

AWS WAF and F5 Silverline Managed Services compete in the web application firewall space. AWS WAF has the upper hand due to its seamless integration with AWS services and cost-effectiveness.
Features:AWS WAF is known for its integration capabilities, OWASP top 10 protection, and scalability. It offers a flexible cloud-native approach with a pay-as-you-go model, which is appealing for organizations. F5 Silverline Managed Services provides robust security features, threat intelligence, and traffic management with a managed service model that simplifies both setup and management processes.
Room for Improvement:AWS WAF needs enhancements in automation, integration with other services, and intuitive interfaces, aiming to reduce manual intervention. Users also highlight the need for better security capabilities and cost management. F5 Silverline Managed Services requires improvements in reporting, pricing flexibility, and automation to enrich user experience despite its solid security foundation.
Ease of Deployment and Customer Service:AWS WAF is praised for its easy deployment in AWS-centric environments, although users point out a need for more responsive and cost-effective support. F5 Silverline Managed Services, with its deployment flexibility across public, private, and hybrid clouds, can involve longer deployment times, making robust technical support essential. Users emphasize the need for improved support and streamlined deployment guidance.
Pricing and ROI:AWS WAF offers competitive and scalable pricing with its pay-as-you-go model, though high costs and pricing complexity with increased usage are concerns. F5 Silverline Managed Services is perceived as more expensive upfront, focusing on enterprises needing comprehensive security. However, it delivers strong ROI for those requiring managed security services.
With AWS WAF, it is easier for us to block unwanted malicious DDoS attacks and threats from coming into our web application.
They reach out when you send them a ticket, and within 24 hours or less, someone is able to get back to you to solve your problem.
Resolving issues can take time because the support personnel may lack product expertise, leading to delays.
Their support team is responsive, and they deliver timely updates, addressing any glitches promptly.
They resolve the issues by joining me to fix them.
AWS WAF does scale in the sense that it is fully managed and has automatic scaling.
F5 Silverline Managed Services is scalable enough without observed limitations.
The solution is fully scalable, and I would give it a rating of ten on a scale of one to ten for scalability.
Since it protects web applications from common attacks such as SQL injection and XSS, it is very stable.
Sometimes the rules didn't work, so we need to go back and ensure we have a proper rule set to make sure our AWS WAF rule does what it's supposed to do.
In terms of reliability, I would rate AWS WAF about six out of ten due to the need for improved signature sets.
They offer regular updates, and overall, I would rate the stability of the solution as nine out of ten.
If it's a bot, we should differentiate the requests, whether they are automated or not.
Compared to firewalls, WAFs generally provide limited stateful analysis capabilities.
AWS WAF can be improved if the dashboard is enhanced in such a way that everything will be displayed automatically without you going in there to see what is going on.
Introducing preemptive support prompts would reduce the manual effort required for creating policies or blocking specific IPs.
Improvements could include the creation of highly optimized profiles.
Due to our status as an AWS shop, AWS WAF is cost-effective for us, and we benefit from discounts due to our extensive use of AWS services.
The licensing cost for AWS WAF is just pay-as-you-go; it is a service-based model.
On a scale where ten is very expensive, I would rate the pricing as three.
The solution is expensive
The biggest benefit of AWS WAF for us is to filter malicious requests, so we can protect our environment and application from malicious actors.
It has also helped to improve the posture of our application, prevent all DDoS attacks, and unnecessary traffic and SQL injection that is reducing the performance of our application.
I switched from other vendors to prioritize AWS WAF for better control within our infrastructure.
It allows for centralized management of certificates, protecting applications from top ten attacks like SQL injection and cross-site scripting.
The monitoring tab displays GET and POST requests in a readable format, making it accessible even to non-tech-savvy individuals.
| Product | Market Share (%) |
|---|---|
| AWS WAF | 5.8% |
| F5 Silverline Managed Services | 1.3% |
| Other | 92.9% |

| Company Size | Count |
|---|---|
| Small Business | 22 |
| Midsize Enterprise | 12 |
| Large Enterprise | 26 |
| Company Size | Count |
|---|---|
| Small Business | 6 |
| Midsize Enterprise | 2 |
| Large Enterprise | 8 |
AWS Web Application Firewall (WAF) is a firewall security system that monitors incoming and outgoing traffic for applications and websites based on your pre-defined web security rules. AWS WAF defends applications and websites from common Web attacks that could otherwise damage application performance and availability and compromise security.
You can create rules in AWS WAF that can include blocking specific HTTP headers, IP addresses, and URI strings. These rules prevent common web exploits, such as SQL injection or cross-site scripting. Once defined, new rules are deployed within seconds, and can easily be tracked so you can monitor their effectiveness via real-time insights. These saved metrics include URIs, IP addresses, and geo locations for each request.
AWS WAF Features
Some of the solution's top features include:
Reviews from Real Users
AWS WAF stands out among its competitors for a number of reasons. Two major ones are its user-friendly interface and its integration capabilities.
Kavin K., a security analyst at M2P Fintech, writes, “I believe the most impressive features are integration and ease of use. The best part of AWS WAF is the cloud-native WAF integration. There aren't any hidden deployments or hidden infrastructure which we have to maintain to have AWS WAF. AWS maintains everything; all we have to do is click the button, and WAF will be activated. Any packet coming through the internet will be filtered through.”
F5's Silverline Managed Services is a SaaS solution delivering DDoS protection, managed Web Application Firewall (WAF) services, and managed Shape Security Fraud and Anti-bot solutions.
Silverline services include 24x7 access to F5's Security Operations Center (SOC). F5's expert security professionals use F5 products with state-of-the-art security tools to ensure the best protection possible. As an add-on to Silverline DDoS or WAF services, Silverline Threat Intelligence integrates dynamic lists of threatening IP addresses to give context for policy decisions.
We monitor all Web Application Firewall (WAF) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.