Try our new research platform with insights from 80,000+ expert users

AWS Shield vs Azure DDoS Protection comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 5, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cloudflare
Sponsored
Ranking in Distributed Denial-of-Service (DDoS) Protection
1st
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
74
Ranking in other categories
CDN (1st), Managed DNS (1st), Cloud Security Posture Management (CSPM) (14th)
AWS Shield
Ranking in Distributed Denial-of-Service (DDoS) Protection
6th
Average Rating
8.4
Reviews Sentiment
7.5
Number of Reviews
7
Ranking in other categories
No ranking in other categories
Azure DDoS Protection
Ranking in Distributed Denial-of-Service (DDoS) Protection
8th
Average Rating
8.2
Reviews Sentiment
7.0
Number of Reviews
8
Ranking in other categories
Microsoft Security Suite (21st)
 

Mindshare comparison

As of April 2025, in the Distributed Denial-of-Service (DDoS) Protection category, the mindshare of Cloudflare is 19.4%, up from 19.2% compared to the previous year. The mindshare of AWS Shield is 7.0%, down from 7.6% compared to the previous year. The mindshare of Azure DDoS Protection is 4.0%, up from 3.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Distributed Denial-of-Service (DDoS) Protection
 

Featured Reviews

Spencer Malmad - PeerSpot reviewer
It's easy to set up because you point the DNS to it, and it's working in under 15 minutes
Cloudflare is highly scalable. Cloudflare is a system with a web portal that the end users like me see. It's a console where we can adjust the DNS, caching, and security features all in that console. Cloudflare owns thousands of servers across the world that cache the data. It's a powerful solution. When clients sign up for Cloudflare, they're getting this monster content delivery network, security, and a web application firewall in one. It's all rolled into one, and it's massive. Unless you have your website hosted on a massive hosting provider, there's no way that you can deliver the amount of data that Cloudflare can provide to the end users. If you have static content, there's no way that you can ever match what Cloudflare can do. Obviously, there are competitors to Cloudflare that do the same, but I'm saying other types of solutions. Let's say you go with F5. Great, that's on-prem. That's in your colo. You can't deliver as much data to the internet as you can with a CDN. You don't have to spend $20,000 on a net scaler, F5, or whatever Cisco's selling now. You don't have to buy that. You pay them $50 a month or $150 a month. It's totally worth it because even in five years, you'll never get the performance value, not just the actual ROI. You have to consider how much throughput you can get with Cloudflare.
Manikandan-R - PeerSpot reviewer
Solution provides essential protection with good support and a simple setup
I have noticed a pattern developing in approximately five minutes. If it were possible to provide these patterns with historical data spanning six months, three months, or two months directly from the console, it would be extremely beneficial. It would allow for easy inquiries and facilitate the retrieval of relevant parts without having to manually check logs or examine movements. Instead, if all historical data were available, I could consult six months' worth of identified patterns efficiently through AWS without relying on external sources. This solution is particularly suitable for startups or medium-sized startups. I would rate the overall solution eight out of ten.
Venkat Raju Mallipudi - PeerSpot reviewer
Acts as an additional layer of protection, provides endpoint security but not very easy to configure
It's not very easy to configure, in my view. We have to do some work behind the scenes. It's not very simple. We have to do it very carefully, and we need to monitor this enablement as well. But apart from that, I didn't see any kind of challenges. So, in my opinion, configuration is the main trouble for them. It is something that can be done to be better. Not just configuration. You need an expert who knows the ins and outs of these security solutions. In my experience, people struggle with configuration. While configuring, we get this error, we get that error, and then we try to fix those issues. I have seen those. It's not straightforward.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It is easier to configure and develop documentation to see how we have configured firewalls."
"The solution offers the flexibility to control configuration rules."
"Its most significant benefit to date is the speed with which it refreshes DNS records on the internet once you change it. If you are changing a website or registering a new record, it is very quick."
"The attacker won't have details since my public IP is anonymous. It offers us good privacy."
"The solution is stable, and the DNS servers are simple to use."
"Smaller businesses have seen great ROI due to the low investment and strong performance."
"Cloudflare DNS is widely used, and it's good for websites. If we use Cloudflare DNS and update one record, it updates in their office instantly."
"From what I've seen so far, there are no negatives to report as of yet"
"It is quite scalable, and we have not faced any issues with its scalability."
"I am impressed with the product's multiple features like security."
"It is integrated with AWS. So, it gives you a good first step."
"The solution operates smoothly at its baseline level, and we do not encounter any issues at that level."
"The solution's ease of use is the most valuable feature."
"The product has a good mechanism to analyze trends and trigger events."
"We have integrated the tool with Active Directory. The most important feature is that it's transparent and doesn't degrade the performance of our solution. Additionally, it's easy to configure, which is crucial for us. It's easy to use and set up and stops attacks on our servers. We haven't encountered any attack problems because the solution stops them in real-time. AWS Shield specifically focuses on defending against denial-of-service attacks, making it a great solution for that type of threat."
"The product is easy to use."
"The integration of various tools with Azure Firewall, like DDoS Protection, Web Application Firewall, and Azure Front Door, is quite effective."
"Azure DDoS Protection offers superior protection against denial-of-service attacks."
"DDoS Protection is simple to deploy and integrates seamlessly with the Azure environment. Ease of deployment is a crucial feature for us."
"The most valuable feature of Azure DDoS Protection is that it performs well."
"Azure is easy to set up and widely used by our clients."
"Azure is easy to set up and widely used by our clients."
"The integration of various tools with Azure Firewall, like DDoS Protection, Web Application Firewall, and Azure Front Door, is quite effective."
"This solution is the best option for us because we use a lot of Microsoft products. So, it is easy for us to deploy or integrate any features or products."
 

