

F5 BIG-IP LTM and AWS WAF compete in the application delivery and security space. F5 appears to have the upper hand in feature set and performance, while AWS WAF excels in cloud integration and scalability.
Features: F5 BIG-IP LTM offers robust load balancing, SSL offloading, and iRules that enable advanced traffic management customization. It is particularly noted for high hardware performance even in smaller appliances and adeptness in complex application environments. AWS WAF provides seamless cloud-native integration for easy deployment within AWS, offering scalable web application protection and appealing pay-as-you-go pricing.
Room for Improvement: F5 BIG-IP LTM is criticized for its complexity, high cost, and lack of a pay-as-you-go model. Users cite a need for better firmware quality control, enhanced reporting capabilities, and more intuitive UI. AWS WAF users seek advanced security features like sophisticated DDoS protection and bespoke rule management, alongside improvements in automation and customer support.
Ease of Deployment and Customer Service: F5 BIG-IP LTM is primarily employed in on-premises or hybrid setups, presenting deployment complexities for new users but comes with extensive customer support, albeit with mixed feedback. AWS WAF, mainly used in public cloud environments, stands out for ease of deployment and generally favorable customer service, though its user-managed model affects reliance on direct support.
Pricing and ROI: F5 BIG-IP LTM is perceived as a premium solution with a significant price tag, which can be challenging for smaller businesses. However, firms that leverage its comprehensive features report high satisfaction with ROI through enhanced security and performance. AWS WAF's budget-friendly, pay-as-you-go pricing structure offers solid value, particularly for AWS ecosystem adopters, with satisfactory ROI due to competitive pricing and scalability.
With AWS WAF, it is easier for us to block unwanted malicious DDoS attacks and threats from coming into our web application.
The major return on investment is the security of our data.
They reach out when you send them a ticket, and within 24 hours or less, someone is able to get back to you to solve your problem.
Resolving issues can take time because the support personnel may lack product expertise, leading to delays.
I would rate the technical support of F5 BIG-IP Local Traffic Manager (LTM) nine out of ten.
Overall, my experience with F5 is very good compared to Radware.
AWS WAF does scale in the sense that it is fully managed and has automatic scaling.
Since it protects web applications from common attacks such as SQL injection and XSS, it is very stable.
We faced issues with AWS WAF when writing the custom rules.
In terms of reliability, I would rate AWS WAF about six out of ten due to the need for improved signature sets.
Compared to firewalls, WAFs generally provide limited stateful analysis capabilities.
If there are scripts in the requests, we should be able to filter those requests to see if there are any scripts running from them.
Features like bot protection or DDoS mitigation, available with other WAF vendors, do not come natively with AWS WAF.
The pricing of F5 BIG-IP Local Traffic Manager (LTM) is on the higher side compared to competitors, but it is worth it.
The licensing cost for AWS WAF is just pay-as-you-go; it is a service-based model.
Due to our status as an AWS shop, AWS WAF is cost-effective for us, and we benefit from discounts due to our extensive use of AWS services.
The product is costly.
The biggest benefit of AWS WAF for us is to filter malicious requests, so we can protect our environment and application from malicious actors.
It has also helped to improve the posture of our application, prevent all DDoS attacks, and unnecessary traffic and SQL injection that is reducing the performance of our application.
I switched from other vendors to prioritize AWS WAF for better control within our infrastructure.
The impact of SSL offloading on reducing server load and latency is very much positive because whatever traffic we receive, we encrypt at our F5 BIG-IP Local Traffic Manager (LTM) level, which has definitely reduced the additional load and SSL decryption load on the servers, so it has very much helped us and it is very smooth; it will not take much time and will not impact our regular traffic.
One of the most beneficial features of F5 BIG-IP Local Traffic Manager (LTM) is its ability to identify compromised traffic and its capabilities in authentication.
| Product | Market Share (%) |
|---|---|
| AWS WAF | 5.6% |
| Fortinet FortiWeb | 7.8% |
| Imperva Application Security Platform | 7.8% |
| Other | 78.8% |
| Product | Market Share (%) |
|---|---|
| F5 BIG-IP Local Traffic Manager (LTM) | 14.9% |
| NetScaler | 13.0% |
| Fortinet FortiADC | 9.8% |
| Other | 62.3% |


| Company Size | Count |
|---|---|
| Small Business | 22 |
| Midsize Enterprise | 12 |
| Large Enterprise | 26 |
| Company Size | Count |
|---|---|
| Small Business | 62 |
| Midsize Enterprise | 32 |
| Large Enterprise | 85 |
AWS Web Application Firewall (WAF) is a firewall security system that monitors incoming and outgoing traffic for applications and websites based on your pre-defined web security rules. AWS WAF defends applications and websites from common Web attacks that could otherwise damage application performance and availability and compromise security.
You can create rules in AWS WAF that can include blocking specific HTTP headers, IP addresses, and URI strings. These rules prevent common web exploits, such as SQL injection or cross-site scripting. Once defined, new rules are deployed within seconds, and can easily be tracked so you can monitor their effectiveness via real-time insights. These saved metrics include URIs, IP addresses, and geo locations for each request.
AWS WAF Features
Some of the solution's top features include:
Reviews from Real Users
AWS WAF stands out among its competitors for a number of reasons. Two major ones are its user-friendly interface and its integration capabilities.
Kavin K., a security analyst at M2P Fintech, writes, “I believe the most impressive features are integration and ease of use. The best part of AWS WAF is the cloud-native WAF integration. There aren't any hidden deployments or hidden infrastructure which we have to maintain to have AWS WAF. AWS maintains everything; all we have to do is click the button, and WAF will be activated. Any packet coming through the internet will be filtered through.”
F5 BIG-IP LTM optimizes the speed and reliability of your apps via both network and application layers. Using real-time protocol and traffic management decisions based on app and server and connection management conditions, and TCP and content offloading, BIG-IP LTM dramatically improves application and infrastructure responsiveness. BIG-IP LTM's architecture includes protocol awareness to control traffic for the most important applications. BIG-IP LTM tracks the dynamic performance levels of servers and delivers SSL performance and visibility for inbound and outbound traffic, to protect the user experience by encrypting everything from the client to the server.
BIG-IP LTM provides enterprise-class Application Delivery Controller (ADC). You get granular layer 7 control, SSL offloading and acceleration capabilities, and advanced scaling technologies that deliver performance and reliability on-demand. The highly optimized TCP/IP stack combines TCP/IP techniques and improvements in the latest RFCs with extensions to minimize the effect of congestion and packet loss and recovery. Independent testing tools and customer experiences show LTM's TCP stack delivers up to a 2x performance gain for users and a 4x increase in bandwidth efficiency.
We monitor all Web Application Firewall (WAF) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.