Cloud Native Protector provides an agentless, cloud-native solution for comprehensive protection of AWS assets, to protect both the overall security posture of cloud environments, as well as protect individual cloud workloads against cloud-native attack vectors
Cloud Native Protector provides comprehensive protection for cloud environments by securing the overall cloud account security posture and protecting individual workloads within the account. solution covers both the data plane and control plane, enabling protection of individual assets while taking into consideration the overall context of the account. In addition, Cloud Native Protector protects cloud-native services, such as Amazon Simple Storage Service (S3).
This approach protects AWS accounts across the 6 dimensions that comprise public cloud activity: users, communication machines, databases, storage and AWS services.
Correlates individual events using advanced machine-learning algorithms, and places them in contextual attack storylines to detect potential attacks such as data theft, crypto mining and service violations attempts and block them as they evolve
Detects excessive permissions of users and roles by analyzing the gap between granted and used permissions, and provides smart hardening recommendations to fortify security posture and reduce attack surface
Provides built-in measures to automatically remediate suspicious behavior when it is detected, so no time is lost once a breach is detected
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
You buy Cloud Protection under a contract based on how many servers you need to protect. The six tiers scale by host count, measured in EC2 servers. Tier 1 covers up to 50 servers, and each higher tier raises that cap: up to 100, 200, 500, 1000, and 2500 servers. You pick the tier that matches your server count. Larger environments move to a higher tier as the number of protected hosts grows. All tiers deliver the same protection; only the server capacity changes across them.
Top-of-mind questions for buyers
What counts as one server for billing across these tiers?
Each tier counts protected hosts as EC2 servers. One server is one EC2 instance you place under protection. Each virtual server instance counts individually toward your tier cap, so a Tier 1 contract covers up to 50 EC2 instances, and higher tiers raise that host count.
What happens if my protected server count grows past my tier cap?
Each tier sets a host ceiling: 50, 100, 200, 500, 1000, or 2500 servers. When your count exceeds the cap, you move to the tier that fits the larger number. The change is not automatic — you select the tier matching your current server count.
What protection do I get, and does it differ between tiers?
You get integrated application and API protection, including web application firewall, bot management, API protection, client-side protection, and application DDoS mitigation. Protection is the same across all six tiers. Only the number of EC2 servers you can protect changes as you move up.
www.radware.com
Helpful?
Vendor refund policy
No refund offered
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Online Support Service Portal -Appropriate for non-critical issues, such as general inquiries, requests for technical documentation/ information, schedule support during an upcoming maintenance window, view installed base and manage support cases.24x7, where Internet service is available
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Correlates individual events using machine-learning algorithms and contextual attack storylines to detect potential attacks such as data theft, crypto mining, and service violations.
Agentless Architecture
Provides agentless, cloud-native solution for comprehensive protection of AWS assets without requiring agent installation on workloads.
Permission Analysis and Hardening
Detects excessive permissions of users and roles by analyzing the gap between granted and used permissions and provides smart hardening recommendations to reduce attack surface.
Multi-Plane Coverage
Covers both data plane and control plane to enable protection of individual assets while considering overall account context across users, communication, machines, databases, storage, and AWS services.
Automated Threat Remediation
Provides built-in automated remediation measures to address suspicious behavior upon detection without manual intervention delays.
Offensive Security Engine
Simulates external exploits to produce Verified Exploit Paths for prioritizing exposures that are truly reachable by outside attackers, reducing cloud attack surface.
Cloud Security Posture Management
Continuously monitors and manages security of AWS configurations to prevent public exposure and ensure compliance.
Secrets Scanning
Identifies more than 750 types of secrets across public and private repositories.
Cloud Infrastructure Entitlements Management
Detects and manages excessive or unused permissions to mitigate the risk of privilege escalation.
Real-Time Malware Detection
Detects malware including zero-days in milliseconds with scanning performed directly in cloud environment for object storage services like Amazon S3 and file storage services.
