No more typing reviews! Try our Samantha, our new voice AI agent.

Arbor DDoS vs Check Point DDoS Protector comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 5, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cloudflare
Sponsored
Ranking in Distributed Denial-of-Service (DDoS) Protection
3rd
Average Rating
8.6
Reviews Sentiment
7.0
Number of Reviews
79
Ranking in other categories
CDN (1st), WAN Optimization (4th), Managed DNS (1st), Domain Name System (DNS) Security (5th), Cloud Security Posture Management (CSPM) (18th)
Arbor DDoS
Ranking in Distributed Denial-of-Service (DDoS) Protection
2nd
Average Rating
8.8
Reviews Sentiment
6.9
Number of Reviews
57
Ranking in other categories
No ranking in other categories
Check Point DDoS Protector
Ranking in Distributed Denial-of-Service (DDoS) Protection
18th
Average Rating
8.0
Reviews Sentiment
7.0
Number of Reviews
12
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of May 2026, in the Distributed Denial-of-Service (DDoS) Protection category, the mindshare of Cloudflare is 14.0%, down from 19.1% compared to the previous year. The mindshare of Arbor DDoS is 7.2%, down from 13.1% compared to the previous year. The mindshare of Check Point DDoS Protector is 1.1%, up from 1.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Distributed Denial-of-Service (DDoS) Protection Mindshare Distribution
ProductMindshare (%)
Arbor DDoS7.2%
Cloudflare14.0%
Check Point DDoS Protector1.1%
Other77.7%
Distributed Denial-of-Service (DDoS) Protection
 

Featured Reviews

M.A. Faisal - PeerSpot reviewer
General Manager at bKash Limited
Advanced protection has secured critical web workloads and provides clear traffic visibility
From a security perspective, there remains a security loophole, as some browsers in the market can bypass the Turnstile solution, which requires approximately 40 seconds to do so. From a performance perspective, this is acceptable. We also tried Google reCAPTCHA, and that can also be bypassed. From a security perspective, I would say neither solution is completely secured. Regarding uptime, we have faced a couple of incidents due to Cloudflare in recent years, so I cannot say we receive 100% uptime for our region. We sometimes face challenges, including downtime and other issues. As a result, we are not receiving 100% uptime from Cloudflare's solution. Since most of our customers are in this region, we need alternatives. We need something more competitive than Cloudflare. Unfortunately, in Bangladesh, Cloudflare has three points of presence already, and we cannot find any other solution provider in Bangladesh as an alternative, which presents another challenge. Competitor solutions have more attack signatures, which ensure better security compared to Cloudflare's predefined configurations. Customers do not have options to modify any configuration parameters in Cloudflare, whereas other competitor solutions, such as F5 Distributed Cloud, allow customers to tune configurations according to their requirements. Cloudflare could improve in this area. Additionally, regarding visibility, Cloudflare has static visibility, but they could adopt dynamic graph features for their customers.
SZ
Team Lead Network Engineer at Artco Group d.o.o Sarajevo
Reliable protection ensures robust network defense and simplifies DDoS management
I am not sure if we plan to use additional features because we have many vendors and platforms that we support. We use the main function and that is it. The prices for Arbor DDoS are expensive. The licensing is subscription-based. From our sales department, they discuss that prices are very high. A potential improvement could be establishing a contract with Cisco to sell via their channel. This could be beneficial because we work extensively with Cisco. If you are a Cisco partner, you can sell Arbor DDoS. That would be good for customers that are Cisco-based because many customers in Bosnia are Cisco-based customers. BH Telecom, our main customer, sells Arbor DDoS to other customers for protection. They buy Arbor and sell the product services to others via Internet links. They sell add-on DDoS protection via Arbor DDoS. In Bosnia and Herzegovina, Arbor DDoS is not present in many customers. Some customers try to sell it, but they sell other vendors such as F5. Arbor DDoS is mainly seen in telecom operators but not much in other customers.
reviewer2753559 - PeerSpot reviewer
Cyber Security Solution Engineer at a computer software company with 201-500 employees
Ensures service availability and handles attacks effectively though initial setup needs expertise
The best features that Check Point DDoS Protector offers, which stand out to me the most, are real-time detection and mitigation of application-layer DDoS attacks, easy integration with the existing Check Point security infrastructure, and low latency protection that does not disrupt legitimate traffic. The centralized console makes it easy to manage policy across devices, and the integration is straightforward since it works seamlessly with Check Point firewall and management and other security products. Check Point DDoS Protector has positively impacted my organization by improving uptime, reducing incidents, and providing cost savings. It will reduce the incidents up to 30%.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The overall experience with Cloudflare is positive, with a rating of eight out of ten."
"The attacker won't have details since my public IP is anonymous. It offers us good privacy."
"Even when there is a high load on our servers, Cloudflare is able to cache the data and serve it to users, ensuring they can still access the website."
"There are key things that are used for our enterprise customers, such as Lambda and DNS."
"Cloudflare has many features."
"If someone is looking for a secure and optimized wrapper over an open website, I would suggest CloudFlare services."
"The aggressive caching and DDOS mitigation are the most valuable features offered by Cloudflare."
"If it was not for CloudFlare, I would have to hire a dedicated resource to manage all this for me."
"The Arbor Networks SP device provided great visualization of the network traffic."
"The most valuable features include the traffic categorization and control of the traffic. The filtering of the traffic is very precise. When you want to stop some traffic, you precisely stop that traffic."
"We use it not only for DDoS detection and protection, but we also use it for traffic analysis and capacity planning as well. We've also been able to extend the use of it to other security measures within our company, the front-line defense, not only for DDoS, but for any kind of scanning malware that may be picked up. It's also used for outbound attacks, which has helped us mitigate those and lower our bandwidth costs..."
"The stateless device format means that the box is very strong for preventing DDoS attacks."
"With Arbor, when we see DDoS attacks, it is fully mitigating the attacks."
"Arbor DDoS has given us a very good ROI."
"Arbor is a great network service solution."
"It provides packet capture and we can block or whitelist whichever IPs we need to. Whatever traffic we want to block - and we get IPs from internal teams and from national teams - we block at the Arbor level only, because if it gets to the firewall then firewall bandwidth will be taken."
"It uses several layers of security."
"Check Point DDoS Protector has positively impacted my organization by improving uptime, reducing incidents, and providing cost savings."
"From my experience, the best part of this solution is behavioral DDoS protection. The DDoS Protector can monitor the traffic, and based on the behavior, it can decide which traffic is malicious and which traffic is regular. It works dynamically, and it's a very good solution."
"This product uses auto-learning and behavioral analysis to establish baselines for legitimate traffic, and automatically detects and blocks traffic behavior that does not conform."
"Now, all the ISP lines are protected and we can switch the users back and forth between them with the same level of security."
"The initial setup takes two hours."
"Check Point is one of the solutions that give us the most value, and they are constantly innovating."
"It can be deployed as a hardware appliance, virtual appliance, or as a cloud service."
 

