Sign in
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

Cloud Protection

Radware | 1

Reviews from AWS customer

0 AWS reviews
  • 5 star
    0
  • 4 star
    0
  • 3 star
    0
  • 2 star
    0
  • 1 star
    0

External reviews

22 reviews
from and

External reviews are not included in the AWS star rating for the product.


    Nishant Kandpal

Behavioral analytics and AI automation enhance security and performance

  • June 18, 2025
  • Review provided by PeerSpot

What is our primary use case?

We are using the service for DDoS protection, and all applications that are accessed over the internet need to be put behind the Radware WAF. Currently, we are using 60 to 65 licenses of Radware WAF where we have onboarded these internet-exposed applications. 

How has it helped my organization?

Our package includes protection from the Top 10 OWASP attacks and behavioral learning, which is important for traffic monitoring. We focus on low latency mitigations and granular controls in application level policies. When onboarding any application, we work with our stakeholders who inform us which controls should be enabled or disabled. We communicate with the Radware team, and after learning the traffic patterns for 10 to 15 days in the normal mode, Radware provides documentation to share with our stakeholders before moving to protection or block mode.

We are the owners of the Radware DDoS licenses, and there is a dedicated team providing 24/7 real-time monitoring of the product. The detection and prevention capabilities are very good.

What is most valuable?

It provides protection for network applications and infrastructure level, and the best part is the behavioral-based detection that Radware provides us, along with real-time signature creation. We also have some applications where we have botnets running, and it provides protection against them. 

Web DDoS targets the application layer, which is layer seven of the OSI model. For that, we focus on the Web DDoS technique for bot-based attacks because we have many applications where bots are running. We also face many random URL attacks every day, and it protects against malicious or suspicious random URL attacks.

It ensures both security and performance. It achieves this by learning behavior patterns and providing protection without blocking normal traffic. These are some of the features I am particularly satisfied with in this product.

What needs improvement?

There should be some extra layer of security and a method of advanced rate limiting. We can limit the number of IPs or URLs per session and per country. There should be improved bot management integration that mitigates bot-based DDoS attacks completely.

For how long have I used the solution?

I have been using Radware DDoS for the last two to three years.

What do I think about the stability of the solution?

It's stable. I would rate it a nine out of ten for stability. 

What do I think about the scalability of the solution?

It's scalable. I would rate it a nine out of ten for scalability.

We have 65 licenses.

How are customer service and support?

I'm from India, and we have a dedicated technical account manager who is very supportive. Additionally, we have a large partner team that is a gold partner of Radware. They provide a lot of support as well. Whenever I encounter any issues, I can easily reach out to Radware. I typically submit a ticket for any malicious activity that occurs, and I usually receive a resolution within two to three hours.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

Many years back, I used Barracuda WAFs. I cannot comment on what Barracuda is currently doing in the WAF area, but that solution was good. However, with Radware DDoS, the console is very easy to learn. There is no complexity, and everyone can use the console and easily see all the features. In the future, I will definitely continue with Radware DDoS.

How was the initial setup?

The setup is easy as it is a cloud-based service. It does not present any significant challenges and takes only one or two days to implement.

What was our ROI?

It saved us 40% to 50% of time, money, and resources. 

What's my experience with pricing, setup cost, and licensing?

It is not expensive. It is medium range. The pricing is good, as we recently renewed our licenses from Radware.

What other advice do I have?

I've been using this solution for the past two and a half years at my company, and I’m pleased to share that we’ve successfully achieved all of our use cases with their services. We are very happy with the product, which effectively detects and prevents external attacks. We also recommend Radware DDoS to other customers because it truly is one of the best products available.

According to what I learned from the Radware DDoS team, the new features are AI-powered, which makes everything faster and more efficient. The best part is the auto policy with zero-touch tuning. We do not require much tuning as we can auto-apply the policy, which automatically optimizes itself using behavior analytics. We have recently purchased API discovery and protection features, which are working very effectively.

We purchased the API protection plan. Previously, testing was done manually while creating software. We have purchased the Radware API discovery and API protection plan, which has reduced our time effort and enhanced quality checks. There was only one incident in the last two to three years, which Radware WAF handled very effectively. We had only two to three hours of downtime for that particular application.

