Try our new research platform with insights from 80,000+ expert users

Infoblox Advanced DNS Protection vs Vectra AI comparison

 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Infoblox Advanced DNS Prote...
Average Rating
8.4
Number of Reviews
14
Ranking in other categories
Domain Name System (DNS) Security (2nd)
Vectra AI
Average Rating
8.6
Number of Reviews
42
Ranking in other categories
Intrusion Detection and Prevention Software (IDPS) (2nd), Network Detection and Response (NDR) (2nd), Extended Detection and Response (XDR) (9th), Identity Threat Detection and Response (ITDR) (5th), AI-Powered Cybersecurity Platforms (4th)
 

Mindshare comparison

While both are Security Software solutions, they serve different purposes. Infoblox Advanced DNS Protection is designed for Domain Name System (DNS) Security and holds a mindshare of 23.0%, up 19.9% compared to last year.
Vectra AI, on the other hand, focuses on Intrusion Detection and Prevention Software (IDPS), holds 11.4% mindshare, up 9.5% since last year.
Domain Name System (DNS) Security
Intrusion Detection and Prevention Software (IDPS)
 

Featured Reviews

Wojciech Wrzesień - PeerSpot reviewer
Aug 9, 2024
Complements AR, NDR, and vulnerability scanners to ensure compliance
It plays a crucial role in clients' cybersecurity strategy. It complements other systems such as AR, NDR, and vulnerability scanners. DNS security is essential in IT because it helps ensure compliance with best practices and standards like ISO 27001. For clients considering cybersecurity beyond…
Tony Whelton - PeerSpot reviewer
Mar 7, 2023
Integrates well with other security solutions and provides good technical support
The biggest feature for us, because we are heavy Microsoft users, is its integration with Office 365. On top of Vectra AI, we use all of the Microsoft security platforms, such as Defender ATP and Sentinel. Having full integration and a central platform to look at all of the threats that are coming through from the different platforms is a huge benefit for us. With one nice front dashboard, we can look at the high-volume threats rather than all of the noise. We do get a lot of noise as our students all own their own devices. With Vectra AI, we can look at threats in a controlled manner, which saves us an extraordinary amount of time. Even if I doubled the manpower, I doubt that I would still have the same visibility that I have with the correct security platform. Vectra AI's Threat Detection and Response platform has done remarkably well. We're well-versed in using the security dashboard from Microsoft Defender, and we're at the stage where we are checking both. We haven't fully switched to relying on only the Vectra dashboard yet. In terms of Vectra AI Attack Signal Intelligence for empowering security analysts within our organization, we have complete faith in the data that's coming through from Vectra. If we could also have what's happening at the front-end, that is, the firewall, then it would give us the complete security front dashboard.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Centralized management of DNS, DHCP, and IPAM helped us a lot in simplifying and automating the management of network and services."
"It enhances DNS security and integrates with the IPAM system. It provides robust IP management and DNS security. One of its key features is the automatic response to malicious or incorrect domains."
"It is a stable solution."
"DHCP is a basic service, and they've been doing it for years, so it's mature and stable."
"The most valuable features of Infoblox Advanced DNS Protection are the services, DHCP, and debugging. Additionally, we can use APIs and ansible scripts."
"The most valuable feature of Infoblox Advanced DNS Protection is its performance and visibility."
"The solution helps to identify and mitigate DNS attacks."
"The main advantages with Infoblox Advanced DNS Protection are the dashboards, the reporting system, and they have the GUI interface."
"The UI is easy to use and when we send detection to everybody, they easily understand what we are asking at the time."
"The packet-capturing feature is very useful."
"The core product provides excellent visibility, but my favorite feature is Vectra Recall."
"The automatic filtering that they provide is valuable. The logic inside that makes some detections instead of us is very useful. We are confident that if we are just looking into it and there is nothing, nothing could happen."
"We often use the new feature to create PCAP files from the whole data traffic. It makes it much easier to find network problems such as whether the server is responding to a request. It has nothing to do with security, but it helps a lot to find other problems."
"The key feature for me for Detect for Office 365 is that it can also concentrate all the information and detection at one point, the same as the network solution does. This is the key feature for me because, while accessing data from Office 365 is possible using Microsoft interfaces, they are not really user-friendly and are quite confusing to use. But Detect for Office 365 is aggregating all the info, and it's only the interesting stuff."
"Cognito Streams gives you a detailed view of what happens in the network in the form of rich metadata. It is just a super easy way to capture network traffic for important protocols, giving us an advantage. This is very helpful on a day-to-day basis."
"The biggest feature for us, because we are heavy Microsoft users, is its integration with Office 365. On top of Vectra AI, we use all of the Microsoft security platforms, such as Defender ATP and Sentinel. Having full integration and a central platform to look at all of the threats that are coming through from the different platforms is a huge benefit for us."
 

