Try our new research platform with insights from 80,000+ expert users

Azure Web Application Firewall vs The Fastly Next-Gen WAF (powered by Signal Sciences) comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 1, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cloudflare
Sponsored
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
75
Ranking in other categories
CDN (1st), Distributed Denial-of-Service (DDoS) Protection (1st), Managed DNS (1st), Cloud Security Posture Management (CSPM) (13th)
Azure Web Application Firewall
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
13
Ranking in other categories
Web Application Firewall (WAF) (14th), Microsoft Security Suite (20th)
The Fastly Next-Gen WAF (po...
Average Rating
7.6
Reviews Sentiment
7.1
Number of Reviews
3
Ranking in other categories
Web Application Firewall (WAF) (27th)
 

Featured Reviews

Spencer Malmad - PeerSpot reviewer
It's easy to set up because you point the DNS to it, and it's working in under 15 minutes
Cloudflare is highly scalable. Cloudflare is a system with a web portal that the end users like me see. It's a console where we can adjust the DNS, caching, and security features all in that console. Cloudflare owns thousands of servers across the world that cache the data. It's a powerful solution. When clients sign up for Cloudflare, they're getting this monster content delivery network, security, and a web application firewall in one. It's all rolled into one, and it's massive. Unless you have your website hosted on a massive hosting provider, there's no way that you can deliver the amount of data that Cloudflare can provide to the end users. If you have static content, there's no way that you can ever match what Cloudflare can do. Obviously, there are competitors to Cloudflare that do the same, but I'm saying other types of solutions. Let's say you go with F5. Great, that's on-prem. That's in your colo. You can't deliver as much data to the internet as you can with a CDN. You don't have to spend $20,000 on a net scaler, F5, or whatever Cisco's selling now. You don't have to buy that. You pay them $50 a month or $150 a month. It's totally worth it because even in five years, you'll never get the performance value, not just the actual ROI. You have to consider how much throughput you can get with Cloudflare.
Mano Senaratne - PeerSpot reviewer
Comprehensive suite simplifies configuration while frequent updates require management
Mainly, it comes with the complete suite of Microsoft services. I can use it in conjunction with the best options and other features that come with it. Configuration is much easier than using different platforms. For example, if I have hosted the application in AWS and am using the Application Firewall from Azure, there are certain additional steps to follow when configuring them. With Microsoft, everything is within a single suite, making it easier to configure and plan. Azure continually upgrades platforms and sends us messages to upgrade to the next version, simplifying the process. Later, it's much easier if I want to upgrade the software platform, scale it, or move it to a different application host as the whole suite comes together. The return on investment is good. If I am doing applications for clients, I can invoice them for better costs. Most applications that I run and use have a better return on investment.
Archana Heeralal - PeerSpot reviewer
A good solution to implement web application firewall for applications
There are some lags in Signal Sciences for the web application firewalls. Even if we create some custom rules, Signal Sciences cannot capture some of the malicious traffic. There is a little bit of complexity with custom rules that should be removed. Signal Sciences should add a feature called rate limiting with multiple options, wherein I can create a rate limiting based on the cookie request or the IP.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I get a lot of value from Cloudflare's API because it enables you to build a separate environment inside the solution. You can create a domain for performing test requests before you move to the production environment and connect various domains."
"Easier http to https redirect using page rules"
"The features of Cloudflare were found to be more beneficial and led to the decision to utilize it over other options."
"The web application firewall brought us good security and a view of the accesses/blocks of the entire domain and subdomain that were accessed both by region (country) and IPs."
"Cloudflare offers CDN and DDoS protection. We have the front end, API, and database in how you structure applications."
"It's very user-friendly."
"The most valuable feature of Cloudflare DNS is its global reach and it is always evolving."
"The attacker won't have details since my public IP is anonymous. It offers us good privacy."
"The initial setup is easy and straightforward...Azure Web Application Firewall is a scalable product."
"It has been a stable product in my experience."
"It's great for protecting against DDoS attacks."
"Azure WAF is extremely stable."
"The most valuable feature of Azure Web Application Firewall is its ability to filter requests and block false positives by using custom rules and the OWASP rule set."
"The solution has good dashboards."
"It is almost impossible to access these assets from outside, requiring a very skilled attacker to obtain asset tokens of a customer using Azure."
"I can only strongly recommend using the Azure Web Application Firewall."
"When configuring a web application firewall using Signal Sciences, we configure a rule whereby no one except a few people can access the application."
"Fastly (Signal Sciences) integrates and tags the intermittent traffic based on patterns. It generates signals and provides them in a dashboard where we can view them and decide whether to allow or deny traffic. It's a more advanced and easy-to-navigate dashboard."
"The product's most valuable feature is its ability to set up the rules easily."
 