I recommend Radware because of its features, including AI-powered Web DDoS protection, zero-touch tuning, auto policy, API discovery and protection, and advanced bot manager. They have excellent device fingerprinting, behavior analytics, and enhanced threat intel feed that they provide to customers. These are the main reasons I would recommend other customers to choose Radware. 

I would rate this solution a nine out of ten.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Google


    Tanuj-Garg

Multi-layered defense ensures robust protection and optimized resources

  • May 12, 2025
  • Review provided by PeerSpot

What is our primary use case?

We are the largest data center company in Asia with almost six data centers in India, and we are planning to expand beyond India. We use Radware DDoS Protection Service for protecting our infrastructure and providing Cloud DDoS as a service to around 500 end customers who have hosted their infrastructure on our cloud co-location.

How has it helped my organization?

We've been using it in a fully-manged way, and always on an on-demand. 

We began to see value almost a year back. It took a year to streamline when using it, and then we started we started onboarding our customer on the same pipe. 

We wanted to protect our own data center. We are India's only cloud. We are in direct or hyperscale. We are in direct competition with Azure, AWS, and all. And at the same time, we have lots of ISP networks. 

Our environment is hybrid. We are the largest data center. Most of the infrastructure is on-premise, and then we have India's first AI cloud and India's first hyperscale. It took almost a year to streamline everything. 

What is most valuable?

Radware DDoS Protection Service is valued for its multi-layered defense protection, always-on and on-demand service, zero-day protection with adaptive behavioral-based mitigation, DNS and infrastructure protection, and SSL attack mitigation. The solution's multi-layer protection covers volumetric, protocol-based, and application layer attacks.

They offer a very effective response against DNS attacks. 

Regarding behavior-based detection technology, in terms of real-time detection, it has been able to reduce false positives. We have pretty good experience with them. The geolocation is pretty good for an organization such as ours. We can block anything from certain regions, like North Korea or China, etc, cetera. It works alongside machine learning. They can update policies globally in less than ten seconds, which really helps with false positives.

During a DDoS attack, it ensures legitimate users are not affected. We're working on a hybrid solution, so we have Defence Pro devices on our side and unlimited mitigation capabilities on the cloud. 

What needs improvement?

Their Cyber Security Controller portal, including its GUI and dashboard, could be more intuitive so CXOs can easily understand them. 

Improvements in visualization for reporting also need consideration. This feedback has already been provided directly to Radware DDoS Protection Service.

For how long have I used the solution?

We have been using the solution for the past 12 years or possibly more.

What do I think about the stability of the solution?

Lately there have been some issues with stability, which results in a stability rating between eight and nine out of ten.

What do I think about the scalability of the solution?

Scalability has never been a challenge due to the hybrid cloud model and the Cloud DDoS capability, which allows scaling as demand increases.

How are customer service and support?

We have 24/7 access to Radware DDoS Protection Service's Emergency Response Team who collaborate during ongoing attacks, ensuring less than one second mitigation for L3/L4 and less than ten seconds for L7. This is supported by a direct relationship with key personnel at Radware DDoS Protection Service.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

We conducted a POC with F5 and Arbor Networks. We chose Radware DDoS Protection Service due to its superior capabilities and willingness to host a scrubbing center, minimizing latency.

How was the initial setup?

The initial setup was quite easy, aided by a team experienced with Radware DDoS Protection Service for well over a year.

What about the implementation team?

Implementation was handled internally by a team of six to seven team members who were experienced with Radware DDoS Protection Service.

What was our ROI?

The ROI was realized after a year, giving a year-on-year return of around 20% to 30%. The hybrid approach optimized infrastructure costs and personnel resources.

What's my experience with pricing, setup cost, and licensing?

We have a premium cost setup to align with a tier four uptime certified data center, storing and protecting critical infrastructure.

Which other solutions did I evaluate?

Radware DDoS Protection Service stood out due to its better capability and flexible hosting options that reduced latency.

What other advice do I have?

Radware DDoS Protection Service offers enterprise-grade protection across all layers from L3 to L7, with hybrid flexibility and global scrubbing network. 

On a scale of one to ten, I rate this solution an eight or nine.

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other


    Yogeswar Nakka

Automation improves security by replacing manual interventions and speeding up threat response

  • April 15, 2025
  • Review provided by PeerSpot

What is our primary use case?

