


F5 Advanced WAF and Radware Cloud WAF Service compete in the web application firewall category. F5 Advanced WAF seems to have the upper hand due to its versatile capabilities, including seamless integration with proprietary modules and advanced threat detection features, while Radware Cloud WAF Service excels in efficient bot management and user-friendly automation.
Features: F5 Advanced WAF offers advanced DDoS protection, behavior analysis, and integration with proprietary modules, which users appreciate for stability and flexibility. IP intelligence and dynamic logging are frequently highlighted. Radware Cloud WAF Service is known for efficient bot management, user-friendly automation capabilities, and optional API security, making it easy to protect against known threats.
Room for Improvement: F5 Advanced WAF users often mention the need to improve reporting features and the complexity of its interface design. Simplifying integration and enhancing pricing structures are also recommended. Radware Cloud WAF users desire improved integration capabilities and better API data flow visibility. Enhanced reporting for DDoS analysis and easier rule configuration would also benefit the product.
Ease of Deployment and Customer Service: F5 Advanced WAF is primarily on-premises, with some hybrid cloud options, allowing versatile configurations but posing challenges in configuration complexity and support consistency. Radware Cloud WAF Service, primarily cloud-based, offers streamlined deployment and integration with commendable support that reduces operational overhead.
Pricing and ROI: F5 Advanced WAF is perceived as high-priced but offers significant ROI through robust security and compliance benefits, suitable for modular deployments. Radware Cloud WAF Service provides a cost-effective option with competitive pricing, especially appealing for scalable solutions, offering ROI through streamlined management and effective threat mitigation.
My experience with the pricing or licensing of Cloudflare Web Application Firewall is that many features can be accessed for free, so the pricing is definitely reasonable.
Time savings in daily operations come from the automatic learning and signature update reducing the need for constant manual rule management, allowing the security and network teams to spend significantly less time handling false positive application-related escalations.
Subscription models offer clearer ROI due to a more competitive pricing scheme.
The amount of attacks it protects against is immense, more than F5 Advanced WAF itself costs.
I wouldn't be able to give a number, but Radware Cloud WAF does save time for our staff due to the automation and excellent detection, which is invaluable.
With our on-prem solution, we spent a lot of time on maintenance tasks, OS updates, and ensuring appliances ran smoothly, but with Cloud WAF, all that is managed by the cloud team, allowing us to focus on alert analysis.
We get major insights from the analytics rules and dashboards, allowing us to pinpoint main issues.
I would rate the technical support with Cloudflare as excellent every time I've had to contact them.
The technical support of Cloudflare Web Application Firewall rates between five and seven at maximum.
Both response time and availability need to be improved.
If there is a bug, the support is usually understanding and resolves issues.
I have interacted with F5's support, and while I have no major complaints, they could improve.
On a scale from one to ten, I would rate the technical support that Radware provides for Cloud WAF Service a perfect ten.
I would give the Radware technical support a ten out of ten. They are definitely outstanding.
The support provided by Radware's Emergency Response Team is excellent.
The scalability of Cloudflare Web Application Firewall rates between 8 to 9, as it depends upon the use cases and what exactly the client needs.
I can run it in HA mode or even divide the traffic volume to the number of instances that I have based on their resource sizing.
The scalability of Radware Cloud WAF Service rates as a perfect ten out of ten, as we haven't encountered any scaling issues.
The scalability of the Radware Cloud WAF Service deserves a full ten, as it is definitely scalable.
In terms of scalability, it's also a 10 out of 10 because we are using Radware Cloud WAF Service for more than 60,000 employees in our organization, and it works perfectly fine.
The stability of Cloudflare Web Application Firewall deserves a perfect 10 out of 10.
F5 Advanced WAF has been very reliable and consistent for us; in our on-premise enterprise setup, it has been stable and predictable in day-to-day operations without any unexpected crashes or WAF-related downtime in production.
F5 Advanced WAF is pretty stable.
I have never encountered downtime, maintenance-related issues, or latency.
The stability of Radware Cloud WAF Service is excellent, and I would rate it as a ten.
The stability of Radware Cloud WAF Service is perfect; I would rate it a ten out of ten.
The product can improve by having more multitenancy capability, which is currently not available.
I think they're doing a good job with DNS and as support for any domains that I create or that my clients create, it's mandatory for me to ensure they have Cloudflare as their DNS provider.
And maybe something similar to Pushpin that Fastly has, which is an option where you can push messages that then can be scaled globally over the network.
