A10 Thunder TPS provides advanced DDoS mitigation with seamless traffic management, ensuring legitimate network activity while blocking threats efficiently. It operates with minimal oversight, featuring quick response capabilities and operational simplicity.


| Product | Mindshare (%) |
|---|---|
| A10 Thunder TPS | 1.6% |
| Cloudflare | 11.7% |
| Imperva Application Security Platform | 7.6% |
| Other | 79.1% |
| Company Size | Count |
|---|---|
| Small Business | 5 |
| Midsize Enterprise | 2 |
| Large Enterprise | 4 |
| Company Size | Count |
|---|---|
| Small Business | 133 |
| Midsize Enterprise | 30 |
| Large Enterprise | 46 |
A10 Thunder TPS is engineered for rapid detection and defense against DDoS threats, employing programmable automated solutions through RESTful API integrations and aGalaxy management. This system efficiently handles extensive attacks with multi-vector protection, supporting functions such as load balancing. Its intuitive interface allows quick adaptation, helping organizations minimize operational expenses and quickly counter threats. Challenges arise in aligning TPS features with aGalaxy, necessitating improvements in reporting and user training methods. Integration issues due to import restrictions further complicate deployment endeavors.
What are the key features of A10 Thunder TPS?A10 Thunder TPS serves as a robust defense for cloud infrastructure and hosting companies against powerful DDoS threats. By rerouting harmful traffic and ensuring legitimate traffic reaches its destination, this protection system is employed on-premises alongside other tools for substantial availability. Its capabilities in load balancing and network troubleshooting further reinforce its role in maintaining security and reliability against high-capacity attacks across industries.
DDoS defense solution trusted for more than 200 service providers, online gaming, and enterprises including; Bungie, Comcast, KDDI Corporation, Leaseweb, Microsoft Azure, NTT Docomo, Softbank, Turkcell Superonline, Verizon and more.
| Author info | Rating | Review Summary |
|---|---|---|
| Information Technology Security Engineer at a tech services company with 11-50 employees | 5.0 | I currently use A10 Thunder TPS in a test setup with a Check Point firewall and Juniper MX router. The Management Console, A Galaxy, is interesting, but the user interface has issues needing improvement. A flexible demo license policy would help. |
| Sales Account Executive at L8 Group | 4.0 | A10 Thunder TPS is valuable for its DDoS protection in Brazil, helping mitigate attacks and protect resources. However, the absence of a blocking key is an issue. Although useful, it doesn't offer a strong ROI or flexibility compared to alternatives. |
| Technology manager at Folha de S. Paolo | 4.5 | I use A10 Thunder TPS for load balancing in our data center, handling both internal and external services. While it excels at managing HTTP protocols, it struggles with HTTPS due to SSL limitations. It's effective but somewhat expensive. |
| Director of Technology at a comms service provider with 51-200 employees | 4.0 | I use A10 Thunder TPS to protect my network from DDoS attacks. It offers automated mitigation and expert support, which enhances its reliability. Previously, I relied on an in-house script but switched to this appliance for its efficiency and support. |
| IP/DDOS Senior Engineer at Türk Telekom International | 4.5 | I use A10 Thunder TPS for monitoring tickets and reports on the configuration site. The solution is user-friendly, though its documentation could be improved. I have not used or considered other solutions, and there's no specific cloud provider deployment involved. |
| Managing Director Leaseweb Network at Leaseweb | 4.0 | We use A10 Thunder for DDoS protection, significantly reducing our customer complaints and support tickets. It effectively mitigates over 98% of attacks, including small, previously unnoticed ones. We find its high scrubbing quality, low maintenance, and scalability deliver excellent ROI. |
| Cybersecurity Consultant at a tech services company with 1,001-5,000 employees | 3.5 | I use A10 Thunder TPS as an anti-DDoS tool because it is easy to use and implement. However, it needs improvement in fail-open capabilities to ensure network traffic continuity. Compared to A10, Arbor is more widely known and used. |
| Security IT at a financial services firm with 201-500 employees | 4.5 | I use A10 Thunder TPS mainly for load balancing, particularly server load balancing. The firewall features are the most valuable, and while implementation has posed some challenges, overall, I have encountered no significant issues with the product. |
| Professional Services Consultant at a wholesaler/distributor with 10,001+ employees | 3.0 | As a distributor for A10 Networks, I find it stable with strong DDoS features. However, implementation is very difficult due to limited resources. Support is good, but not excellent. I rate it 6/10; setup needs to be easier. |
| Technical Consultant at Westcon | 4.0 | I find Thunder TPS an effective, user-friendly DDoS protection solution against evolving threats. Its multi-vector attack protection and flexible configuration are great. My only gripe is the cloud scrubbing feature's regional unavailability. |
Neutral

The most valuable feature of the solution is protecting customers and supporting them against attacks in Brazil.