My use case is that whatever traffic is coming from the internet, all that traffic is being monitored. It is sent to their scrubbing center, and from there, anything non-genuine gets blocked as per IOC, and the genuine traffic is sent to my inside applications.

How has it helped my organization?

Since implementing Radware DDoS Protection Service, I have been able to see DDoS attack sources and their origins. We didn't have the capacity to visualize DDoS attacks before. Blocking is also very fast compared to before, around 18 seconds of blocking time.

In my organization, I have observed many SQL injections and cross-site attacks, alongside heavy bandwidth utilization, which Radware DDoS Protection Service has been able to mitigate effectively.

Since implementing Radware DDoS Protection Service, I have experienced a transformation. I didn't have any DDoS mitigation tool previously, and my internet bandwidth was completely utilized by DDoS attacks. It is now filtering at the scrubbing center, especially during volumetric attacks.

Radware DDoS Protection Service ensures that legitimate users are not affected during DDoS attacks by communicating with my Anti-DDoS DefensePro tool. Based on configured policies, the scrubbing center can pass the traffic while already blocking the designated attackers' IPs.

Before implementing automation, my security monitoring team had to continually monitor DDoS attacks around the clock and send IPs for approval to the operations team for blocking, whereas now, it automatically blocks based on policies.

The time consumption in our processes has decreased compared to before because the internal ticketing process required approval from respective authorities, while now it is completely automated, allowing immediate blocking.

The solution effectively prevents attacks much earlier, making monitoring less burdensome than before.

Compared to other products, Radware DDoS Protection Service provides superior performance, as it blocks attacks within 18 seconds.

Previously, managing one incident took around three hours for complete approval and implementation, but now the Anti-DDoS tool immediately blocks particular IPs within 18 seconds.

With the SecOps dashboards for monitoring and reporting metrics, we can continuously monitor our Security Operations Center 24/7. We have absolute visibility.

The dashboard can provide historical information on objects and networks for three months, and we also have a backup tool that retains data for six years, per my industry policies.

What is most valuable?

The best feature of Radware DDoS Protection Service is the automation. Previously, manual intervention was necessary, and for incoming attacks, we had to inform the respective security and operations teams, whereas now, it is an automated process that blocks attacks based on policies by default.

This automation has significantly improved my organization's security compared to before. We didn't have that much automation previously, but now, with multiple policies, we can prevent attacks effectively.

What needs improvement?

I want to improve the blocking time; it should be within 10 seconds because 18 seconds allows multiple transactions in the financial industry. I want the blocking time to be better than 18 seconds.

For how long have I used the solution?

I have been using the solution for the last six months.

What do I think about the stability of the solution?

Radware DDoS Protection Service is stable. For the last six months, I have not faced any issues, so it is a good solution.

In my opinion, there is no downtime experienced with Radware DDoS Protection Service due to external network redundancy.

What do I think about the scalability of the solution?

It is scalable and user-friendly. My team members understand the policies and dashboards easily.

How are customer service and support?

I would rate their customer support positively. Before using Radware, I experienced some delays with another product, but with Radware, we have immediate connections with high-level technical support.

I would rate Radware's customer support an eight out of ten because when we had initial configuration issues, support resolved the issues after a couple of escalations.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

Before Radware DDoS Protection Service, I didn't have any DDoS solution at all, just manual processes.

How was the initial setup?

The deployment of Radware DDoS Protection Service is very simple. It is user-friendly.

Radware DDoS Protection Service does not require separate maintenance, and there is minimal downtime during maintenance periods, such as during firmware upgrades of the Anti-DDoS tool.

What about the implementation team?

There are five members in my team who work with Radware DDoS Protection Service.

What's my experience with pricing, setup cost, and licensing?

I didn't check pricing of other providers in depth but verified with two, and found Radware to be significantly cheaper compared to F5.

Which other solutions did I evaluate?

I chose Radware because, as per Gartner, it is recognized in the market as the number one anti-DDoS solution.

What other advice do I have?

I would recommend Radware DDoS Protection Service fully because I have observed improvements in bandwidth speed.

I would rate Radware DDoS Protection Service a ten out of ten.


    Gianluca Tranelli

Protection Strengthens Internet Security with Effective Features

  • March 21, 2025
  • Review provided by PeerSpot

What is our primary use case?

