Try our new research platform with insights from 80,000+ expert users

A10 Networks Thunder SSL Insight (SSLi) vs Sucuri comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

A10 Networks Thunder SSL In...
Average Rating
9.0
Number of Reviews
3
Ranking in other categories
SSL/TLS Decryption (2nd)
Sucuri
Average Rating
8.4
Reviews Sentiment
7.5
Number of Reviews
6
Ranking in other categories
Web Application Firewall (WAF) (37th), Distributed Denial-of-Service (DDoS) Protection (26th), Domain Name System (DNS) Security (23rd)
 

Mindshare comparison

A10 Networks Thunder SSL Insight (SSLi) and Sucuri aren’t in the same category and serve different purposes. A10 Networks Thunder SSL Insight (SSLi) is designed for SSL/TLS Decryption and holds a mindshare of 30.7%, up 23.7% compared to last year.
Sucuri, on the other hand, focuses on Domain Name System (DNS) Security, holds 1.5% mindshare, up 1.1% since last year.
SSL/TLS Decryption Market Share Distribution
ProductMarket Share (%)
A10 Networks Thunder SSL Insight (SSLi)30.7%
GigaSMART23.7%
Symantec SSL Visibility Appliance21.7%
Other23.900000000000006%
SSL/TLS Decryption
Domain Name System (DNS) Security Market Share Distribution
ProductMarket Share (%)
Sucuri1.5%
Cisco Umbrella20.8%
Infoblox Advanced DNS Protection11.5%
Other66.2%
Domain Name System (DNS) Security
 

Featured Reviews

CH
Enterprise Security Manager at a mining and metals company with 5,001-10,000 employees
We used to have to bypass on the firewall, proxy, and IPS; now we can do it in one place
For us, it would be great if it supported SSL operations according to Active Directory users. For example, if we want to bypass one of the servers or a client's internet access for SSL interception, we have to do it according to the IP address. It would be better if we could do it according to the Active Directory username. A10 says they kind of support that but we haven't tested it. Another thing is SNI. A10 intercepts all the traffic according to the SNI, the server name indicator. It would be better if it intercepted traffic according to the IP addresses. A10 can only understand that a website is within the banking category or the website is in the social media category, according to the SNI. Without SNI, there is no way to understand it; there is no bypass operation. It would be better if worked without SNI as well. Also, the solution comes with web categories like banking and social media. There are suspicious URLs, malicious URLs, etc. It would be better if it had an application category as well. For example, it would be helpful if we had the chance to bypass all Office 365 applications: OneDrive, Skype, Outlook, etc. According to Microsoft, we need to bypass SSL for all Office 365 applications but we need to create custom categories and put all the Microsoft URLs in them and then we can bypass. It would be great if an application category could recognize Dropbox, for example. For now, we have to put the Dropbox URLs in one custom category and bypass them. Application categories could be very useful.
JS
Hardware Engineer at Ministry of Defense
A cost-effective choice for website security and informative support with issues related to CDN quality
One area where they could improve is in providing real-time support options because now you need to open a support ticket and wait for their response. It would greatly benefit customers if they implemented an online chat or messaging system for quicker assistance. I have found their Content Delivery Network service to be lacking in quality, and it could certainly be enhanced to provide better performance. I would also like to see improvements in the deployment process, as it currently takes more time than desirable. Another significant concern is that their service when your website is down, turns it into a static site. This means that if customers try to visit your site during downtime, they will see old content from the static site, which is not ideal. The CDN and tracking services are areas that need improvement, as well as addressing their bandwidth limitations.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Its most valuable feature is its ability to do its job accurately, effectively, and very quickly. The amount of traffic that we have going through our system is astounding... The delay with the SSL decryption turned on is almost unnoticeable."
"We have several proxies in our environment, so we localized internet traffic between these proxies. Instead of getting a really huge proxy box, according to our size, we can use three boxes and share the traffic with A10's load-balancer feature."
"With the Thunder SSLi, we're better protected. We can stop use of VPN and proxies. We are better protected against dirty traffic coming back to our schools. Having a secure decrypt zone with the equipment lowers the chances that our security infrastructure could possibly miss an attack."
"The most valuable part is the analytics and visualization."
"It significantly eases the workload and streamlines the initial setup required to protect a website."
"I use it as a WAF, which is basically a web firewall to monitor and block traffic to our web server."
"The initial setup was very easy."
"Domain name scanning since it allows us to scan all our domain names and determine whether it has malware or if is reported as phishing."
"The initial setup was straightforward. Straight forward because the plugin can simply be installed and then it does its job. It's not complex, there is no learning curve. The online scan is simple, you put in the website address and the scan gives us a report on the browser itself. It's simple to use."
 

Cons

"I would like them to have a better UI (better universal design)."
"There is one thing I would like to see changed. In their features for setting things up, there is a templating system that would normally assist clients. However, we had a better time setting up the device either through the command line or through the interface and not using the templates that were pre-installed. So there is room for improvement to the templates for initial installation."
"It would be great if it supported SSL operations according to Active Directory users. For example, if we want to bypass one of the servers or a client's internet access for SSL interception, we have to do it according to the IP address. It would be better if we could do it according to the Active Directory username. A10 says they kind of support that but we haven't tested it."
"Sucuri could provide help for specific security alerts in-line instead of requiring users to search for it in the help section."
"The main improvement I would like to see is support for .NET applications. If they could include this feature, I would include more sites in the protection."
"It would greatly benefit customers if they implemented an online chat or messaging system for quicker assistance."
"I would rate this solution an eight out of ten. The reason is that we have found sometimes customers or Google saying that there is something wrong with the website but Sucuri says that the site is clean so we do have to look at the site manually which means that the Sucuri scan does not pick up anything and everything."
"In terms of improvement, the cost factor is always there."
"Confident score: Currently it does not have one and there are cases that most websites flagged are false-positives."
 

Pricing and Cost Advice

"When you purchase the equipment, you purchase the licensing and warranty. It's all fairly standard. We haven't been caught with anything surprising."
"We always pay for support. Any organization of our size who doesn't is asking for problems."
"Our licensing costs, yearly, are just under $15,000. Your initial cost of acquisition is obviously going to be more than $15,000..."
"I’d simply say it’s really worth it."
"Sucuri offers different plans, both the standard plan and an advanced plan. So there are different plans to choose from."
"It stands out as a more cost-effective option compared to other cloud-based security services like Cloudflare or JetPass."
"The ROI has been very good. Because of the solution, I have a tax break. The site developers were not always experienced people. We used to pay more for cleaning up the site when it was infected. Now, we have peace of mind knowing that the solution will clean up the site and that we won't have to go through the unnecessary process of restoring it from a backup. The protection on the WAF and the measures for backups have also prevented our site from going down."
report
Use our free recommendation engine to learn which SSL/TLS Decryption solutions are best for your needs.
881,757 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
No data available
Comms Service Provider
11%
Computer Software Company
9%
Financial Services Firm
8%
Real Estate/Law Firm
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
No data available
 

Also Known As

Thunder SSLi
No data available
 

Overview

 

Sample Customers

Klein Independent School District
The Loft Salon, Tom McFarlin, WPBeginner, Taylor Town, Everything Everywhere, Financial Ducks in a Row, Chubstr, Real Advice Gal, Sujan Patel, Wallao, List25, School the World
Find out what your peers are saying about Broadcom, A10 Networks, Gigamon and others in SSL/TLS Decryption. Updated: January 2026.
881,757 professionals have used our research since 2012.