Cons

"Areas like how assessment, discovery, and payload are dealt with and how it all comes into your organization can be considered when trying to make suggestions to Cloudflare for improvements."
"The tool needs to improve caching of servers. The product needs to include PFX certificate as well."
"Cloudflare should add more documentation and pricing to the cloud version."
"The documentation could improve for Cloudflare DNS."
"In the last two years, there has been a certain amount of downtime when using the VDM."
"For the free and Pro plans, Cloudflare could use a simple bot to provide information to users. This would improve support, especially for less advanced users who utilize the free components."
"It would be helpful if the solution could continue evolving to compete with the other solutions on the market."
"DNS Management."
"The time taken to detect anomalies must be reduced."
"The management of it is a bit hard. If you don't engineer it on the front side, it is hard to go back in and change it. It could be improved in terms of architecture requirements and then ongoing support requirements as a secondary component to it. People tend to set up things like this, and they just expect it to work without the care and feeding that needs to go back into it either from an application team or a network environment team."
"We end up having to pay extra for features that AWS adds that we don't need."
"Perhaps the time required to detect anomalies can be reduced."
"The product should give users more flexibility to customize their security policies according to their requirements."
"The product needs to improve its logs and reports to make it read better."
"The product is expensive."
"Perhaps the time required to detect anomalies can be reduced. Presently, it takes some time to determine whether a situation is normal or abnormal."
"It's not very easy to configure, in my view."
"The implementation of Azure DDoS Protection results in a decrease in our bandwidth capacity and should be optimized to reduce resource consumption."
"I suggest adding more services and additional services, which would be beneficial."
"Azure DDoS Protection could improve on the reporting."
"Sometimes, it is hard for our staff to keep track of changes (in the GUI) between different projects, because there are constant changes. As a result, it is hard to manage, recall, and see all the features because they have been moved from one place to another."
"The dashboard lacks insights and user-friendliness, as most data is logged into metrics like Log Analytics workspaces."
"The visibility could be better. We would like to have better metrics, so we could see all the information in a central place."
"I have noticed some false positives with the Web Application Firewall yet not with DDoS Protection."
 

Pricing and Cost Advice

"That is one of the great features. I was able to access the majority of the features and services for free."
"The pricing depends on the usage, but the cheapest would be around 5,000 USD a month."
"So far I use free tier and happy with it. You can subscribe to business package if needed."
"The product's pricing is cheap."
"The solution is expensive when compared to other products but offers unlimited bandwidth."
"When you compare Cloudflare DNS to other solutions, such as Akamai, the price is reasonable."
"A free version of the solution is available."
"There are no additional costs beyond the standard licensing fees."
"The cost depends on traffic each month, so on average, it costs us between US$200 and US$300 per month."
"It depends on your subscription level and the volume that you're spending with AWS. So, it is very relative to the consumption alignment in your subscription level. It is a well-constructed, scalable pricing option, but it is relative to how much you're spending on AWS. Because the more you spend, typically, the more you get off on services like this. I find it to be comparable to other solutions."
"We pay $3000 per month for the solution."
"The tool's pricing is good."
"The tool is cheap."
"It is an expensive solution."
"You can test it for a certain period of time free of charge. You can have a free account. You can test it to compare its pros and cons with other products that you are testing."
report
Use our free recommendation engine to learn which Distributed Denial-of-Service (DDoS) Protection solutions are best for your needs.
845,589 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
20%
Computer Software Company
13%
Comms Service Provider
9%
Financial Services Firm
8%
Financial Services Firm
16%
Computer Software Company
15%
Comms Service Provider
8%
Insurance Company
7%
Computer Software Company
18%
Financial Services Firm
12%
Government
8%
Manufacturing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is the best DDoS protection solution for a big ISP for monitoring and mitigating?
Cloudflare. We are moving from Akamai prolexic to Cloudflare. Cloudflare anycast network outperforms Akamai static GR...
Which would you choose - Cloudflare DNS or Quad9?
Cloudflare DNS is a very fast, very reliable public DNS resolver. It is an enterprise-grade authoritative DNS service...
What do you like most about Cloudflare?
Cloudflare offers CDN and DDoS protection. We have the front end, API, and database in how you structure applications.
What do you like most about AWS Shield?
We have integrated the tool with Active Directory. The most important feature is that it's transparent and doesn't de...
What needs improvement with AWS Shield?
Perhaps the time required to detect anomalies can be reduced. Presently, it takes some time to determine whether a si...
What do you like most about Azure DDoS Protection?
Azure DDoS Protection offers superior protection against denial-of-service attacks.
What is your experience regarding pricing and costs for Azure DDoS Protection?
The pricing is somewhat costly, usually around $3,000 to $4,000 per month. Managing this expense is tough, especially...
What needs improvement with Azure DDoS Protection?
The dashboard lacks insights and user-friendliness, as most data is logged into metrics like Log Analytics workspaces...
 

Also Known As

Cloudflare DNS
No data available
No data available
 

Overview

 

Sample Customers

Trusted by over 9,000,000 Internet Applications and APIs, including Nasdaq, Zendesk, Crunchbase, Steve Madden, OkCupid, Cisco, Quizlet, Discord and more.
netflix, dow jones, mapbox, pearson, rovio, youview, moviestar planet, asurion, payplug, hour of code
Information Not Available
Find out what your peers are saying about AWS Shield vs. Azure DDoS Protection and other solutions. Updated: March 2025.
845,589 professionals have used our research since 2012.