The main use case for Radware DDoS Protection Service is to protect our websites, mail server, and DNS servers published on the internet.

In terms of that protection, it has been performing very well; I have not noticed specific instances where it stood out.

What is most valuable?

The best features Radware DDoS Protection Service offers for my organization are the ERT feeds.

The ERT feeds, which are based on Radware intelligence services, have been beneficial to my organization because they block a lot of malicious IP addresses and botnets.

Radware DDoS Protection Service has positively impacted my organization because we are more protected against attacks from the internet.

What needs improvement?

I think Radware DDoS Protection Service could be improved by enhancing the network analytics features.

For how long have I used the solution?

I have been using Radware DDoS Protection Service for three years.

What do I think about the stability of the solution?

In terms of protection, Radware DDoS Protection Service performs very well, and I have not noticed specific instances where it stood out.

How was the initial setup?

I have no experience with the configuration process since a colleague of mine configured the service with the support of Radware.

Which other solutions did I evaluate?

I find Radware DDoS Protection Service helpful and do not use any other solution.

What other advice do I have?

On a scale of one to ten, I rate Radware DDoS Protection Service a nine because it is very easy to use and very effective as a service. However, there is room for improvement in the network analytics feature.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other


    Haris Ishaq

Superb incident visibility and real-time threat blocking with outstanding support and advanced reporting

  • March 20, 2025
  • Review provided by PeerSpot

What is our primary use case?

We primarily use Radware DDoS Protection Service for ensuring network security and protecting against cyber threats. Our level two support engineers are hands-on with the service, utilizing it for network protection and incident visibility.

What is most valuable?

The most valuable feature of Radware DDoS Protection Service is its reporting capability. It allows us to see live attacks and understand the incoming traffic. The support from Radware is also exceptional, as they are always willing to jump on a call to help solve issues and improve our network design. Additionally, the service effectively blocks threats in real time, offering wide protection and preventing false positives.

What needs improvement?

I suggest improvements to the user interface to make it easier to use and to find the necessary data for analysis. Although the data is present, accessing it for analysis could be more simplified.

For how long have I used the solution?

I have been using Radware DDoS Protection Service for all of the year and a half that I have been at the current company.

What do I think about the stability of the solution?

We have never encountered any issues with stability. There are no problems with lagging or crashing.

What do I think about the scalability of the solution?

Scalability is well-supported by Radware. With their help, we have updated our network design to ensure scalability.

How are customer service and support?

Radware's support is first class. Their responses are quick, and they are very engaging, providing assistance almost instantly when needed.

How would you rate customer service and support?

Neutral

Which solution did I use previously and why did I switch?

In my previous ISP, I experienced different services, but Radware stands out as a luxury to have.

How was the initial setup?

The initial setup was difficult for me because I didn't receive training. The interface is advanced, and this contributed to the challenges I faced at the beginning. However, with Radware's support, I was able to learn and adapt quickly.

What's my experience with pricing, setup cost, and licensing?

Radware pricing is on the high end, suitable more for larger organizations. They have different options, but I feel it's a costly solution.

Which other solutions did I evaluate?

I wasn't part of the decision-making process when Radware was chosen at my current company, but in my previous ISP, I had exposure to different services.

What other advice do I have?

I recommend gathering the necessary budget to go with Radware services. The cheapest option may save money initially but could cost more in the long run. I rate the solution 10 out of 10.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other


    Pankaj Kaushik

Automatic mitigation protects networks seamlessly and enhances real-time user experience

  • February 14, 2025
  • Review provided by PeerSpot

What is our primary use case?

We use the solution to detect all incoming and outgoing traffic to our environment and to determine if there are any anomalies or if it is attack-free.

We wanted a way to defend our network from all kinds of attacks, like UDP segmentation attacks, HTTPS requests, syn attacks, etc.

What is most valuable?

The best feature is the auto mitigation of the DefensePro solution. It automatically begins mitigation in milliseconds when an attack is detected. 

During high-volume attacks, such as those during the Christmas and New Year periods, the solution protected our network perfectly, without any disturbance to our real-time users. It is really reliable. 

We use the SecOps center to manage all the policies being created. All of our devices are managed from that console.