In the tool, we use a lot of its DDoS protection features to protect the resources in a link. It also helps mitigate attacks so that users don't face problems because of it.
One problem for me with A10 Thunder TPS is that the box comes from another country in Brazil. In the tool, there is no one key to block it. For example, in F5 Networks, we have a key. If you try to buy another box from Huawei or from F5 and try to enable them in A10 Thunder TPS, you need a key to do it. The problem here is when you buy another box from A10, they want to put Thunder TPS to run, and it works okay, after which we cannot block it for another solution to be used, which is a problem for me where improvements are needed.
I have been using A10 Thunder TPS for years.
Stability-wise, I rate the solution an eight out of ten.
It is a scalable solution. Scalability-wise, I rate the solution an eight out of ten.
The solution's technical support takes more than a week to reply to a query from our company's end. I rate the technical support a six out of ten.
Neutral
The difference between A10 Thunder TPS and other DDoS solutions is that, with the formerly mentioned product, our customers use the box already there in their environment, allowing me to sell more than just one solution for security. I have used Huawei's DDoS tool. Huawei only runs DDoS services, so there are not many more features available.
The product's initial setup phase is very simple. I rate the product's initial setup phase an eight out of ten. The setup phase is a little bit more complex than A10 Thunder ADC because with A10 Thunder TPS, you have to have to know what you are doing, or else you will end up buying some application with some other features for your customers.
The solution can be deployed with help from the experts associated with the security side since they have skills related to ADC and TPS.
With the tool, I have just one opportunity to try to add one more feature for the customer, so I feel my company does not experience a very good return from the tool.
The tool is expensive. If one is low price and ten is expensive, I rate the tool's price as a ten.
A10 Thunder TPS has very good features for ISPs. For me, right now, the tool is too expensive. I am also an ISP trying to get another solution from another player because A10 Thunder TPS is still very expensive.
I never configured the tool in a way that allows me to use the multi-vector attack protection feature. It also varies depending on the performance of the tool on the customer's end.
I have had no problems with the maintenance of the product because the hardware part is good. Even during the trial, I saw that it was a good tool.
I recommend the tool to others.
In my company, we don't use any AI with the product, but I know that some of our customers use a little bit of AI.
I rate the tool an eight out of ten.

We have our own data center, and we perform load balancing for a lot of internal and external services using A10 Thunder TPS. For some users, we use A10 Thunder TPS for HTTP protocol. We perform load balancing for HTTPS on A10 Thunder TPS and others with too much workload we have to do on the servers. We cannot do the load balancing using HTTPS.
There is a limitation for SSL communication, but we had a problem with our application that started to hang. So, we had to change the SSL certificate to this server.
The most valuable feature of A10 Thunder TPS is load balancing.
The solution is a little expensive.
I have been using A10 Thunder TPS for seven years.
I rate A10 Thunder TPS ten out of ten for stability.
We have 20,000 active connections simultaneously for A10 Thunder TPS.
