Try our new research platform with insights from 80,000+ expert users

Arbor DDoS vs Neustar UltraDDoS [EOL] comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 2, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Arbor DDoS
Average Rating
8.8
Reviews Sentiment
6.9
Number of Reviews
56
Ranking in other categories
Distributed Denial-of-Service (DDoS) Protection (3rd)
Neustar UltraDDoS [EOL]
Average Rating
8.0
Reviews Sentiment
6.6
Number of Reviews
1
Ranking in other categories
No ranking in other categories
 

Featured Reviews

SZ
Team Lead Network Engineer at Artco Group d.o.o Sarajevo
Reliable protection ensures robust network defense and simplifies DDoS management
I am not sure if we plan to use additional features because we have many vendors and platforms that we support. We use the main function and that is it. The prices for Arbor DDoS are expensive. The licensing is subscription-based. From our sales department, they discuss that prices are very high. A potential improvement could be establishing a contract with Cisco to sell via their channel. This could be beneficial because we work extensively with Cisco. If you are a Cisco partner, you can sell Arbor DDoS. That would be good for customers that are Cisco-based because many customers in Bosnia are Cisco-based customers. BH Telecom, our main customer, sells Arbor DDoS to other customers for protection. They buy Arbor and sell the product services to others via Internet links. They sell add-on DDoS protection via Arbor DDoS. In Bosnia and Herzegovina, Arbor DDoS is not present in many customers. Some customers try to sell it, but they sell other vendors such as F5. Arbor DDoS is mainly seen in telecom operators but not much in other customers.
JT
Manager Strategic Planning at Endurance International Group
Identifies a request that comes up multiple times, block holds that particular IP, and lets the genuine traffic pass through
Genuine traffic coming in is still getting better. While I understand that it's some sort of algorithm that is written in this scale, that algorithm can be a little bit better because sometimes while we are doing DDoS mitigation, genuine traffic does get blocked. While it is one of the greatest features it can still be improved. I would like to see a dashboard that shows you the data that is transferred from which end. It's where people start looking at abuse management. People keep questioning when the mitigation is on what service it is and how many GBs are passing through. An end user dashboard that will help you identify all of these questions and that can be visible in your entire organization is something that would make sense.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It's very flexible and we can easily deploy it to our network. It's very user-friendly. We can do everything via the web interface and troubleshoot easily from the CLI. It's not complicated."
"The stateless device format means that the box is very strong for preventing DDoS attacks."
"Reporting is quite good. There are several pages of reporting on DDoS attacks, and you can find all the details that you need."
"It has an easy-to-understand GUI...Stability-wise, I rate the solution a ten out of ten."
"In the GUI, the packet capture is a very good option, as is the option to block an IP address."
"We use it not only for DDoS detection and protection, but we also use it for traffic analysis and capacity planning as well. We've also been able to extend the use of it to other security measures within our company, the front-line defense, not only for DDoS, but for any kind of scanning malware that may be picked up. It's also used for outbound attacks, which has helped us mitigate those and lower our bandwidth costs..."
"The solution is easy to use."
"There are a number of valuable features in this product, like Cloud Signaling and Threat Intelligence feeds."
"In the DDoS it's difficult to validate what is a genuine request from an end user. We've started being able to do that with the logistics that they have set up. With the protection that they have provided, they are able to identify what is valid and what is not valid. We see that a person who is getting DDoS Neustar service is able to block that particular user. However, while they are doing that it doesn't affect other customers on the server."
 

Cons

"A small improvement could be a better reporting system."
"The upgrade process is mildly complex requiring treatment of the custom embedded OS separately from the application. The correlation of the underling OS to the application version can be easily missed."
"The implementation should be made easier."
"For troubleshooting problems, it's not so intuitive. It's not straightforward. This is the core of their kernel, so they need to improve it a little bit... In F5 I have full control of everything."
"Arbor Pravail APS devices do not sync features or config the backup enough. This needs to be improved."
"Auto mitigation is a feature provided when DDoS is observed on any of link/customer (configured under auto mitigation). It automatically starts mitigation with default filters. In default filter mode, there could be an impact on the customer’s link,"
"An issue which needs to be addressed concerns information I received of attacks on the radar and Arbor, allegedly, not taking any action."
"I think Arbor DDoS needs improvement in areas where competitors like S5, Redver, or NETSCOUT offer web application firewall functionality or dedicated web application firewall devices. Arbor lacks these features, which is a significant disadvantage. Yes, I would like to see these features introduced in Arbor as well. Regarding real-time detection capabilities, Arbor DDoS works very well. We and our customers are very satisfied with its performance. However, it would benefit from adding Web Application Firewall (WAF) capabilities to reach a larger customer base."
"I would like to see a dashboard that shows you the data that is transferred from which end. It's where people start looking at abuse management. People keep questioning when the mitigation is on what service it is and how many GBs are passing through. An end user dashboard that will help you identify all of these questions and that can be visible in your entire organization is something that would make sense."
 

Pricing and Cost Advice

"Arbor DDoS is quite expensive, but all these solutions are expensive because they deal with confidential information."
"It is an expensive product. I use this product for its different features."
"Start with a small license. Measure your bandwidth requirements."
"You need to find a way to get a good offering from Arbor by negotiating a price. That is the challenge."
"Our customers always complain about the price of the product."
"Regarding pricing, I would rate it as average. Arbor DDoS offers good value for money with our DDoS filter device. For higher protection needs, Arbor’s CloudMeter’s DDoS mitigation or hardware devices might be more expensive, but customers who need them are usually prepared for the cost and the additional resources required."
"The solution is a bit costly if you're a small organization, but I think it's worth the price that they are charging."
"The pricing of the solution is cheap."
Information not available
report
Use our free recommendation engine to learn which Distributed Denial-of-Service (DDoS) Protection solutions are best for your needs.
881,082 professionals have used our research since 2012.
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business25
Midsize Enterprise14
Large Enterprise29
No data available
 

Questions from the Community

Which is the best DDoS protection solution for a big ISP for monitoring and mitigating?
I would say if it’s an ISP that will build a scrubbing center, Netscout/Arbor is a good solution. In all other solutions, Imperva is a great choice.
Which is the best DDoS protection solution for a big ISP for monitoring and mitigating?
Arbor would be the best bid, apart from Arbor, Palo Alto and Fortinet have good solutions. As this is an ISP, I would prefer Arbor.
What is your experience regarding pricing and costs for Arbor DDoS?
The prices for Arbor DDoS are expensive. The licensing is subscription-based. From our sales department, they discuss that prices are very high.
Ask a question
Earn 20 points
 

Also Known As

Arbor Networks SP, Arbor Networks TMS, Arbor Cloud for ENT
Neustar UltraDDoS, UltraDDoS
 

Overview

 

Sample Customers

Xtel Communications
Choxi
Find out what your peers are saying about Cloudflare, Radware, NETSCOUT and others in Distributed Denial-of-Service (DDoS) Protection. Updated: January 2026.
881,082 professionals have used our research since 2012.