When it comes to user experience, the GUI is outstanding. The CLI interface is also amazing because it gives us a proper set of commands. When there is a small difference in the command, it doesn't transfer, which is absolutely amazing. It somehow neglects any error in the investigation or troubleshooting steps. Using the management to console is the best. It's usable, even for a beginner engineer. Anybody I give it access to can use it without any issues.

I would rate the cloud DDoS management system for analyzing attacks on my organization an 8.5 out of ten. 

The best feature is the auto mitigation. It only takes a split millisecond to begin the mitigation of an attack.

We have seen a lot fewer false positives since implementing this solution. It has reduced the false positives by 25%.

The average amount of time it takes for the solution to detect an incident is around twelve to thirty seconds from the detection to the mitigation.

With Radware DDoS Protection Service, two people are able to manage the resource completely right now. We are able to do the protection. It has cut the resources a lot.

What needs improvement?

There's room for improvement in customization and integration. It would be better if routers and external firewalls could integrate with the solution. Additionally, when bugs are detected in a version during upgrades, there should be better communication about these bugs. They need to focus more on providing process documents highlighting bugs and their solutions.

Sometimes there is leakage in the network. Attacks go through without getting detected. It's a deployment issue, not a Radware problem. We don't use it to its fullest capacity.

Whenever there is an incident, it sometimes lacks the proper information about the attack, but most of the time, it's really reliable.

For how long have I used the solution?

We have been using the solution since 2019. It was deployed for our telecommunication partners, and we started managing it in June 2022.

What do I think about the stability of the solution?

There has been some downtime, which affects the rating. I would rate stability as nine point five.

What do I think about the scalability of the solution?

Scalability is excellent. On a scale of one to ten, it is a ten because we can use it to its maximum capability.

How are customer service and support?

Our technical support is amazing. The expert and three-level tech support we get on the premium package are very thorough and knowledgeable.

How would you rate customer service and support?

Neutral

Which solution did I use previously and why did I switch?

I have not used any DDoS solution before Radware. Before Radware, this decision was made by higher management and the customer itself.

How was the initial setup?

During the deployment, especially the recent migration to the cloud, it might have taken around five to six months. The upgrade process and the hardware delivery process take time.

We have around 26 data centers, but the digital solution is deployed into our four central sites, through which all the network from the outside network and our internal network is connected.

What other advice do I have?

Whenever you are going to deploy Radware DDoS solution, plan for the next ten years. Consider your company's growth and ensure your deployment can last without needing upgrades. 

On a scale from one to ten, I rate the solution as ten.

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other


    Idan Ben Nun

Quick ERT team response improves cloud security against attacks

  • November 12, 2024
  • Review provided by PeerSpot

What is our primary use case?

We use Radware's Cloud DDoS Protection Service to safeguard Cloud Graph with Layer Seven protection.

To mitigate Layer Seven DDoS attacks on our servers, we implemented Radware Cloud DDoS Protection Service.

How has it helped my organization?

Radware Cloud DDoS Protection Service does an excellent job at blocking threats quickly.

The Cloud DDoS management system provides clear and easy-to-understand visibility into incidents.

The management system is user-friendly.

The Cloud DDoS management system provides comprehensive insights and detailed visibility, simplifying attack analysis.

Before implementing Radware Cloud DDoS Protection, our organization experienced frequent downtime due to numerous attacks, particularly targeting specific assets. Migrating to Radware Cloud has eliminated downtime, allowing our business to operate uninterrupted even during attacks. The benefits were immediate, and we now receive timely notifications from the ERT team at the onset of any attack.

The web DDoS protection has significantly reduced our false positive rate.

Web DDoS Protection allows legitimate users to continue using our site even if it is under attack.

Radware immediately provides attack notifications, and the ERT team offers updates. If an attack disrupts our site, technical support can restore service within 20 hours.

What is most valuable?

I appreciate Radware Cloud DDoS Protection Service for its responsive ERT team and the ease of migrating our sites to the platform. The intuitive user interface makes the entire process seamless and efficient.

What needs improvement?

The time it takes to upload a site to the cloud is critical when under attack. If a site is down, a quick response to migrate the site to the cloud is essential. It currently takes about 15 to 20 minutes for the process to complete, which should be minimized.

For how long have I used the solution?

I have been using the Radware Cloud DDoS Protection Service for one year.

What do I think about the stability of the solution?

Radware Cloud DDoS Protection Service is stable, and we don't experience bugs or glitches.