We contacted the solution's technical support to maintain and exchange the power supply. A few versions ago, we had some CPU and memory problems. We just started the appliance, and it was already on 70% of CPU usage.
We first contacted our reseller in Brazil and then escalated the issue to A10 Thunder TPS support. The reseller in Brazil was a little slow, but the A10 Thunder TPS support was fast.
Positive
We did a price survey, and compared to other solutions, A10 Thunder TPS wasn't cheap.
A10 Thunder TPS is a good product, and I have recommended it to a manager from another company in the past.
Overall, I rate A10 Thunder TPS a nine out of ten.
Thunder TPS protects your network from DDoS attacks.
Our company experienced some DDoS attacks that temporarily took down parts of the network. The manual process we had in place took some time to execute, and Thunder TPS offered better mitigation methods so we could block malicious IP addresses at the edge of the network.
Thunder TPS has automated mitigation and fully managed support in case the device cannot handle the attack. They have engineers available to respond.
We were in the early stages of using Thunder TPS when I left the company, so I only used it for a few days.
I rate Thunder TPS seven out of 10 for scalability.
We used A10 support during the deployment. They were helpful.
We had a script built in-house. We decided to replace some of our own programming with a proper appliance.
Setting up Thunder TPS isn't complex, and A10 provided excellent support. My team received pre-provisioned devices and sent them to our offices in Chicago and Toronto. We deployed it with their base configuration and brought the appliances online using their technical support. The whole process took about a month.
Thunder TPS costs about the same as most other DDoS protection, but it isn't a cheap solution. We had a 100-gig production license on each appliance and two devices. You pay annually for a license and support.
I rate A10 Thunder TPS eight out of 10. A10 is well-known in the networking world. The product is good, and it met the company's requirements.

I use the solution to check the tickets and reports of the configuration site.
The solution is easy to use.
The solution’s documentation could be better.
I have been using the solution for one year.
It is a stable solution.
It is a scalable solution. Around 50% of our staff use it.
The solution's initial setup process is straightforward.
I recommend the solution to others and rate it a nine out of ten.
As a cloud infrastructure and hosting company, we provide public and private cloud services. We use the A10 technology to protect our customers against DDoS attacks against their hosting instances. The latter could be dedicated servers or virtual servers or data storage platforms.
We have technology in place to detect attacks at the border routers of our networks in all 20 data centers worldwide where we operate. If we detect an attack, we reroute the traffic of the IP addresses that are being attacked to the A10 Thunder systems. They drop the malicious attack traffic and they pass through the legitimate traffic to the servers or the virtual servers that our customers use.
We deploy different types, different sizes of equipment. We use these solutions on-premises.
When we started deploying this and we measured the impact on the number of customer complaints, we saw a significant reduction in the overall number of customer tickets. If customers have an issue with one of our servers, they open a ticket; that could be any outage or a DDoS attack. We saw an overall reduction of 11 percent in support tickets.
But we also saw that we were typically able to mitigate over 98 percent of all the attacks that we detect. That has a two-fold benefit. First of all, customers are happier because their service stays alive even in a situation where they are being attacked. And for us, it has a positive impact on our support team because it has 11 percent fewer tickets it needs to handle. That's especially true since "attack tickets" are not nice tickets to have to handle. It also helped us a little bit in the engagement and the motivation of our support team.
A10 has also definitely reduced the amount of manual intervention required during an attack. Before we had these systems in place, if an IP address or server was attacked above a certain level, we would manually no-route or "black-hole" the traffic, and basically remove that IP address from the internet. That was all manual work, while customers were complaining, and their customers were complaining. People were opening tickets. With this solution in place, all that manual work no longer has to happen. After detection of an attack, the scrubbing is initiated automatically. In the case of a huge attack, we will still null-route the traffic which is going to the IP address under attack, but that process is fully automated. So deploying these systems has reduced a lot of the manual work.
