Amazon Web Services offers AWS WAF (web application firewall) to protect web applications from malicious behavior that might impede the applications functioning and performance, with customizable rules to prevent known harmful behaviors and an API for creating and deploying web security rules.
$0.60
per 1 million requests
Cloudflare
Score 8.9 out of 10
N/A
Cloudflare’s connectivity cloud is a unified platform of cloud-native services designed to help enterprises regain control over their IT environments. Powered by an intelligent, programmable global cloud network, it is built to offer security, performance, visibility, and reliability.
$20
per month
FortiWeb
Score 6.3 out of 10
N/A
FortiWeb is Fortinet's web application security system (or web application firewall, WAF) featuring advanced vulnerability management and threat detection and prevention, available in deployment as an appliance or virtual appliance, also as a hosted or a cloud-based virtual solution.
When it comes to integration with AWS resources, we found that AWS WAF can easily integrate with CloudFront, API gateway, ALB, etc. When we analyzed other products, we found that the integration can be a little more difficult than just a click of a button. However, the pricing …
Easy of use. Setup and configuration is fairly quick. There are the usual advantages of it being a cloud solution where you can buy into the solution, configure it and set it up and get it up and running. If you are already a subscriber to AWS, having a native service has …
Comparatively, AWS WAF is far more prevalent in modern age web application as most of the High-Traffic E-commerce sites are moved on AWS. Due to this most developers are familiar with WAF, in addition its pretty easy comparatively as well. So other solutions may only come into …
There are a number of reasons to select AWS WAF. Most importantly, it easy to deploy. It helps programmers to protect against a wide range of vulnerabilities like injection attacks, DDoS, and many others from OWASP top 10. It allows us to set up rules and blocks any threats …
The integration with AWS services is pretty straight forward and provides a lot of functionalities other products don't. AWS Managed Rules can be used for easy setup with high protection options or Custom Rules can be created to costomize WAF to fit our needs.
Unlike these other AWS tools, WAF provides real-time traffic control, rules that can be customized according to the needs of the user, and is based on an implementation in the cloud which avoids the use of memory on computers as well as an account with a very affordable cost …
The use of this software was decided on because it is much easier to manage since the rules that are implemented can be specific or centralized. We also like it because you only pay for what you used.
Imperva SecureSphere requires a much higher learning curve.
We evaluated Imperva, but we were more convinced with AWS WAF because of the better pricing model, ease of deployment as we were already using the AWS platform which helping in ease of integration. The technical support for AWS WAF seemed to be better as they had better …
I use Bunny concurrently with Cloudflare. Both services are unique to each other while offering similar services. What Cloudflare has over Bunny is their numerous PoPs spread all over the world. Bunny still doesn't have a configurable WAF offering for the general public as of …
Cloudflare is less expensive with better performance. What more coudl you ask for?
Digitalocean has been great but when comparing costs to features, Cloudflare is cheaper for object storage and better performing across their large network.
Nothing like it. Organizations can utilize these Cloudflare products to enhance their online presence by improving security, performance, reliability, and developer efficiency. Cloudflare is an American company that delivers services such as DNS, a content delivery network …
A few years ago, GoDaddy started charging us to be their DNS provider, and Cloudflare didn't charge, so we moved to Cloudflare. Also, Cloudflare was known for security protection, for example DDOS protection, and we haven't had any issues since moving to Cloudflare.
Cloudflare is on another level compared to any other CDN provider out there. One of the reasons is that encompasses all the tools into one big products instead of relying on many different products from many companies - DNS, CDN, WAF are all managed in one place and connected …
Cloudflare was better, because we do not have to host or purchase any additional hardware. This means reduced costs for us to have to buy the hardware. Then, hire people to run the hardwar, and support the hardware. And, it also means you need SME's for the tool that have used …
Cloudflare's product offering is more mature and has demonstrated success in preventing some of the largest DDoS attacks observed. Cloudflare also continues to reinvest in their core product offering to ensure they maintain a position as leader in the cybersecurity space.
Cloudflare knows what they're doing when Load Balancing and Redundancy meet the cloud. AWS is a partner, and we're exploring other solutions which are performing at the highest level.
Peak season is upon us, and we cannot suffer downtime. DDoS Protection is another interesting …
Amazon CloudFront is a highly scalable CDN service integrated with AWS. Couldflare provides us more other functions and services than Amazon CloudFront. Google Cloud CDN offers fast and reliable content delivery with integration into Google Cloud services. But we didn't deploy …
Cloudflare is definitely a leader in the CDN space and is fending off well in the security area for web applications even when faced against vendors like Akamai which are more widespread and better known If Cloudflare keeps competitive prices and updated technology stack i …
Cloudflare addresses Pipefy a well-defined cache system with several features to improve the performance of the applications. This is the main focus + excellent reliability and stability.