What do I think about the scalability of the solution?

I would rate the scalability of Radware Cloud DDoS Protection Service ten out of ten.

How are customer service and support?

The technical support responds quickly, but sometimes the resolution takes time.

How would you rate customer service and support?

Neutral

How was the initial setup?

The initial setup was complex due to our organization's network being complicated, not because of Radware Cloud. We had an issue with the DNS migration during the deployment. The deployment took around 20 minutes.

What about the implementation team?

Two people from Radware and two people from our organization were involved, totaling four people.

What other advice do I have?

I would rate Radware Cloud DDoS Protection Service ten out of ten.

Our five-person team is the only people in our organization who use Radware Cloud DDoS Protection Service.

Radware does the maintenance every two weeks.

I recommend Radware Cloud DDoS Protection Service because the system works well, the web interface is intuitive and easy to use, and the technical support is okay.

Which deployment model are you using for this solution?

Hybrid Cloud


    Ajay Tyagi

Successfully protects from DDoS attacks

  • November 11, 2024
  • Review provided by PeerSpot

What is our primary use case?

We are using DefensePro for protecting our network and infrastructure from DDoS attacks.

How has it helped my organization?

DefensePro is very important for us for protecting our organization against DDoS threats and attacks. We are an ISO 27001-certified company. For compliance purposes, we have implemented DefensePro.

What is most valuable?

I am happy to see that we have not had any DDoS attacks. This solution has successfully protected us from attacks, and no one has been able to attack our network.

DefensePro is able to detect attacks in real-time. It has also helped reduce the number of false positives that our organization receives in response to attacks. We do have some false positives, but their number is low, around 10% to 20%.

DefensePro has definitely helped us reduce downtime associated with attacks.

We were able to see its benefits within three to six months of the deployment.

What needs improvement?

The product is good, but the company could improve its services by appointing customer success managers. This would ensure better interaction with customers and help resolve issues on both customer and supplier ends. Most other security product companies such as Palo Alto and Forcepoint appoint customer success managers to interact with customers and ensure that the product they have purchased is used perfectly. If we are facing any kind of issues in using the product or service, the customer success manager should get things right.

For how long have I used the solution?

We have been using DefensePro for more than five years.

What do I think about the stability of the solution?

We have not found any issues with the stability of the solution.

What do I think about the scalability of the solution?

DefensePro is quite scalable. Over the last five years, we have increased our infrastructure, and it has been working fine.

How are customer service and support?

The customer service is fine. We have contacted their customer support, and they are satisfactory in terms of quality and responsiveness.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

We have not used any alternatives to DefensePro.

How was the initial setup?

The deployment was easy. We procured it through our partner. Our partner was able to deploy it perfectly. We did not face any issues in the deployment. It took around three months to fully deploy.

It does not require any maintenance from our side.

What about the implementation team?

Two persons were involved in the implementation process.

What's my experience with pricing, setup cost, and licensing?

The pricing is okay, and I do not have any concerns about the price.

To someone who is researching DDoS protection solutions but wants to go with the cheapest solution on the market, I would say that the product protection comes first and the cost comes second.

Which other solutions did I evaluate?

We have not evaluated any other solutions.

What other advice do I have?

Now that DefensePro is available on the cloud, my advice would be to consider cloud adoption while implementing the solution.

I would rate DefensePro a ten out of ten. It is a good product.

Which deployment model are you using for this solution?

On-premises


    reviewer1331304

Very good DDoS protection, responsive support, and detects attacks in real-time

  • September 13, 2024
  • Review provided by PeerSpot

What is our primary use case?

Our company is an ISP. We provide DDoS protection services ourselves. We need the technical means to be able to provide such services. We have DefensePro in our facilities through which we provide protection services to our clients.

How has it helped my organization?

Radware Defense Pro is an excellent solution for our customers as it works in blind mode. That, and the licensing model, is more attractive for the customer since the license is based on the capacity of clean traffic, not the combined traffic. If an attack is around 30 gigabits, you can still go on with your license of four gigabits due to the clean and legitimate traffic not exceeding four gigabits. 

What is most valuable?

It's very good at protecting users from DDoS attacks. It's the leader in this domain. 