Cons

"They should release frequent updates for its on-premises version."
"There needs to be more capabilities in order to configure the console itself instead of the user interface dashboard. Configuring the DNS or DHCP through the console instead of the GUI dashboard would be better."
"The solution's logging could be improved."
"Infoblox Advanced DNS Protection could be more user-friendly because you need knowledge if you want to use it. To handle the solution, you need to be a subject matter expert, so this is one area for improvement."
"There is a steep learning curve to be able to use Infoblox Advanced DNS Protection well."
"The price could be reduced to improve the solution."
"The solution is expensive."
"One challenging aspect of Infoblox Advanced DNS Protection pricing for the integrator is the difficulty of estimating the cost after the initial presentation, particularly in relation to the company's size."
"I think Vectra AI's automation, reporting, and integration could be improved."
"ExtraHop has better features that seem more advantageous when compared to Vectra."
"We would like to see more information with the syslogs. The syslogs that they send to our SIEM are a bit short compared to what you can see. It would be helpful if they send us more data that we can incorporate into our SIEM, then can correlate with other events."
"Some of their integrations with other sources of data, like external threat feeds, took a bit more work than I had hoped to get integrated."
"The false positives and the tuning side of it is something that could use improvement. But that could be from our side."
"You are always limited with visibility on the host due to the fact that it is a network based tool. It gives you visibility on certain elements of the attack path, but it doesn't necessarily give you visibility on everything. Specifically, the initial intrusion side of things that doesn't necessarily see the initial compromise. It doesn't see stuff that goes on the host, such as where scripts are run. Even though you are seeing traffic, it doesn't necessarily see the malicious payload. Therefore, it's very difficult for it to identify these type of host-driven complex attacks."
"They use a proprietary logging format that is probably 90% similar to Bro Logs. Their biggest area of improvement is finishing out the remaining 10%. That 10% might not be beneficial to their ML engine, but that's fine. The industry standard is Zeek Logs or Bro Logs, or Bro or Zeek, depending on how old you are. While they have 90% of those fields, they're still missing some fields. In very rare instances, some community rules do not have the fields that they need, and we had to modify community rules for our logs. So, their biggest area of improvement would be to just finish their matching of the Zeek standard."
"I would like to see data processed onshore. Right now, the cloud components, like Office 365, must be processed on servers outside of Australia. I would like to see a future adoption of onshore processing."
 

Pricing and Cost Advice

"I am not sure about the price of the solution, but I heard it is expensive."
"There are no additional costs to the standard licensing price of the solution."
"Infoblox Advanced DNS Protection is a little more expensive than other vendors."
"The price of Infoblox Advanced DNS Protection could be reduced, it is expensive."
"The solution is expensive."
"Cost is a big factor, as always. However, I think we have a very good price–performance ratio."
"The pricing and licensing are quite straightforward because they're based on the IP licenses. As a result, they are easy to count."
"Vectra AI is not a cheap solution."
"Vectra's licensing model could scale to our research network, which has multiple, 100-gigabit links."
"The license is based on the concurrent IP addresses that it's investigating. We have 9,800 to 10,000 IP addresses."
"We are running at about 90,000 pounds per year. The solution is a licensed cost. The hardware that they gave us was pretty much next to nothing. It is the license that we're paying for."
"From a pricing perspective, they are very commercially competitive. From a licensing perspective, just be conscious that some of their future cloud solutions come with additional subscriptions. Also, if you're outside of the US, you will get charged freight for the device back to your country."
"My company pays for the Vectra AI licensing fee yearly. I know the figure because my company recently renewed the license, and it's okay, at least for the financial sector."
report
Use our free recommendation engine to learn which Domain Name System (DNS) Security solutions are best for your needs.
814,763 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
15%
Financial Services Firm
14%
Government
9%
Manufacturing Company
8%
Computer Software Company
17%
Financial Services Firm
12%
Manufacturing Company
7%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Infoblox Advanced DNS Protection?
The solution's user interface is very smooth compared to other products.
What is your experience regarding pricing and costs for Infoblox Advanced DNS Protection?
The pricing for Infoblox Advanced DNS Protection is on the higher side. We rated it as a seven out of ten on the pricing scale where ten is the most expensive
What needs improvement with Infoblox Advanced DNS Protection?
There is room for improvement in some parts since it could be better in enhancing DNS Security. The solution could use some enhancements to save time for DNS security processes.
What is the biggest difference between Corelight and Vectra AI?
The two platforms take a fundamentally different approach to NDR. Corelight is limited to use cases that require the eventual forwarding of events and parsed data logs to a security team’s SIEM or ...
What do you like most about Vectra AI?
The solution is currently used as a central threat detection and response system.
 

Also Known As

Infoblox Secure DNS
Vectra Networks, Vectra AI NDR
 

Learn More

Video not available
 

Overview

 

Sample Customers

Colruyt Group, Council Rock School District, Danone, GlaxoSmithKline, The Hershey Company 
Tribune Media Group, Barry University, Aruba Networks, Good Technology, Riverbed, Santa Clara University, Securities Exchange, Tri-State Generation and Transmission Association
Find out what your peers are saying about Cisco, Infoblox, Palo Alto Networks and others in Domain Name System (DNS) Security. Updated: October 2024.
814,763 professionals have used our research since 2012.