Deployment training for F5 Advanced WAF is lacking and restricts growth by being inaccessible and costly for partners.
Overall, these are not blockers, merely enhancement opportunities, and once tuned, F5 Advanced WAF is very stable and reliable; improving usability, reporting, and onboarding would make it even more effective for larger environments.
There is excellent clarity in the LTM and the WAF.
It would be beneficial if we could perform POST requests and integrate our applications more effectively.
The documentation is not up to par, as while the platform's system is robust, the documentation, particularly for API integration, could be more developer-friendly with real-world use cases.
Improving dashboard capabilities to provide this information clearly for management is crucial.
Licensing is capacity-driven, so you need careful planning based on traffic volume and use cases, and adding features such as Bot Protection impacts costs; once licensing is clear and sized correctly, there are no surprises.
Subscription models have competitive pricing, while perpetual licenses involve an upfront higher cost.
The price is affordable and satisfactory.
Pricing could be more competitive, especially for smaller customers.
I find Radware Cloud WAF to be a quite expensive product compared to others.
The pricing is not cheap; it is expensive, but it is effective.
The custom rules and the geo-redundant geographical rule feature, which allows me to implement geographical rules for customers, add significant value.
The best features of Cloudflare Web Application Firewall are multiple, including the WAF, rate limiter, and bot attack protection.
Cloudflare Web Application Firewall's advanced reporting and analytics tools add a layer that we're able to visualize and see before it actually hits the local firewall.
The Advanced Attack Signature database is very strong and regularly updated, effectively blocking SQL injections, cross-site scripting, command injections, and file inclusion attacks while allowing selective enabling or disabling of signatures to avoid blocking genuine traffic.
The perpetual license, despite an initial higher cost, lacks transparency regarding support expiration.
It contains the logic of both negative and positive security combined.
The most important aspect of Radware Cloud WAF is that it is over the cloud, offering a comprehensive solution that includes WAF, API protection, bots, and Layer 7 DDoS.
It has features such as API security that protect against advanced attacks, including business logic attacks.
The automated analytics for looking at events in Radware Cloud WAF Service are working for us; the automatic event correlation is very beneficial to analyze how the alerts and events occur and visualize the patterns of network traffic and other traffic going in and out from the application via Radware Cloud WAF Service.
| Product | Mindshare (%) |
|---|---|
| F5 Advanced WAF | 7.1% |
| Radware Cloud WAF Service | 2.2% |
| Cloudflare Web Application Firewall | 5.4% |
| Other | 85.3% |

| Company Size | Count |
|---|---|
| Small Business | 16 |
| Midsize Enterprise | 6 |
| Large Enterprise | 6 |
| Company Size | Count |
|---|---|
| Small Business | 26 |
| Midsize Enterprise | 15 |
| Large Enterprise | 31 |
| Company Size | Count |
|---|---|
| Small Business | 9 |
| Midsize Enterprise | 11 |
| Large Enterprise | 41 |
Cloudflare Web Application Firewall's intuitive dashboard enables users to build powerful rules through easy clicks and also provides Terraform integration. Every request to the WAF is inspected against the rule engine and the threat intelligence curated from protecting over 27 Million websites. Suspicious requests can be blocked, challenged or logged as per the needs of the user while legitimate requests are routed to the destination, agnostic of whether it lives on-premise or in the cloud. Analytics and Cloudflare Logs enable visibility into actionable metrics for the user.
F5 Advanced WAF is a web application security solution for financial and government sectors, e-commerce, and public-facing websites. It offers protection against various attacks, including botnets, web scraping, and foreign entities. The solution can be deployed on-premises or in the cloud and is often used with other security tools. Its most valuable features include DDoS and DNS attack protection, SSL uploading, anomaly detection, and the ability to input custom rules.
F5 Advanced WAF has helped organizations to expose more services to the public while providing an extra layer of protection, preventing revenue loss, and securing connectivity.
Radware’s Cloud WAF provides enterprise-grade, continuously adaptive web application security protection. Based on Radware’s ICSA Labs certified, market-leading web application firewall, it provides full coverage of OWASP Top-10 threats and zero-day attacks, while implementing both negative and positive web application security models to automatically adapt protections to evolving threats and protected assets.
Radware’s Cloud WAF offers full web security protection including OWASP Top-10 coverage, advanced attack protection and 0-day attack protection by implementing both negative and positive web application security models. It provides organizations “frictionless” application protection by automatically detecting and protecting new web applications as they are added to the network through automatic policy generation technology.
We monitor all Web Application Firewall (WAF) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.