Multi-Workload Security Coverage
Unified platform securing containers, serverless, Kubernetes, and AI workloads across AWS, on-premises, and multi-cloud environments
Runtime Threat Detection and Enforcement
Runtime protection to detect threats, block malicious activity, and enforce compliance in production across all cloud native workloads
AI and LLM Security Governance
Purpose-built AI workload security to govern large language models and generative AI applications with model abuse detection and policy enforcement
Full Lifecycle Security
Security coverage across the entire software development lifecycle from code development through production deployment
Compliance Standards Support
FedRAMP High authorization enabling compliance with rigorous security and regulatory standards
Fast detection has improved our DDoS mitigation and strengthened daily traffic analysis
Reviewed on Aug 29, 2026
Review from a verified AWS customer
What is our primary use case?
The main use case for Radware DDoS in my organization is configuring the thresholds to mitigate DDoS attacks and protect the infrastructure. I have limited SYN and flood connections to mitigate any traffic poisoning or massive connection attacks.
What is most valuable?
The best features that Radware DDoS offers, in my opinion, are the fast detection of attacks and response mitigation. The fast detection and mitigation functions have made a concrete difference in my team's daily operations by allowing us to quickly detect DDoS attacks.
Radware DDoS has positively impacted my organization by notifying us of attacks that may be carried out against the company, and seeing possible network scans. We have noticed improvements since we detect traffic floods, and that helps us with our daily analysis and alerting about possible incidents.
What needs improvement?
I think Radware DDoS could be improved by simplifying the policies a bit, that is, adjusting the configuration a bit better and making it easier.
Radware DDoS has not been very effective in mitigating advanced threats such as burst attacks, DNS attacks, encrypted SSL floods, or IoT botnets in my organization, as we do not have this functionality very well enabled and use it only for detections and to mitigate certain traffic floods. I do not have layer 7 enabled, so we have not used Radware DDoS's HTTP web protection.
Regarding the response times after an attack, this is a point we have not been able to test since we don't have many attacks; they are simple network scans that help us with traffic analysis. I think the ease of use of the Radware DDoS interface requires a bit more advanced knowledge, and there are applications that are much more intuitive.
For how long have I used the solution?
I have been using this solution in my organization for specifically around a year.
What do I think about the stability of the solution?
I consider Radware DDoS to be a stable solution, as we have not had stability problems.
What do I think about the scalability of the solution?
The scalability of Radware DDoS is good, as it can adapt to traffic growth and protect infrastructures of different sizes, allowing you to increase mitigation capacity through cloud services.
How are customer service and support?
My experience with Radware DDoS customer support has been very good; they respond to us very quickly and solve all the problems we report.
Which solution did I use previously and why did I switch?
We did not have another solution before implementing Radware DDoS; it was handled by an external provider.
What was our ROI?
I have seen a return on investment with Radware DDoS, particularly saving time for investigations since we use the statistics and traffic measurements to evaluate traffic, and Radware DDoS gives us the results a bit more ready-made.
What's my experience with pricing, setup cost, and licensing?
My experience with the pricing, implementation costs, and licensing of Radware DDoS has been good; I have not had the opportunity with DDoS but have found it very easy with Radware DDoS as a load balancer, and the contact with the manufacturer has been good and easy.
Which other solutions did I evaluate?
Before choosing Radware DDoS, we evaluated other options like Imperva and F5 due to prices and economic reasons, and I think they decided on this option.
What other advice do I have?
I would advise other people who are considering using Radware DDoS that it is a very good tool, that it can be easily implemented, that support is very collaborative, and I would encourage them to try it. I gave this review a rating of 9.
Domenico Cacciari
Always‑on protection has kept critical sites online and has prevented repeated DDoS downtime
Reviewed on Aug 24, 2026
Review provided by PeerSpot
What is our primary use case?
Our main use case for Radware DDoS is to use infrastructural DDoS protection for our AS, and in addition, we have the web DDoS part for the main institutional sites.
A recent situation in which we used Radware DDoS to protect our infrastructure occurred during a web DDoS attack on the institutional site in February 2025, and thanks to Radware DDoS's service, we resolved it. From that moment on, there have been other attacks periodically, but always thanks to Radware DDoS's service, we have never again taken a hit. The service did its job, and the attacks have no longer been successful.