Using this solution we have also, to some extent, detected more small attacks, attacks that we had been missing previously. Before we deployed A10, we did not have any technology in place to detect an attack. Only if a customer opened a ticket did we know there was an attack. But when we started deploying the detection technology and the A10 scrubbing technology, we suddenly saw that we actually have a lot of smaller attacks as well, which were invisible to us previously. That means, most likely, that there were a lot of unhappy customers - or unhappy end-users of our customers' systems - that we were never aware of. That was suddenly fixed by deploying these systems. In all of 2018, we identified about 400 attacks each day, anywhere in our 20 data centers around the world. Many of these attacks were invisible to us before 2016 when we did not have this solution in place.
When it comes to the solution's performance given its form factors, for us, any equipment that takes up space and power is using scarce resources in a data center. The fact that these boxes do have a small form-factor, as only 1RU or 2RU devices, and that the power consumption is relatively low, is very beneficial for us.
We don't deliberately use the solution's machine-learning powered Zero-day Automated Protection (ZAP) but the systems require very little effort to keep them alive and manage them. The automation and the updates that A10 built in result in there being very little work for us to do to keep these systems up to date and efficient in the way they scrub attack traffic. So it's not functionality that we deliberately use, but it's a benefit of these systems, which helps us maintain a low cost of operations and an effective system.
The solution's automation also has the effect that the systems are very low-maintenance. That means that we can free up our people to do other work.
The primary benefit that we see from their systems is that their filtering technology has the ability to detect and drop the malicious traffic from the legitimate traffic with a high success rate. That, in combination with the very small effort needed to manage their systems, are the two most important benefits to us. On the one hand, it's the quality of scrubbing, and on the other hand, it's the low total cost of operations for us to keep these systems alive and working efficiently.
The quality of the scrubbing is, of course, what the system is supposed to do. It's the key functionality of the system. That's what we bought the equipment for. And the small effort to manage the systems and keep them alive, of course, immediately translates into a benefit that we have a low cost of managing those systems. That means we can allocate the time of our network engineers to other activities.
If you look at the total response time that we see in our solution, which means the time between the start of an attack and the time that the scrubbing really starts, we typically see two to three minutes. But the majority of that time is actually used by our detection technology, not so much the A10 network scrubbing technology. And then it takes a bit of time to reroute the traffic to the A10 equipment. Once it has been rerouted, the scrubbing starts very fast, so the start of the scrubbing is only a small part of the two to three minutes. In general, we're very happy with the response times and the scrubbing quality of the A10 equipment.
I've heard no complaints, so my perception is that the systems run very stable.
The solution enables us to scale defenses. We use different types or sizes of equipment. Typically, we start in some smaller locations with the smaller equipment type. When we see that location growing, we typically replace that device with a larger one and we move the smaller device to a new location where it's needed. We move the technology around quite a bit, which is our way of scaling up. The fact that there are different sizes of equipment, all with the same technology and the same processes for managing them, is very helpful for us. If you look at our smallest data center worldwide, it's a location which generates around ten gigabits per second of outbound traffic. That typically means about one or two gigabits of inbound traffic. Our larger data centers generate around 1.7 terabits per second of traffic. That's a lot more. And with one family of products, we can still protect both the smaller data centers as well as our larger locations.
So far, the systems do what we expect them to do and they scale as we expect them to scale.
Overall, our experience with technical support has been positive. We've had very few requirements for technical support. I know there's a 24/7 SOC team available to help us with large incidents or attacks which we can't resolve ourselves. But so far, we've never had a need to use that team. It's easy for us because the A10 team lives just a couple of blocks away from us. That makes it a bit easier to communicate.
The initial setup was pretty straightforward but we also had very good support from the local A10 team here in the Netherlands. Our headquarters are based in Amsterdam. The A10 Dutch office is just a couple of streets away from us, which also made it easier to work on this together. But having said that, the systems themselves are pretty easy to deploy.