Overall we are using Cloudflare as well as AWS cloud across various domains in our organization. To some extent such as DNS management on Route53, CloudFront takes advantage of Cloudflare as it provides a straightforward UI for DNS management. But when it comes to traffic …
Most of them have the same features but not for FREE. The second point was the total cost of ownership for 3 and 5 years. Fortinet supported us with the best prices for 3 years and 5 years as well with advanced hardware replacement against the others.
AWS WAF is highly appropriate to interrupt or prevent cyber attacks because when implementing rules, whether they are specific or centralized, so any application that has these vulnerabilities is protected.
Implementing managed rules creates greater security to protect both API and applications. If implemented along with other AWS tools, the security is much better, so if you want to protect applications against more specific attacks, it is ideal to integrate with Amazon CloudFront, which is a great benefit because it warns when thresholds are exceeded or specific attacks occur. AWS WAF is ideal to avoid common web attacks. For more specific attacks and scenarios, I don't recommend this.
Cloudflare works well as security measure that gives peace of mind without needing to work too hard to get it functioning well. It provides great tools to customize the security experience as well. This is all the same for the caching tools as well. They have a lot of built in tools that make using the caching easy right out of the box, but they provide the customization options to get things just right for your site.
Regarding my experience, I prefer to deploy FortiWeb in a reverse proxy to have the full features and protection. The other mode will be useful for special cases as will it will not have the full range of features and protection. Like offline Sniffing, it will be used in special cases.
AWS WAF has the most developer-friendly API to create firewall rules.
AWS WAF provides OWASP security controls, which reduces developers' burden (i.e., SQL injection and cross-site scripting).
AWS WAF has customizable web security rules. The user can even push the rules through the API available, which is the great feature and helped me a lot.
It protects applications at layer 7 (HTTP) of the OSI model and not just layer 4 (TCP).
Registrar and DNS services are impeccable, with registrations done at cost and without ADs. DNS services setting standards for speed of resolution.
DDOS protection. With their content distribution network to back them they have the bandwidth and tools to be both proactive and reactive to bad actors.
WAF - Their Web Application Firewall helps mitigate common site vulnerabilities and has active zero-day protection running for breaking exploits
In some cases, using Cloudflare can actually lead to slower website speeds if the network is congested or if the website's traffic is particularly heavy.
Some website owners may find that the level of customization offered by Cloudflare is limited, especially in comparison to other solutions.
While Cloudflare is easy to set up and manage, it may be too complex for users who are not familiar with web technologies.
We have been using AWS WAF for the past 3 years in front of our websites. We find it useful in preventing data crawling, DDOS attacks, etc on our websites, and hence we are going to use it in the future as well. AWS WAF is one of the best Firewalls in business.
The product is highly scalable. It is easy to configure the rules and thereby helps us to mitigate many vulnerabilities. The interface and programming of the firewall provisions were easy to setup. Amazon clearly spent a lot of time figuring this out and perfecting it. It allows users to do customized configurations based on their needs. It provides protection against a number of security issues like XSS, SQL injection, etc. I would definitely recommend this for protecting your infra as you scale, since this basically protects and filters all requests hitting your application server.
Everything is extremely concise and all settings apply immediately and take effect globally. There is no reason to explicitly plan/think in terms of individual regions as one would have to traditional cloud offerings (AWS, OCI, Azure). All Cloudflare products integrate seamless as part of a single pipeline that executes from request to response.
If you're intending to use AWS WAF, I would say that you absolutely should sign up for support. AWS Support is excellent and they can help you in a really good way to solve your issues.
I have only used their support a few times, and most times, they are responsive and able to resolve my issue with a minimal amount of time and effort. However, there was one instance where I simply asked about how to purchase some more resources (redirect rules), and I received some type of automated/AI response that was very unhelpful and gave me no opportunity to escalate to a person.
Easy of use. Setup and configuration is fairly quick. There are the usual advantages of it being a cloud solution where you can buy into the solution, configure it and set it up and get it up and running. If you are already a subscriber to AWS, having a native service has its advantages.
Nothing like it. Organizations can utilize these Cloudflare products to enhance their online presence by improving security, performance, reliability, and developer efficiency. Cloudflare is an American company that delivers services such as DNS, a content delivery network (CDN), and various other additional services to make websites faster and more secure. Cloudflare is used by over 26 million sites, resulting in the processing of more than 1 billion IP addresses each day.
Most of them have the same features but not for FREE. The second point was the total cost of ownership for 3 and 5 years. Fortinet supported us with the best prices for 3 years and 5 years as well with advanced hardware replacement against the others.
We have seen reduced usage and downtimes after using Cloudflare for Caching. This has already yielded ROI as minimal downtime ensures consistent user traffic and increases revenue.
It can handle significant traffic spikes and shields the website from DDOS attacks. We have prevented a number of DDOS attacks after using Cloudflare and hence we are already seeing an ROI by using it.
Some of the integrations with Cloudflare are really painful and we have faced a lot of issues because of not having native integrations to certain 3rd party apps.