In our use case, we do not use encryption or decryption. We simply defend against general types of DDoS attacks, like TCP SIM or DNS flood attacks. With Radware, we can defend against many types of attacks.

Radware consists of a so-called security profile. Each profile is just like an engine, and the engines check if that packet is valid or invalid. If it's invalid, it just gets dropped immediately and doesn't go for checking to another engine. But if it's okay, then another engine checks if it belongs to a scanning attack or it's a behavior-based attack. It helps decide whether something is malicious or not.

DefensePro is very effective at detecting attacks in real-time. From our experience, it's quite effective equipment. The main goal during the attack is just to protect the host and the customer's facility. So in this way, it is quite effective. We also have NetScout in our facilities, so we can compare them with each other. 

Our goal is to analyze the attack after attack and try to improve our ability to minimize the false positives. It's helped us.

We've been able to reduce downtime associated with attacks. During an attack, Radware DefensePro drops the malicious traffic. Sometimes it is very effective, and sometimes it is not as effective. However, without this, the very first attack against the customer would just pull everything down. Now that we have this equipment in place providing protection, the customer can continue to work. Maybe the performance would suffer a little bit; however, at least they can continue to work. We have small attacks happening every day against our customers, so having protection is critical. 

What needs improvement?

The APSolute Vision feature needs improvement. 

For how long have I used the solution?

I've used the solution for around five years. 

What do I think about the stability of the solution?

We do have problems with stability when it comes to APSolute Vision. It seems to have been written using Docker and it's quite complicated. We don't know much about the internal infrastructure. Sometimes, it just doesn't let you log in or it displays configuration errors. I'd rate the stability eight out of ten overall. 

What do I think about the scalability of the solution?

We have around 30 end users. However, we do have the solution for our end customers, which are enterprises. 

We haven't had a chance to test the scalability. That said, by design, scalability is built into the design of the solution. You can install multiple DefensePros and they can be controlled and monitored from one single APSolute Vision station. They have switched to a newer platform, and I don't have experience with that controller just yet. My impression is they fixed a lot of issues people found with APSolute Vision when building the new controller. 

How are customer service and support?

Technical support is among the best. If you open a ticket, they respond immediately and they are very helpful. They ask to give control so the support engineer can fix things himself. It's great. 

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I'm also familiar with Arbor. It's another leader in the domain.

We used Jupiter for some time. Radware receives regular updates of threats, however, Jupiter did not have that capability. It worked mainly with behavior-based attacks. Both Radware and Arbor also have behavior-based attack protections and zero-day attacks, plus they both have subscription services and centers of knowledge that periodically send you updates on the latest attacks and on malicious hosts. 

How was the initial setup?

The initial setup was complex. You hear documentation is quite good, however, it's really just a field of knowledge. It's just not enough to understand how to configure things or how to click and choose another profile. 

You need to know the nature of DDoS attacks and many, many intricate things about DDoS attacks to be able to configure the box comprehensively. This is the biggest challenge. It's unlike, for example, if you have to deal with routing equipment. Everything looks straightforward, and everything is predictable. This domain, it's much more complex due to the nature of the sync of the DDoS attack. Even for us, now, five years later, we still don't know everything. The field is very complex. 

There is continuous maintenance needed from our side. We have four people who handle maintenance tasks. 

What's my experience with pricing, setup cost, and licensing?

The product is very expensive, as is Arbor. 

What other advice do I have?

We still have the older model of DefensePro without X. Instead of the cyber controller, we have their older monitoring solution, APSolute Vision. My understanding is that the cyber controller took away some of the deficiencies of APSolute Vision. 

I'd rate the solution nine out of ten. It has some issues, however, Radware alongside Arbor are two of the best solutions. 

Which deployment model are you using for this solution?

Hybrid Cloud


    Viral Dhimar

Eliminated the need for manual intervention due to false positives

  • May 28, 2024
  • Review provided by PeerSpot

What is our primary use case?

As the new Director of Information Security with prior experience using Radware's Cloud DDoS Protection Service effectively, I'm advocating for its swift implementation from a product and budgetary standpoint. Having witnessed its value in both high-volume government and financial sectors, I believe these robust DDoS and WAF protections are no longer optional but an absolute necessity for our organization's security posture.

How has it helped my organization?