Our initial deployment, back in 2016, happened in what were our six main data centers at the time. The easiest one for us was here in Amsterdam because it's almost next door to our office. The deployment itself, the physical installation and activation of the system, is not really the critical activity. Most of our time was spent integrating the systems with our own administration systems, so that we could deploy automatically. And there was the whole setting of profiles for IP addresses to understand how the detection should work and how the scrubbing should work. That was a bit of a software development effort which took about three months in total. But once that was done and we had all the integration tested, the actual deployment was basically determined by delivery time of the boxes, and that is true now for the deployment to new sites. Once a box is delivered, it's typically up and running in a couple of days.
Our implementation strategy was to make the solution part of our standard architecture for all data center networks. As of now, we have deployed the technology in 20 data centers around the world. Whenever we start a new site, we immediately put in this technology as well to make sure that we protect our customers on that site. And we try to automate the installation as much as possible so that deployment can be done remotely, from the configuration perspective. That way we don't need to send specialists onsite to a remote data center to get it up and running.
We did the first installation together with the A10 team here in Amsterdam. But all other installations, we've done ourselves, typically with remote hands that have very little knowledge about the specific systems in the data center itself.
The solution is then managed by our team of specialists in our NOC here in Amsterdam. The team that manages it consists of three network engineers who also do other things, of course. They are a part of our network operations team. These three people have developed into specialists for these systems and are, on the one hand, responsible for maintaining them and managing them. But on the other hand, they sometimes get involved when there are specific, large attacks where manual intervention is required to mitigate the attack.
Our experience with the A10 team was very positive, both during the evaluation of the various vendors back in 2015 - A10 was very supportive - as well as during the initial deployments here in Amsterdam where we worked together. They were knowledgeable, responsive, enthusiastic.
We have definitely seen return on our investment. If you look at some of the things we can measure, like an 11 percent reduction in support tickets, that can easily be turned into cost savings. Other things, like improved customer satisfaction, are a bit harder to monetize. But for us, we were convinced that within a year, we'd definitely earn back the investment, both in the A10 equipment, as well as developing the end-to-end solution, including the integration with our administration systems.
The financials are always a challenge with this type of technology. That's not really a product-functionality thing but it's the area where we were pushing A10 the most. But compared to the alternatives that we evaluated in 2015, the price-performance of the A10 solution was definitely superior to the other solutions which we evaluated at the time.
The way we did the deal was a combination of the equipment, the license, and a five-year support contract, for all sites. At the time it was a pretty good deal.
We did a lot of analysis in the second half of 2015. We evaluated different technologies and we ended up using A10. We went with it based on the price-performance. We had four systems on the shortlist. We physically tested two of those providers and, at the end of the day, the two came out pretty even from a functionality and performance perspective. But the total cost of ownership of the A10 solution was superior to the other vendor, so we decided to go with A10.
One of the four providers did not want to support a proof of concept test, so we dropped that one right away. We dropped another one after looking at functional specifications which, at the time, were not as good as A10 and the other vendor. We were left with the two that we tested. At the end of the day, the total cost of ownership made the difference.
From our perspective, the technology works well, and it has a low cost to maintain and manage.
One of the biggest lessons for me, in using this solution, was that there are so many smaller attacks going on that we were not aware of and which must have had an impact on the satisfaction of our customers, as well as the satisfaction of their customers. Everybody always talks about the huge attacks, the one- or two-terabit attacks that get into the news. But the fact there is such a huge volume of smaller attacks going, script kiddies, etc., to make other people's lives miserable was, to me, a bit of an eye-opener. That was resolved by deploying the A10 solution.
Availability is very critical to the success of our business. If you look at the customers that we primarily and proactively target, they are customers in the online gaming market, in the advertising-technology/marketing-technology markets, in the Software-as-a-Service and in the managed service providers market. All these companies are borne on the internet and their internet presence is critical to their success, to their existence. So for us, it's of primary importance that we keep their services up and running at all times, even when they are being attacked by cyber-criminals.
As Leaseweb, we have around 18,000 customers using our hosting services. All these customers' services with us are protected by the A10 technology.