What is most valuable?
Radware DDoS has always managed to mitigate the attacks by cleaning all the dirty traffic and keeping the services regularly usable.
According to my experience, the best features offered by Radware DDoS are the noticeable protection it provides and the ease of use through their portal.
Radware DDoS's portal has made operational management easier for me as it is very clear, intuitive to use, and simple for performing searches to understand the nature of the block and create any exceptions when necessary. You can periodically request a policy review of the protected sites to analyze all the existing rules and determine whether it is necessary to make any changes, also with the support of Radware DDoS, which obviously has more experience in evaluating the individual rules and suggesting potential changes to be made.
Radware DDoS has positively impacted our organization by ensuring we have no longer had service disruptions due to attacks of that kind, even though there have been frequent ones over time. Before setting up the service, unfortunately, we suffered some service interruptions and the resulting reputational damage.
What needs improvement?
I find the API protection part particularly useful, which we are beginning to evaluate. We need to set up a POC to test the service; we have not done that yet.
For how long have I used the solution?
I have been working in my current field since 2017.
What do I think about the stability of the solution?
According to my experience, Radware DDoS is absolutely stable.
What do I think about the scalability of the solution?
In terms of scalability, I would say Radware DDoS is optimal.
How are customer service and support?
My experience with Radware DDoS customer support has been excellent.
I would rate Radware DDoS's response times after an attack as optimal. As soon as the system records and mitigates the attack, Radware DDoS's support service immediately calls to inform us and to ensure that there is no disruption.
Which solution did I use previously and why did I switch?
I did not previously use any different solution; before we did not have any solution.
How was the initial setup?
We implemented Radware DDoS by purchasing the Always On service.
What about the implementation team?
We purchased Radware DDoS through a system integrator and made the contract directly with Radware DDoS.
What was our ROI?
In the last year, Radware DDoS has mitigated approximately between 15 and 20 attacks, and previously, the longest downtime we suffered was about 8 hours. After that, this problem no longer occurred.
What's my experience with pricing, setup cost, and licensing?
My experience with pricing, setup costs, and licenses has been that it is certainly not a low-cost service; it is quite expensive, but I must admit that it is worth what it costs.
Which other solutions did I evaluate?
Before choosing Radware DDoS, I evaluated the services offered by individual providers.
What other advice do I have?
Radware DDoS seems to be a complete product, offering a variety of modular sub-services, and so far, we have not had any particular need to ask for changes or new implementations.
I recommend organizing a POC to test the reliability of the service firsthand to dispel any doubts for others who are considering using Radware DDoS.
I have provided a comprehensive review of Radware DDoS, and I rate this solution a 10 out of 10.
Rajesh Bhardwaj
Protection has maintained news sites online during elections and festivals while filtering DDoS floods
Reviewed on Aug 19, 2026
Review provided by PeerSpot
What is our primary use case?
My main use case for Radware DDoS is to eliminate DDoS attacks. Because it is an anti-DDoS solution, we were observing a lot of DDoS attacks on our web servers, especially the public-facing applications. We deployed this solution to eliminate these DDoS attacks from multiple countries.
Especially during the election we were having in our country, specifically for the UP region, Uttar Pradesh, we faced a lot of DDoS attacks on our web server where we publish the news. Because we are a media company, this was a particularly challenging time. Radware DDoS mitigated these attacks successfully.
What is most valuable?
In case of any other general attacks, Radware DDoS actually protects or alerts us. We can configure it as per our requirements, so it will alert us before doing or mitigating things. We can configure it in an auto-protect mode, or we can configure it in an alert mode so that we can go through it and then, accordingly, on the basis of our investigation, determine whether it is the real traffic or the actual attack traffic which we need to mitigate. Legitimate traffic, of course, we need to pass it.