Real-time threat protection is incredibly valuable because malicious actors can now overwhelm web applications with attack requests using just a mobile device. Traditional Layer Three and Four defenses require large bandwidth or botnets, but attackers can now send thousands of requests per second. This makes real-time protection crucial. Unlike manual detection through portals, which can lead to delays and false positives, automated threat protection with high accuracy can make decisions instantly, reducing risks and workload.

The ever-present threat of hackers constantly scanning for vulnerabilities convinced me of the immediate value of Radware's Cloud DDoS Protection Service.

Implementing Web DDoS Protection eliminated the need for manual intervention due to false positives. After an initial learning period where all traffic is analyzed, the system effectively identifies legitimate traffic, significantly reducing the time spent approving or denying connections in the console.

The legitimate users do not even notice when there is an attack thanks to Web DDoS Protection.

Unlike many large companies with slow response times, Radware stands out for its speed. In the critical minutes following a cyberattack, we can reach a Radware expert by phone for immediate assistance. Their platform often automatically blocks the attack, or they'll quickly provide the necessary steps to remediate the situation.

The mean time to detection is between one and five minutes.

The mean time to remediation is within seconds. 

What is most valuable?

Radware Cloud DDoS Protection Service goes beyond the essential Layer Three and Layer Four protection, which are practically mandatory these days. While basic Layer Three and Four defense is crucial, Layer Seven application DDoS protection is where it shines. This is even more important with the increasing reliance on cloud-based applications.

The most promising feature we're considering implementing is container security. It offers superior protection by blocking threats directly at the container level, eliminating the need for a separate WAF. This means a container can sit in front of our application and handle Web DDoS mitigation, taking the burden off our traditional WAF. This approach has the potential to significantly improve overall security.

What needs improvement?

The rise of generative AI and machine learning in cyberattacks demands more advanced defense strategies. In this context, I'm interested in how Radware plans to leverage these same technologies to improve its detection and response capabilities.

For how long have I used the solution?

I have been using the Radware Cloud DDoS Protection Service for five years.

What do I think about the stability of the solution?

Radware Cloud DDoS Protection Service is stable. We did not notice any latency, lagging, or crashing. 

What do I think about the scalability of the solution?

Radware Cloud DDoS Protection Service is extremely easy to scale. 

How are customer service and support?

Radware's technical support was responsive and provided excellent guidance. Even their Level One support effectively assisted us in resolving our issues, which is uncommon these days.

How would you rate customer service and support?

Positive

How was the initial setup?

The initial deployment was straightforward. Any obstacles were minor.

The deployment took 90 days to complete. While the Radware Cloud DDoS Protection Service was installed quickly, the overall process took time because the system needed to learn our specific network environment, and our team had to learn how to operate and interpret the data it generates.  

What about the implementation team?

As part of the engagement, Radware provided the resources necessary for the implementation and we have plenty of expertise in-house.

What was our ROI?

While it's challenging to measure the exact return on investment from Radware's Cloud DDoS Protection Service, a successful attack on our company could incur at least five million dollars in damages, making this service a potentially valuable investment in preventing such a costly disruption.

What's my experience with pricing, setup cost, and licensing?

Radware's switch to a pay-as-you-go model last year provides great flexibility. This means we only pay for what we use, allowing us to easily transition to alternative solutions like cloud services without being locked into unnecessary licenses. This approach is both fair and reasonable from a licensing perspective.

What other advice do I have?

I would rate Radware Cloud DDoS Protection Service ten out of ten.

While cheaper DDoS protection might seem attractive upfront, it may not offer the robust defense you need. These solutions may satisfy basic audit requirements but lack the capabilities of industry leaders like Radware. Studies show they struggle to defend against complex attacks. Ultimately, you might end up needing additional tools and personnel, and potentially suffer financial losses due to a successful attack – making the initially cheap option more expensive in the long run.

The Radware Cloud DDoS Protection Service is virtually maintenance-free; we only need to ensure it has the latest updates.

Radware's Cloud DDoS Protection Service is ideal for organizations under frequent DDoS attacks. While there's a learning curve for the platform to identify attack patterns, once it does, automatic blocking ensures minimal downtime within acceptable risk tolerances. Users remain unaffected as the service operates transparently in the background. For IT security teams, this translates to a significant reduction in DDoS workload, freeing them to focus on other security priorities.

Which deployment model are you using for this solution?

Public Cloud