost...
What needs improvement with CloudGuard for Application Security?
Support could be improved, particularly in terms of availability. Although they provide 24/7 support, there are somet...
What do you like most about F5 Advanced WAF?
It's a fairly easy-to-use and user-friendly tool. My administrators and team also like its ability to customize the r...
What is your experience regarding pricing and costs for F5 Advanced WAF?
The pricing and support service levels affect response times from customer service, depending on whether the support ...
What needs improvement with F5 Advanced WAF?
The main improvement needed is related to IP intelligence. Once we start receiving traffic from repetitive IP address...
 

Also Known As

Cloudflare DNS
Check Point CloudGuard Application Security, CloudGuard Application Security, CloudGuard AppSec
No data available
 

Learn More

 

Overview

 

Sample Customers

Trusted by over 9,000,000 Internet Applications and APIs, including Nasdaq, Zendesk, Crunchbase, Steve Madden, OkCupid, Cisco, Quizlet, Discord and more.
Orange España, Paschoalotto
MAXIMUS, Vivo, American Systems, Bangladesh Post Office, City Bank
Find out what your peers are saying about Check Point CloudGuard WAF vs. F5 Advanced WAF and other solutions. Updated: December 2024.
824,067 professionals have used our research since 2012.