Cons

"Cloudflare's console should be made more user-friendly."
"I think they have failed with their technical support."
"Latencies are always a problem."
"The installation was complex until I learned what I had to learn."
"The analytics, basically the dashboard, doesn't have much to it."
"It would be beneficial for us if Cloudflare could offer a scrubbing solution. This would involve taking a snapshot of my website and keeping it live during a DDoS attack, ensuring uninterrupted service for our users. DDoS attacks are typically short in duration, and having Cloudflare maintain the site's availability from its secure network would enhance the overall user experience. I would appreciate it if Cloudflare could consider implementing this feature. Many organizations already utilize similar capabilities in their CDN platforms, where a static snapshot of the web page is displayed during DDoS attacks. In terms of features, Cloudflare needs to enhance its resilience and stay more focused on adopting new technologies. For instance, solutions like F5 XC Box, Access Solution, and Distributed Cloud Solution have impressive features, and Cloudflare should strive to match and exceed those capabilities. There's a need for improvement in areas like AI-based DDoS attacks and Layer 7 WAF features. Cloudflare should prioritize enhancements in areas such as behavioral DDoS and protection against SQL injection attacks, considering the prevalent trend of public exposure to the internet for business reasons. Overall, Cloudflare needs to invest more in advancing its feature set."
"Although I think it's quite good, it doesn't provide me with all the features I would expect to have if I were using Imperva."
"Integration involving API with other products could be more user-friendly."
"Because we had some routers that were somewhat old, they were not integrated with Arbor. They did not support the NetFlow version that Arbor was running. That was a challenge. We had to upgrade the routers. Some backward-compatibility would be helpful."
"The regional support here in African could improve, such as marketing and account managers."
"I think the diversity of protection is extremely limited. It must be expanded in future upgrades and versions."
"For troubleshooting problems, it's not so intuitive. It's not straightforward."
"Unfortunately, these devices are not scalable and we have to upgrade to the next model in order to increase the threat mitigation capabilities."
"There is always room for improvement for any product or service. If we can bring in more agility when deploying services, that is definitely a scope which we can work towards."
"An improvement would be to provide information on how pricing is done on different customer levels."
"Arbor's products are very expensive. Their competitors are cheap when compared with Arbor."
"Currently, two of the things that I would like would be applications for Android and IOS where we can follow the events, and, if necessary, make changes."
"It does not provide the capability to upload data for blacklisting/whitelisting in bulk."
"For a long time, there was no software version of R80.10 available for the Check Point DDoS Protector software appliances, and we had to stay on the quite outdated R77.30 version."
"The mitigation part could be improved."
"Check Point DDoS Protector can be improved in that initial fine-tuning of policies can be complex and may require expertise."
"For a long time, there was no software version of R80.10 available for the Check Point DDoS Protector software appliances, and we had to stay on the quite outdated R77.30 version."
"Check Point should develop a DDoS solution because they don't have one and we need to use another solution, in our case, Imperva. This is a problem because we need to have two firewalls. We would like to only have one solution because it would improve the management, we would have fewer incidents, and we wouldn't need to talk to more than one person for support."
"Check Point DDoS Protector does not provide the ability to upload data for the blacklist/whitelist in bulk, which is one of the big points that need to be improved to facilitate configurations."
 

