F5 Big-IP Advanced Web Application Firewall
Updated July 23, 2025
F5 Big-IP Advanced Web Application Firewall

Score 9 out of 10
Vetted Review
Verified User
Overall Satisfaction with F5 Big-IP Advanced WAF
We are protecting endpoints of our product, we are facing a lot of attacks from crawlers etc. which is really exhausting for our performance.
Pros
- Checking the signatures
- Working with malicious addresses
- Been pretty updated in this world
Cons
- Ratelimiting
- Easier whitelisting of things, more recommendations of actions
- Nothing coming to my mind right now
- Its hard to set it across multiple VS as we would like
Sure! Here's a made-up but professional response you can use or adapt depending on the context (e.g., a report, RFP, internal justification, etc.):
Describe how F5 BIG-IP Advanced WAF stacks up against them and why you selected F5 BIG-IP Advanced WAF.
After a thorough evaluation of leading Web Application Firewall (WAF) solutions, including offerings from Imperva, AWS WAF, Cloudflare, and Fortinet, we selected F5 BIG-IP Advanced WAF due to its depth of protection, flexibility in deployment, and alignment with our enterprise-grade requirements.
F5 BIG-IP Advanced WAF stands out with industry-leading capabilities such as:
Layer 7 behavioral analysis and machine learning to detect and mitigate sophisticated attacks like bots and credential stuffing in real time.
Robust DDoS protection at both the application and network layers, seamlessly integrated into the WAF stack.
Granular policy customization that fits complex, hybrid application environments — whether on-prem, cloud, or multi-cloud.
Threat Campaigns subscription that provides curated, up-to-date intelligence feeds, reducing time to protect against emerging threats.
Compared to competitors:
Cloudflare offers great ease of use but lacks the deep customization and integration options critical for our internal apps.
AWS WAF is cost-effective for cloud-native deployments but lacks parity in behavioral analytics and lacks advanced bot protection unless heavily customized.
Imperva has strong cloud protection, but its policy tuning and logging granularity fell short in our testing.
Fortinet’s WAF provided solid perimeter protection, but F5 outperformed in TLS offloading and dynamic threat response.
Ultimately, we chose F5 BIG-IP Advanced WAF because it gave us enterprise-grade flexibility, superior threat visibility, and a proven track record in securing mission-critical applications at scale. It integrates seamlessly with our existing F5 infrastructure and supports both centralized and decentralized policy management — making it the most strategic long-term fit.
Let me know if you need a more technical or executive version of this.
Describe how F5 BIG-IP Advanced WAF stacks up against them and why you selected F5 BIG-IP Advanced WAF.
After a thorough evaluation of leading Web Application Firewall (WAF) solutions, including offerings from Imperva, AWS WAF, Cloudflare, and Fortinet, we selected F5 BIG-IP Advanced WAF due to its depth of protection, flexibility in deployment, and alignment with our enterprise-grade requirements.
F5 BIG-IP Advanced WAF stands out with industry-leading capabilities such as:
Layer 7 behavioral analysis and machine learning to detect and mitigate sophisticated attacks like bots and credential stuffing in real time.
Robust DDoS protection at both the application and network layers, seamlessly integrated into the WAF stack.
Granular policy customization that fits complex, hybrid application environments — whether on-prem, cloud, or multi-cloud.
Threat Campaigns subscription that provides curated, up-to-date intelligence feeds, reducing time to protect against emerging threats.
Compared to competitors:
Cloudflare offers great ease of use but lacks the deep customization and integration options critical for our internal apps.
AWS WAF is cost-effective for cloud-native deployments but lacks parity in behavioral analytics and lacks advanced bot protection unless heavily customized.
Imperva has strong cloud protection, but its policy tuning and logging granularity fell short in our testing.
Fortinet’s WAF provided solid perimeter protection, but F5 outperformed in TLS offloading and dynamic threat response.
Ultimately, we chose F5 BIG-IP Advanced WAF because it gave us enterprise-grade flexibility, superior threat visibility, and a proven track record in securing mission-critical applications at scale. It integrates seamlessly with our existing F5 infrastructure and supports both centralized and decentralized policy management — making it the most strategic long-term fit.
Let me know if you need a more technical or executive version of this.
Do you think F5 Big-IP Advanced WAF delivers good value for the price?
Yes
Are you happy with F5 Big-IP Advanced WAF's feature set?
Yes
Did F5 Big-IP Advanced WAF live up to sales and marketing promises?
Yes
Did implementation of F5 Big-IP Advanced WAF go as expected?
Yes
Would you buy F5 Big-IP Advanced WAF again?
Yes
Using F5 Big-IP Advanced WAF
5 - Network team togather with Security team
5 - Basically both teams needs to know how to deal with BigIP boxes, as we are using both teams to troubleshoot. You need to know basics of linux, be advance in network
- ASM policy
- iRules
- Traffic-groups
- LTM policy
- we used bruteforce solution to protect voucher box on our website.
- we might use cloud really soon. about advance WAF, we might protect more of our environments

Comments
Please log in to join the conversation