What is our primary use case?
Currently for WAF, we are moving to another device, F5. We are not using Imperva.
F5 BIG-IQ is the Web Application Firewall we're currently using, but regarding the Imperva products, now we are floating a bid for our DAM, Database Activity Monitoring, not firewall.
We mainly use F5 BIG-IQ to protect our web-based applications, such as our email and website, so we use it as a web-based application firewall for those services.
We use it for all interfaces, including internet banking.
Currently we have two sites, and on those two sites, we have F5 WAF 448 devices, so we are managing it centrally through F5 BIG-IQ.
We are still doing the monitoring part with F5 BIG-IQ. For example, we have many VIPs and services, so we are creating many VIPs, but it remains a challenge.
What is most valuable?
The configuration part is not complex for F5 BIG-IQ, which is one thing we love, but regarding the visibility, especially on the attack set sectors, it remains our challenge. Maybe it's our deployment method, we don't know. We involve our vendors most of the time to support us, but it was difficult. Sometimes the log server goes down, so we have to configure it again. The visibility part and the dashboard have weak features. Currently, we are giving it one year, after which we plan to change it.
With F5 BIG-IQ, we are tuning the rules and security features with the vendors, but in some test cases from our audit team, it still fails to capture issues, so we have to add each configuration manually. It is not flexible in that aspect.
What needs improvement?
The configuration part is complex for F5 BIG-IQ. The simplicity and visibility part needs improvement.
The dashboard, especially the analytics part, needs to be more simple and presentable. For the security part, it is difficult to present to our management, so we have to capture it and prepare manual reporting options rather than getting them directly from the system.
The automation part in F5 BIG-IQ is limited; we are still using it only for load balancing for some services. We haven't integrated it with our Accesso or implemented any automation options.
The setup process for F5 BIG-IQ would rate a five out of ten.
For how long have I used the solution?
We are still working with F5 BIG-IQ currently.
What do I think about the stability of the solution?
For stability, F5 BIG-IQ rates a two or three because currently we are integrating it with our third party as a port forwarding service. We created many VIPs, but on average, weekly, we lose three to five connections, making the troubleshooting part a headache for us. We have to delete the VIP and create another VIP to test it. It's not stable. Every time the vendor onboards and performs the self-status check, they suggest something, we implement that suggestion, but it continues to have many issues.
How would you rate stability?
What do I think about the scalability of the solution?
F5 BIG-IQ performs better on the scalability part. Currently, we added the WAF module on the device and additional VIPs, so it would rate an eight out of ten.
How would you rate scalability?
How are customer service and support?
From the technical support perspective, it rates a three out of ten.
It is challenging with F5 BIG-IQ. We open tickets and contact the vendor; they ask us to share the log files with them. We do that and wait another two days, constantly following up with them.
Currently, we were using a partner for F5 BIG-IQ, but now during the upgrade process, we plan to engage directly with the vendors because for every support issue and ticket opening, we go through our partner, which was another challenge.
How would you rate customer service and support?
Which solution did I use previously and why did I switch?
Previously, we were using F5 BIG-IQ for load balancing purposes, and after acquiring it, we moved to using F5 BIG-IQ for WAF purposes for more than a year.
How was the initial setup?
F5 BIG-IQ needs improvements in the dashboard, especially the analytics part, which should be more simple and presentable. The security part is difficult to present to our management, requiring us to capture and prepare manual reporting options instead of getting them directly from the system.
What about the implementation team?
The automation part in F5 BIG-IQ is limited; we are still using it only for load balancing for some services. We haven't integrated it with our Accesso or implemented any automation options.
What was our ROI?
The return on investment is satisfactory.
What's my experience with pricing, setup cost, and licensing?
From the pricing perspective, F5 BIG-IQ rates an eight out of ten as it's reasonably priced.
How would you rate pricing?
Which other solutions did I evaluate?
We are still not sure which solution to convert to regarding process automation tools, but we plan to evaluate other products. We are still in the planning phase and haven't determined which vendors to compare with.
What other advice do I have?
Currently, we were using a partner for F5 BIG-IQ, but now during the upgrade process, we plan to engage directly with the vendors because for every support issue and ticket opening, we go through our partner, which was another challenge. My overall rating for F5 BIG-IQ is four out of ten.
Which deployment model are you using for this solution?
On-premises
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other