So sometimes it depends on what policy we have configured. On the basis of that, it will pass the legitimate traffic; sometimes it is a false positive, then we have to go through it and accordingly reconfigure our policy and then from the next time, it will pass the legitimate traffic and will not block. It will mitigate all the DDoS attacks. So it is working well, and every time we face any kind of DDoS attacks, it mitigates them most of the time, 99% of the time, I would say.
Radware DDoS offers excellent features including a 5 GB capacity box and cloud service benefits. We have taken a Clean Pipe of 200 MB because we have an internet bandwidth of 200 MB. In case of any DDoS attack, because DDoS will choke our internet bandwidth, it will redirect the traffic and then block the DDoS traffic and pass whatever the legitimate traffic is through that 200 MB clear pipe. So we will not face any kind of DDoS, or any attack traffic will be passing through our network.
The Clean Pipe feature helps our team in real situations by improving the uptime because during a DDoS attack, our bandwidth will be choked out. It will redirect the traffic through that Clean Pipe where only the legitimate traffic will be passed through and the rest, the attack traffic, will be blocked and dropped over the cloud.
The interface is GUI-based. Most of the things, if we are from the same domain and if we have an understanding of security, basic security features, we would come to know the configuration and how we can configure this. There are only a few things where, because it is the property of Radware, we need their help. But they are one call away, and once we raise the ticket, the tech will be there to help us configure those specific features.
What needs improvement?
Radware DDoS can be improved by increasing their PoPs. Wherever the DDoS attacks come from, it should be blocked to the nearest area, to the nearest countries. So they have to increase their presence or their PoPs in multiple countries.
For how long have I used the solution?
I have been using Radware DDoS for the last five years.
What do I think about the stability of the solution?
Radware DDoS is very much stable.
What do I think about the scalability of the solution?
Radware DDoS's scalability is good and as per our requirements, it is fulfilling our needs and is very much capable of mitigating DDoS attacks. So our main purpose for having this particular solution was to mitigate DDoS attacks.
How are customer service and support?
Customer support for Radware DDoS is good.
Which solution did I use previously and why did I switch?
Radware DDoS is the first solution I have used. Earlier, before deploying this solution, I tried only a cloud solution with a local service provider, which is Tata Communication. That was not automated or as good as Radware is. They actually provided the cloud-based solution, and we used it only for three months. After these three months, we moved to Radware DDoS.
How was the initial setup?
We usually receive the alert after an attack. Earlier, during the configuration and setup of this solution, we first configured it as an alert. Later, gradually and over a period of time, we configured it as per our requirements. We understood the traffic pattern, and then accordingly, after taking multiple steps or multiple configurations, we reached this stage where we are mitigating most of the traffic, most of the DDoS traffic, in the first attempt itself.
What about the implementation team?
There are only a few things where, because it is the property of Radware, we need their help. But they are one call away, and once we raise the ticket, the tech will be there to help us configure those specific features.
What was our ROI?
I have seen a return on investment with Radware DDoS, because earlier we were having downtime. During that downtime, the likes and the hits on our news sites, on our websites, were missed. It depends on how it is redirecting to other sites where we are charging other people, for example, advertising for and then further redirecting to third-party websites whose ads we have running on our websites. So those would also be missed. Especially the hits we are getting on our websites that also pays us sometimes. The return on investment is good.
What's my experience with pricing, setup cost, and licensing?
Regarding pricing, my experience with Radware DDoS at the time of procurement is that we compared the pricing with other competitors in the market. Price-wise, it was quite cheaper than the top two competitors. So price-wise, I found it is good compared to their competitors.
Which other solutions did I evaluate?
As far as I remember, I evaluated A10 and another prominent DDoS solution in the market, but I forgot the name.
What other advice do I have?
Radware DDoS has positively impacted my organization, especially during the festive season when we have the peak of the peak business season, during peak seasons like Holi and Diwali. During these days, earlier we were having many DDoS attacks, and during that time, most of the time our website actually went down. After placing this DDoS solution, I do not think we have ever had downtime during this peak of the peak business season.