Cons

"The pricing could be improved."
"The product needs to improve its automation."
"We are a product integrator and reseller, and we would like to have a better partner relationship, similar to a channel sales relationship. Sometimes we are on our own or get diverted by Cloudflare because they have direct sales, which competes with us and makes it difficult to build a relationship with this company since we want to be an MSP or a managed service provider for the solution."
"Cloudflare doesn't have a reverse lookup. We can only do a DNS lookup to get the IP address from the hostname. It doesn't work if you want to look up the hostname from an IPA address."
"One area of improvement is in the Access Rules. Hypothetically, if we wanted to block or challenge traffic outside of the United States, the only way to currently do that (as far as I know) is to enter every single country outside of the United States. That could be a labor intensive job. A solution could be to enable users to create a rule where traffic is only allowed within a certain country."
"It would be beneficial for us if Cloudflare could offer a scrubbing solution. This would involve taking a snapshot of my website and keeping it live during a DDoS attack, ensuring uninterrupted service for our users. DDoS attacks are typically short in duration, and having Cloudflare maintain the site's availability from its secure network would enhance the overall user experience. I would appreciate it if Cloudflare could consider implementing this feature. Many organizations already utilize similar capabilities in their CDN platforms, where a static snapshot of the web page is displayed during DDoS attacks. In terms of features, Cloudflare needs to enhance its resilience and stay more focused on adopting new technologies. For instance, solutions like F5 XC Box, Access Solution, and Distributed Cloud Solution have impressive features, and Cloudflare should strive to match and exceed those capabilities. There's a need for improvement in areas like AI-based DDoS attacks and Layer 7 WAF features. Cloudflare should prioritize enhancements in areas such as behavioral DDoS and protection against SQL injection attacks, considering the prevalent trend of public exposure to the internet for business reasons. Overall, Cloudflare needs to invest more in advancing its feature set."
"There could be more courses with engineers. I like e-learning, however, having a specialist in a classroom is more comfortable for me."
"Areas like how assessment, discovery, and payload are dealt with and how it all comes into your organization can be considered when trying to make suggestions to Cloudflare for improvements."
"Deployment should be simplified so that a non-techie can handle it."
"Some Azure applications, like the web application firewall, require a certain level of SKU for hosting setup. The basic setup does not allow me to use the web application firewall and other additional services."
"We would like to see additional site services using AI to provide information about blocking requests and offer analytics on the origin of calls."
"The knowledge base could be improved."
"The management can be improved."
"From my point of view, there is no need for improvement."
"Azure WAF should not be deployed in the middle of the traffic."
"In Brazil, we have some problems with the phone service that affect our connection with the cloud. However, it isn't common."
"Fastly don't support caching for China users. That's the only feature lacking compared to Akamai."
"Even if we create some custom rules, Signal Sciences cannot capture some of the malicious traffic."
"The areas that could be improved in Signal Sciences include the effectiveness of rules, as many didn't function optimally and required custom rule-writing to address bypasses for WAF."
 

Pricing and Cost Advice

"I believe their performance has improved, but I'd like to refrain from discussing the pricing aspect related to the cloud. The pricing, in my opinion, could be simplified, and I think they should consider reevaluating the pricing for support, as it can be quite high. At times, this cost can make it challenging to choose CARFAGuard or opt for the support."
"A free version of the solution is available."
"The price is reasonable."
"That is one of the great features. I was able to access the majority of the features and services for free."
"We are using the free version."
"We don't have any issues with the price."
"The cost primarily depends on the size of the organization."
"The pricing for the service is reasonable, neither excessively cheap nor prohibitively expensive. It aligns well with the value of their solution."
"The price of the solution depends on your architecture and how you manage it. You can control the cost in Azure quite well. The costs do not directly correlate to expenses in the features we are using."
"I give the pricing a nine out of ten."
"We have an enterprise agreement with Microsoft and the pricing is good."
"The price is reasonable. It is approximately $2,000 US per month."
"The price is for this solution is fair and there is a license needed."
"Azure WAF has price advantages over other WAF solutions. The pricing model is flexible because you pay on a scale based on the level of protection you need."
"The pricing is 50% less than Akamai."
"Signal Sciences is pretty cheap compared to other solutions."
"The product has an affordable cost."
report
Use our free recommendation engine to learn which Web Application Firewall (WAF) solutions are best for your needs.
850,900 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
16%
Computer Software Company
14%
Comms Service Provider
9%
Financial Services Firm
8%
Computer Software Company
18%
Financial Services Firm
13%
Manufacturing Company
10%
Government
6%
Educational Organization
17%
Computer Software Company
12%
Manufacturing Company
11%
Financial Services Firm
10%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

Which is the best DDoS protection solution for a big ISP for monitoring and mitigating?
Cloudflare. We are moving from Akamai prolexic to Cloudflare. Cloudflare anycast network outperforms Akamai static GR...
Which would you choose - Cloudflare DNS or Quad9?
Cloudflare DNS is a very fast, very reliable public DNS resolver. It is an enterprise-grade authoritative DNS service...
What do you like most about Cloudflare?
Cloudflare offers CDN and DDoS protection. We have the front end, API, and database in how you structure applications.
What is your experience regarding pricing and costs for Azure Web Application Firewall?
The pricing is okay at the moment. Sometimes, when opting for a higher SKU, it's not the WAF itself that's costly but...
What needs improvement with Azure Web Application Firewall?
While using it, I identified certain areas where it would have been good to have additional features. Right now, I ca...
What do you like most about Signal Sciences?
The product's most valuable feature is its ability to set up the rules easily.
What needs improvement with Signal Sciences?
Fastly don't support caching for China users. That's the only feature lacking compared to Akamai.
 

Also Known As

Cloudflare DNS
No data available
Signal Sciences Next-Gen WAF, Signal Sciences RASP
 

Overview

 

Sample Customers

Trusted by over 9,000,000 Internet Applications and APIs, including Nasdaq, Zendesk, Crunchbase, Steve Madden, OkCupid, Cisco, Quizlet, Discord and more.
Information Not Available
Chef, Adobe, Datadog, Etsy, GrubHub, Vimeo, SendGrid, Under Armour, Duo, AppNexus
Find out what your peers are saying about Azure Web Application Firewall vs. The Fastly Next-Gen WAF (powered by Signal Sciences) and other solutions. Updated: April 2025.
850,900 professionals have used our research since 2012.