HAProxy Community Edition is a free, open source reverse-proxy offering high availability, load balancing, and proxying for TCP and HTTP-based applications. It is presented as suited for very high traffic web sites.
$0
WatchGuard DNSWatchGO
Score9.3 out of 10
N/A
WatchGuard DNSWatchGO provides DNS-level protection and content filtering that keeps the user's business safe from phishing, ransomware, and other attacks even when a user is outside of the network, without requiring a VPN.
It prevents a single server failure from being a downtime event by adding redundancy to every layer of your architecture. A load balancer facilitates redundancy for the backend layer (web/app servers), but for a true high availability setup, you need to have redundant load balancers as well. So it is well suited for all production related servers and less suited for individual servers that do not require redundancy.
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info
While DNSWatchgo offers the same categories as Application Control offers on the Watchguard firewalls, the WebBlocker categories are not offered. This is really a disappointment and Watchgurad should really consider adding the extra WebBlocker categories to DMSWatchGo. In my opinion, reporting in DNSWatchGo is minimal to say the least and could use drastic additions. as it is today it does offer very little info to the admins. The identification of registered clients is flawed. It seems that the same clients are registered multiple times on the management platform, thus unnecessarily consuming licenses. In my experience, it is really annoying to have to remove the duplicate clients every time again and again. On the positive side, when one already has Watchguard firewalls seting up DNSWatchGo is really easy, as it shares the same categories with Watchguard firewall Application Control. So easily one can almost the firewall functionality on laptops. And we say almost, because DNSWatchGo is missing the WebBlocker categories / blocking capabilities to be considered a full firewall replacement.
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info
A few, rare times each year, HAProxy CPU utilization spikes to 100% and server has to be rebooted - this may be related to HAProxy OR it could be an external factor causing this.
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info
While DNSWatchgo offers the same categories as Application Control offers on the Watchguard firewalls, the WebBlocker categories are not offered.
Reporting is minimal and could use massive upgrades.
The identification of registered clients is flawed. It seems that the same clients are registered multiple times on the management platform, thus unnecessarily consuming licenses.
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info
We really need an extra layer of protection for our laptops. Choosing the DNSWatchGo makes sense as we have Watchguard firewall. If we had another brand of firewalls we would probably use anther product instead!
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info
It is very easy to use. I was able to find a lot of documents for it on the internet. Very good community support. There are lots of examples available to try. We mostly use a command-line user interface to interact with it. The CLI is also super easy to use and very easy to interact with
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info
We haven't used customer support. We mostly used the community version. We build a multi-node HAProxy cluster with HA to the proxy itself using opensource plugins available. With the support available on the internet and the documents available we don't need to use much customer support.
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info
We chose HA Proxy because it is cheaper than a hardware balancer, it is an open-source solution with a large community behind it and with constant updates. It also allows custom scripts according to needs.HA Proxy is a solution used in many internet sites like GitHub, Reddit, Twitter, and Tuenti.
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info
At the time we were looking for a DNS based protection solution we had also tried "Blue Shield Umbrella". Both programs had similar behavior, but the main reason we eventually decided to go with DNSWatchGo was the fact the we have WatchGurd firewalls. So deploying DNSWatchGo was easy as we just copied the Application Control settings from our firewalls to the DNSWatchGo setup. Also Watchguard firewalls already have the DNSWatch service for the PCs that are connected to them while inside the company network, so it makes sense to equip them with the same shield while outside the company network.
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info
Significantly lower investment vs competitors. In the case of F5s we have Virtual Editions so we're paying for the hardware to run it on top of the several thousand dollar licenses that are required for each pair and we currently have a pair of F5s per client so there's a huge potential for cost savings there.
Requires our network engineers to learn a new skill or our Systems engineers to take on the responsibility of managing the load balancers. It's not a huge difference either way, but it does impact the way we have done business in the past.
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info