Other than festivals, we have this election going on in multiple states in our country. Earlier, when we were not having this particular solution in place, we were facing a lot of downtime on our websites. But after placing this solution, we do not face any kind of such downtime.
As per my memory, I can recall it was around 7 to 8 hours of downtime in a month before Radware DDoS was placed. After this solution was implemented, we did not have more than 10 to 15 minutes of downtime because it triggered the Clean Pipe and then blocked all the DDoS traffic and passed through the legitimate traffic.
Radware DDoS has helped us reduce the number of false positives our organization receives in response to attacks by helping us to configure the box and cloud as per our requirements. During the initial time, it was a lot, around 15% false positives were there. But later on, after the help from the tech as well as the Radware guys, the local support guys who were the L3 level support, they helped us to configure the box and cloud. We reduced the false positives, and later the alert and the legitimate traffic which was getting blocked was further configured to be passed through the channel. Only the genuine DDoS attacks were dropped after this final configuration.
Radware DDoS has been effective at mitigating advanced DDoS threats like burst attacks during political events or festival events, which is usually the peak business season for us, especially for the media. I cannot say much about DNS attacks because I have not done a further deep dive on what kind of DNS attacks they were, but burst attacks were there. For encrypted SSL floods, we observed this kind of flood. Not frequently, but a few incidents happened in the past where encrypted SSL floods were there and Radware DDoS was able to block them. I am not aware of whether we faced any kind of IoT attacks in our organization.
My experience with Radware's behavior-based detection technology in terms of real-time attack detection and minimizing false positives depends on the configuration we are doing and varies from industry to industry. For example, in the media industry, it depends on what kind of traffic we are accepting. In the media industry, there are a lot of contents which we need to allow, which, in normal industry, is not permitted, even over the web. Because we are in the media industry, we need to publish reality, including all these things over the newspaper or on our website's digital content. The behavior-based detection, because of the AI integration, always depends on our configuration and what kind of category we are going to block. We have configured it as per our requirements and we got a good response from the solution.
My impressions of the SecOps dashboards for monitoring and reporting metrics are positive. We have integrated this Radware DDoS solution with our SIM tool solution. Earlier we were using ArcSight. It was easily integrated with the ArcSight SIM solution. Now we are using a different SIM solution, which is Sentinel. With Sentinel as well, it was integrated without any problem. For non-technical staff, it will definitely not be easy for a non-security person to use the dashboard. The dashboard will clearly show us how many attacks. General people will correlate related to the attacks and the number of DDoS events and how much traffic was passed through this clear pass channel. But, in case we want to deep-dive further to understand the chronology of attacks and why traffic was blocked or dropped, then we need some technical understanding of these technical things.
From the governance point, Radware DDoS is quite good. Actually, we are in the media, and we are not looking up to that much of a governance thing. So, whatever is required as per the country or as per the industry, we are getting it through Radware DDoS. I cannot say anything about it because it depends on the industry to industry and the country to country.
Radware DDoS is deployed in our organization as a hybrid solution: on-premises as well as over the cloud. Radware is the cloud provider we use for our hybrid deployment. They have pitched in the solution of this cloud solution where they are giving us the clear pipe, a clear traffic pipe. It is through their Radware cloud only. The Radware box which is installed in our premise is blocking or dropping the DDoS attacks on the perimeter itself.
As per my observation, Radware DDoS detects an incident within a few minutes, most probably within 5 to 10 minutes, and then prevents or mitigates it. Within the next five minutes, it triggers, and then accordingly, if the DDoS attack capacity is more than our bandwidth, then it directs the traffic over this cloud and passes the legitimate traffic.
I would definitely recommend Radware DDoS to others because it is fulfilling the purpose we purchased this solution for. I give this review a rating of 9 out of 10.
Parag Naik
Hybrid protection has secured high-volume attacks and now manages traffic for thousands of users
Reviewed on Aug 14, 2026
Review provided by PeerSpot
What is our primary use case?
I am currently working with Radware DDoS, and I have completed multiple projects with Radware already. I had some issues that were highlighted, and R&D fixed them. They have good support and provide proper solutions and fix new version bugs.
