

Arbor DDoS and F5 BIG-IP Advanced Firewall Manager compete in the DDoS protection and network security category. Arbor has the upper hand in user-friendliness and traffic visibility, while F5 AFM excels in integration with other F5 modules.
Features: Arbor DDoS includes predefined filters for easy attack mitigation, cloud signaling for coordination between on-premises and service provider protection, and real-time threat intelligence for proactive defense. Its hybrid approach provides multi-layer protection. F5 BIG-IP AFM offers unified network security by integrating with other F5 solutions, advanced WAF capabilities for robust application defense, and simplifies management with its modular integration.
Room for Improvement: Arbor DDoS users seek improvements in auto-mitigation features, scalability of hardware, and better third-party integration. They also suggest enhancements in reporting and reducing false positives. F5 AFM could benefit from a simpler user interface, improved reporting, and enhanced automation capabilities. Customers also desire more intuitive configuration logic and better integration with BIG-IQ.
Ease of Deployment and Customer Service: Arbor DDoS supports on-premises and hybrid cloud deployments and is known for its good technical support, though response times vary by region. F5 AFM also supports both deployment models, with responsive customer service noted for occasional delays. Both products offer strong technical expertise, with Arbor noted for deep product knowledge.
Pricing and ROI: Arbor DDoS is regarded as high-performing but expensive compared to competitors, with costs related to enterprise throughput and managed routers. Its clear licensing is a positive, though overall expenses are a concern. F5 AFM, while also costly, provides value through integrated features. Both deliver significant ROI by mitigating costly DDoS attacks and ensuring service uptime.
The technical support team is very effective in resolving issues.
Although the team is good, they are not fast, and they lack the skills to manage dynamic attackers.
Support for Arbor DDoS deserves a rating of 10 because when there is a problem with implementation, the people I work with are the best.
The responses are generally fast and effective.
The customer service is excellent, and I rate it ten out of ten.
I rate the technical support by F5 a ten from one to ten.
This would enhance the knowledge about scalability options available for Arbor DDoS, making it more accessible and useful for users.
They need to purchase boxes monthly to expand their bandwidths, and these new boxes can be added to the installed base very easily.
I find Arbor DDoS to be very scalable.
The solution is highly scalable, allowing me to add or remove nodes and manage traffic without interruption, which is essential for meeting application demands.
It is a very stable product.
Arbor DDoS is very stable.
I would like to see an option to decrypt the traffic with Arbor DDoS, as some clients are interested in this, particularly for application layer attacks on port 443.
Enhancing the handshakes between Arbor DDoS and third-party solutions is essential for obtaining better and real-time data that supports any organization’s support team effectively.
I would like to see a roadmap for one or two years, and it is tough to predict what will happen in that timeframe without a clearer description.
Having advanced technology similar to other vendors like Palo Alto for zero-day attack prevention would be valuable.
The appliance and features could be enhanced further, especially in terms of security.
I would assess the importance of F5 BIG-IP Advanced Firewall Manager (AFM)'s integration with cloud services as significant.
The prices for Arbor DDoS are expensive.
For some customers, the cost is expensive, but for enterprises looking to protect their services, it is affordable.
The standard license is reasonably priced, but additional features like the WAF can be more expensive.
If considering a one-stop solution that provides load balancing, DNS security, AAA authentication, and firewalling on the same hardware, the cost is reasonable.
That is an attack over 10 gigabit per second, and if an attack enters the telecommunication network, that will be a disaster for their customer, their services, and so on.
We have many updates for the library of different attacks, and they have artificial intelligence that automatically learns the process during different attacks.
You can generate flow spec filters. These filters are transferred through BGP to border routers, which automatically build filters, mitigating the attack even at the network's boundary and preventing it from reaching the TMS.
The solution provides behavioral analysis via AI to detect malicious traffic.
The most valuable features for me are stability, availability, and security, along with the ability to manage multiple features to secure my applications.
I think the DDoS features are valuable in F5 BIG-IP Advanced Firewall Manager (AFM), and I recommend it usually for certain types of companies.
| Product | Mindshare (%) |
|---|---|
| Arbor DDoS | 5.7% |
| F5 BIG-IP Advanced Firewall Manager (AFM) | 2.0% |
| Other | 92.3% |

| Company Size | Count |
|---|---|
| Small Business | 26 |
| Midsize Enterprise | 14 |
| Large Enterprise | 29 |
| Company Size | Count |
|---|---|
| Small Business | 9 |
| Midsize Enterprise | 5 |
| Large Enterprise | 14 |
Arbor DDoS offers a comprehensive defense system against DDoS attacks, integrating a user-friendly GUI and advanced threat mitigation technologies for enhanced network protection.
Arbor DDoS is recognized for its ability to manage high-volume DDoS attacks efficiently, providing extensive protection through real-time traffic analysis and automated threat detection. It utilizes advanced techniques such as blackhole and BGP Flowspec for effective threat management. Arbor's cloud signaling allows users to handle and mitigate volumetric attacks while maintaining service availability. Though it provides robust security features, users note potential improvements in auto-mitigation, scalability, and AI integration. Challenges like an outdated graphical interface, hardware stability, and false positives need addressing to further enhance its usability and integration with third-party systems.
What are the key features of Arbor DDoS?Internet service providers and telecom companies commonly adopt Arbor DDoS to protect their networks and infrastructure from DDoS attacks. It is also implemented in financial and government sectors to ensure web application security and maintain high availability. Arbor DDoS supports a hybrid approach, utilizing both on-premise and cloud solutions to manage traffic efficiently and sustain service quality during attacks.
F5 BIG-IP Advanced Firewall Manager provides robust network protection with advanced DDoS features and efficient load balancing. Its design prioritizes scalability and ease of management, catering to securing data centers and applications.
F5 BIG-IP Advanced Firewall Manager is a strategic choice for combating cyber threats, including DDoS attacks. With powerful network defenses, integrated WAF, and adaptable capabilities, it efficiently handles web services on-premise and in the cloud. Users value its application-level threat defense with IP blocking and AI-enhanced reporting. Advanced integration with SIEM solutions allows comprehensive monitoring and enhanced threat detection through dynamic resource allocation. However, areas for improvement include better dashboard statistics and pricing adjustments. Enhancing integration with BIG-IQ and intuitive configuration would streamline its operation. Automatic geolocation updates and improved support could address current challenges alongside its high cost and complex initial setup.
What are the standout features?F5 BIG-IP Advanced Firewall Manager is widely used in sectors requiring stringent security measures, such as finance and healthcare. These industries deploy it as a data center and web application firewall to protect against cyber threats, manage client connections, and ensure the security of on-premise and cloud applications.
We monitor all Distributed Denial-of-Service (DDoS) Protection reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.