In terms of increasing our usage of the solution, whenever we deploy new data center locations, we put A10 in right away. We do have some new locations that will be opening up in the next six months, so we will definitely be using more of these systems and protecting more customers.
I would rate A10 at eight out of ten. What would take it to a ten is the scalability, the ease of scaling up without replacing a box.

We use A10 Thunder TPS as an anti-DDoS tool.
The solution is easy to use and implement in terms of operations.
The solution needs improvement in terms of fail-open. We need separate fail-open kits connected to A10 Thunder TPS and the network so that network traffic will pass through normally when the tool goes down.
I have been using A10 Thunder TPS for more than two years.
A10 Thunder TPS is a very stable solution.
The solution is more suitable for medium-sized companies.
The solution provides good technical support.
The initial setup of the solution is moderate, and it is neither easy nor very hard.
Arbor is more famous than A10 Thunder TPS, and more people use it.
It was easy to integrate the solution with our current IT workflow. I would recommend the solution to other users.
Overall, I rate the solution a seven out of ten.
The solution's firewall features are the most valuable feature of the solution. I think we can use all the features or capabilities that come with the product's license. Maybe today, we are just implementing an SOP or LOB.
We have had some issues with implementation. So, it is the only area that needs improvement. However, I have no issues with the product, so it is probably fine.
The solution's support is one of the coolest things about the product. I rate the solution's technical support an eight and a half out of ten.
Positive
We are currently having some issues with the implementation. I think it is because the partner is not ready for implementation, and it's not that they don't have the experience. So, even though we have some issues right now with implementation, the product is very good.
The solution's price is one of the coolest things about the product. We may need to pay fifty percent more if we purchase other solutions. For the payments made to A10 Thunder TPS, we have received three-year support.
I rate the overall product a nine out of ten.

We are the main distributor for A10 Networks. It is used as an appliance. It is mainly used to identify problems in the network. It helps us to stop any type of DDoS attack.
We are using its latest version.
They give us the ability to configure many features for DDoS. There are many items that we can use.
It is very difficult to implement. It should be made a bit easier to implement. There is also a lack of resources on the internet. They need to develop more resources.
We have been a distributor for more than five years.
It is mostly stable.
Their support is good, but it is not excellent.
It is very difficult to do the setup. It needs to be a little bit easier. There are not many resources on the internet for help, and there are also not many people who have knowledge of this product.
Its implementation takes two to three weeks. Two engineers are usually enough.
Before implementing this solution, you should know and get complete information about the features that are possible and that are not possible.
I would rate it a six out of 10. It should be easier to set up. Currently, it is very difficult.
One of the largest persistent threats to service uptime is Distributed Denial of Service Attacks (DDoS). The networking industry and business analysts are seeing a trend in increasing DDoS attacks. These attacks are occurring more frequently and with greater intensity and increased sophistication. Legacy DDoS protection solutions suffer from the following fatal limitations that have made them ineffective at protecting against these attacks:
• Lack of flexibility
• Inability to scale
MULTI-VECTOR ATTACK PROTECTION
Detect and mitigate DDoS attacks of many types, including volumetric, protocol, or resource attacks; application-level attacks; or IoT-based attacks. Hardware acceleration offloads the CPUs and makes Thunder TPS particularly adept to deal with simultaneous multi-vector attacks
The A10 aGalaxy management system provides centralized management of Thunder TPS systems and policies, orchestrates detection and mitigation of DDoS attacks, and delivers a single-pane-of-glass view of the generated reports across all managed Thunder TPS appliances.
No need to license each feature to activate it, it got a perpetual licensing and everything is there, you just have to configure and enable the feature when you need it.
Select Thunder TPS hardware models to benefit from our Security and Policy Engine (SPE) hardware acceleration, leveraging FPGA-based FTA technology and other hardware-optimized packet-processing for highly scalable flow distribution and hardware DDoS protection capabilities.