I have been working with Radware DDoS for three years, and currently, I am handling the Cyber Controller. Previously, we were managing the DefensePro. Both are good technology and good devices. We are managing the DP20, and we are also managing Radware DDoS Cloud. For three years, we have been handling Radware DDoS Cloud and physical DDoS. Six months ago, I implemented a migration and introduced a new Cyber Controller for my organization.
The key benefits of having the hybrid setup with Radware DDoS include using both setups, where if my premise has high capacity, traffic automatically moves to Radware DDoS Cloud, managing 3 GB traffic in the cloud while handling 16 GB traffic internally in a very good setup for multiple customers.
How has it helped my organization?
Yes, we have always-on proactively managed 60–70 customers. In the event of an attack, we automatically start mitigation, drop the attack traffic, and route it to clean traffic for end servers.
Additionally, the customer is really satisfied with DDOS, and we transmit the report every week.
What is most valuable?
The key benefits I have seen from using Radware DDoS relate to managing 300 customers. I am currently using multiple attacks to figure out, detect, and mitigate properly while providing the proper details, proper traffic flow, and satisfaction to end-user customers. I just protected a 50 to 60 GB attack.
My experience with Radware's behavior-based detection technology in terms of real-time attack detection and minimizing false positives shows that multiple times there are false positive traffic drops. For this reason, we have verified with the particular application team because by default, Radware DDoS is directly using the default policies. We monitor for five to seven days to observe the traffic, and then we set the threshold properly. Multiple times errors and issues show that legitimate traffic can be dropped, as the system is not understanding the particular customer's ports.
We have first analyzed and then set particular policies and thresholds for Radware DDoS for specific customers.
I find Radware DDoS stable.
I find it scalable with no challenges because we are using all technology from Radware. I am not handling another technology.
What needs improvement?
What can be better in Radware DDoS includes the need for customized reports. I require customized reports and suggest changing the default policies mostly because the default policy is set as behavior-based DDoS. With the new services, such as Radware DDoS Cloud and Cyber Controller, there are multiple options, but you should change the default policies to improve functionality. Every time, it is not possible to set policies for particular customers, especially with VPN users having customized ports that automatically drop legitimate traffic.
For how long have I used the solution?
We have been charge of the radware DODS for the last three years.
What do I think about the stability of the solution?
I find Radware DDoS stable.
What do I think about the scalability of the solution?
I find it scalable with no challenges because we are using all technology from Radware. I am not handling another technology.
How are customer service and support?
I assess the cost versus value of Radware DDoS protection compared to other solutions as high, giving it a rating of ten out of nine, with the support-related aspect needing improvement. There are critical drawbacks with customer care, particularly regarding ticket responses.
My impressions of the SecOps dashboards for monitoring and reporting metrics show that the Cyber Controller is probably a very good solution with detailed definitions and reporting.
On a scale of one to ten, I would rate the customer service and technical support of Radware DDoS at seven.
Which solution did I use previously and why did I switch?
I did not use any other DDoS protection solutions before Radware, also implementing FlowPath for particular DDoS solutions. There is no plan for moving to another technology because we have already managed another solution that is better than Radware.
I evaluated other options previously, managing another solution such as F5 DDoS and Array DDoS, but Radware is working properly, better than those, and provides proper details and analysis. We have no plans to change from Radware.
What's my experience with pricing, setup cost, and licensing?
The BU team handles pricing and licensing, not me.
Which other solutions did I evaluate?
The key differences, both pros and cons of Radware in comparison to the other DDoS technologies I have managed show that previously we managed online, verifying every traffic coming to Radware DDoS, and now we are using offline Radware DDoS. We are managing traffic through NetFlow and SFlow to monitor it. In the past, we managed one customer, but now we are managing about 1,500 customers. We have multiple workflows and set thresholds for particular rules, and Radware DDoS is providing solutions and details for DDoS.
What other advice do I have?