Pricing and Cost Advice

"That is one of the great features. I was able to access the majority of the features and services for free."
"The product's pricing is cheap."
"So far I use free tier and happy with it. You can subscribe to business package if needed."
"The pricing depends on the usage, but the cheapest would be around 5,000 USD a month."
"I give the price a five out of ten."
"The pricing for the service is reasonable, neither excessively cheap nor prohibitively expensive. It aligns well with the value of their solution."
"The price is reasonable."
"I believe their performance has improved, but I'd like to refrain from discussing the pricing aspect related to the cloud. The pricing, in my opinion, could be simplified, and I think they should consider reevaluating the pricing for support, as it can be quite high. At times, this cost can make it challenging to choose CARFAGuard or opt for the support."
"Start with a small license. Measure your bandwidth requirements."
"I don't deal with the pricing, but it seems that you need to get basic support in order to upgrade the software and implement some patches."
"You need to find a way to get a good offering from Arbor by negotiating a price. That is the challenge."
"The pricing of the solution is cheap."
"I don't know about the pricing details as our company's service provider offers us the solution as an inbuilt feature within the internet bandwidth they provide us."
"The solution's pricing is based on a licensing model that is expensive when compared to other tools."
"Arbor is striking a good balance between pricing and what they deliver."
"As far as I know, they are the best in this sector, in DDoS protection. They know it, I know, because their service prices are too high. They provide cloud DDoS protection for ISPs, but that is also too expensive."
"I don't deal with the pricing, but it seems that you need to get basic support in order to upgrade the DDoS database for new attacks and so on."
"The appliance comes with a loaded hardware license, and additional options such as SSL can be purchased and enabled."
"It's an expensive solution. It's one of the most expensive solutions in the world. It's cheaper than Palo Alto and Cisco but these are expensive solutions. Fortinet is cheaper."
report
Use our free recommendation engine to learn which Distributed Denial-of-Service (DDoS) Protection solutions are best for your needs.
892,487 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
10%
Comms Service Provider
10%
Computer Software Company
8%
Manufacturing Company
8%
Financial Services Firm
14%
Comms Service Provider
13%
Computer Software Company
8%
Manufacturing Company
8%
Comms Service Provider
39%
Construction Company
6%
Educational Organization
5%
Security Firm
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business46
Midsize Enterprise11
Large Enterprise26
By reviewers
Company SizeCount
Small Business26
Midsize Enterprise14
Large Enterprise29
By reviewers
Company SizeCount
Small Business12
Midsize Enterprise2
Large Enterprise5
 

Questions from the Community

Which is the best DDoS protection solution for a big ISP for monitoring and mitigating?
Cloudflare. We are moving from Akamai prolexic to Cloudflare. Cloudflare anycast network outperforms Akamai static GR...
Which would you choose - Cloudflare DNS or Quad9?
Cloudflare DNS is a very fast, very reliable public DNS resolver. It is an enterprise-grade authoritative DNS service...
What is your experience regarding pricing and costs for Cloudflare?
The tool's pricing is moderate. I rate the product’s pricing a five out of ten, where one is cheap, and ten is expens...
Which is the best DDoS protection solution for a big ISP for monitoring and mitigating?
I would say if it’s an ISP that will build a scrubbing center, Netscout/Arbor is a good solution. In all other soluti...
Which is the best DDoS protection solution for a big ISP for monitoring and mitigating?
Arbor would be the best bid, apart from Arbor, Palo Alto and Fortinet have good solutions. As this is an ISP, I would...
What is your experience regarding pricing and costs for Arbor DDoS?
The prices for Arbor DDoS are expensive. The licensing is subscription-based. From our sales department, they discuss...
What is your experience regarding pricing and costs for Check Point DDoS Protector?
My experience with pricing, setup cost, and licensing is that it is straightforward with no challenges.
What needs improvement with Check Point DDoS Protector?
Check Point DDoS Protector can be improved in that initial fine-tuning of policies can be complex and may require exp...
What is your primary use case for Check Point DDoS Protector?
My main use case for Check Point DDoS Protector is to protect our network perimeter against DDoS attacks, ensuring se...
 

Also Known As

Cloudflare DNS
Arbor Networks SP, Arbor Networks TMS, Arbor Cloud for ENT
No data available
 

Overview

 

Sample Customers

Trusted by over 9,000,000 Internet Applications and APIs, including Nasdaq, Zendesk, Crunchbase, Steve Madden, OkCupid, Cisco, Quizlet, Discord and more.
Xtel Communications
Boston Properties
Find out what your peers are saying about Arbor DDoS vs. Check Point DDoS Protector and other solutions. Updated: April 2026.
892,487 professionals have used our research since 2012.