My advice or recommendation to other organizations looking into Radware DDoS is to use it because it is very user-friendly. We have suggested it multiple times to colleagues and friends due to its comprehensive monitoring capabilities. I would rate this product nine out of ten.
reviewer2847021
Bank has gained clean protected traffic and now mitigates complex attacks without disruption
Reviewed on May 28, 2026
Review provided by PeerSpot
What is our primary use case?
I use Radware DDoS as DDoS protection with active protection. Our BGP is also transferred to Radware. We also have the WAF, which is a web application firewall, but that is a different matter.
What is most valuable?
What I like most about Radware DDoS is a favorite feature that we call a pipe. That is the clean traffic that they guarantee towards our company, our bank. The clean traffic is actually the favorite feature that we have, and that is one of the reasons why we went with Radware instead of other solutions. I also appreciate their responsiveness because we were having some troubles initially to establish the whole traffic and routes. They were very responsive to that and helped us a lot. They essentially did the whole routing traffic and everything by themselves because we did not have engineers with experience in internet routing traffic.
Radware has been effective at mitigating advanced DDoS threats, such as Burst and DNS attacks. There were several attacks that I was not even aware of. That is actually the best scenario because I did not know that I was attacked, and that demonstrates how effective they are. I think the best answer is when you are not even aware that you are under attack.
What needs improvement?
What I think they can do better in the future is provide more explanation about the features of the system. During our last DDoS attack in February, we were setting up the system too strict. After some time, our protection started to kill our traffic. However, the team from Radware immediately reacted, and everything was resolved in approximately fifteen to twenty minutes. It was quite interesting that our protection behavior for DDoS started to kill regular sessions.
I would like to see better documentation and more explanation about the features.
What do I think about the stability of the solution?
Regarding stability, I am not aware of any issues. There is a small time needed to transfer the BGP takeover. There is some gap in the communication, but that is understandable.
What do I think about the scalability of the solution?
When it comes to scalability, I do not have an answer to that because we have not even thought about upgrading or scaling. I believe it will be okay, but I cannot answer with certainty.
How are customer service and support?
I have contacted the technical support and customer support during attacks. We were having some problems during a DDoS attack when legitimate traffic started to be killed. I contacted them and they immediately resolved the issue. They explained what the problem was, remapped everything about the thresholds, and everything was perfect after that because this was the first time we were experiencing such a type of DDoS attack.
If I were to rate the technical support on a scale from one to ten, I would give them a nine.
Which solution did I use previously and why did I switch?
I have not used any alternatives to Radware DDoS as our system is set up within our premises. However, I was using a system from our internet ISP, and I was not satisfied at all. This was the reason we switched. I believe it was the next day when Russia invaded Ukraine that we were having a major DDoS. All banks in Macedonia were having major DDoS attacks, and the ISP protection did not work at all. They did not react at all.
How was the initial setup?
The initial deployment was not easy, but with the help of Radware engineers, it was not that difficult. From an engineering point of view, it was interesting. Because we did not have BGP and did not have all the prerequisites that we needed, it was challenging for us engineers. I cannot say that it was easy, but I also cannot say that it was difficult. It was challenging.
Which other solutions did I evaluate?
I have not used any alternatives to Radware DDoS as our system is set up within our premises. However, I was using a system from our internet ISP, and I was not satisfied at all. This was the reason we switched. I believe it was the next day when Russia invaded Ukraine that we were having a major DDoS. All banks in Macedonia were having major DDoS attacks, and the ISP protection did not work at all. They did not react at all.
What other advice do I have?
When I scheduled the call, it did not allow me to pick a time zone. I was only given time slots to choose from.
I am familiar with the pricing because I handled the whole procurement, and I think it is fair pricing. Radware is not at the level of Akamai, but they are more expensive than other competition. However, the services that they are providing are on the next level from their competition, and we do not even consider other providers.
As of right now, after I deployed it, it does not require any maintenance on my end. I do not connect for maintenance, and I do not believe that our engineers connect either. There may be some preventive maintenance, but it is not heavy and not excessive.
I have not used the web DDoS protection. My overall rating for Radware DDoS is nine out of ten.