Try our new research platform with insights from 80,000+ expert users

Fastly vs Imperva DDoS comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 5, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cloudflare
Sponsored
Ranking in CDN
1st
Ranking in Distributed Denial-of-Service (DDoS) Protection
1st
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
75
Ranking in other categories
Managed DNS (1st), Cloud Security Posture Management (CSPM) (14th)
Fastly
Ranking in CDN
6th
Ranking in Distributed Denial-of-Service (DDoS) Protection
7th
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
7
Ranking in other categories
Web Application Firewall (WAF) (17th)
Imperva DDoS
Ranking in CDN
7th
Ranking in Distributed Denial-of-Service (DDoS) Protection
9th
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
77
Ranking in other categories
Web Application Firewall (WAF) (23rd)
 

Mindshare comparison

As of May 2025, in the Distributed Denial-of-Service (DDoS) Protection category, the mindshare of Cloudflare is 19.6%, up from 19.2% compared to the previous year. The mindshare of Fastly is 2.2%, up from 2.1% compared to the previous year. The mindshare of Imperva DDoS is 6.5%, down from 8.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Distributed Denial-of-Service (DDoS) Protection
 

Featured Reviews

Spencer Malmad - PeerSpot reviewer
It's easy to set up because you point the DNS to it, and it's working in under 15 minutes
Cloudflare is highly scalable. Cloudflare is a system with a web portal that the end users like me see. It's a console where we can adjust the DNS, caching, and security features all in that console. Cloudflare owns thousands of servers across the world that cache the data. It's a powerful solution. When clients sign up for Cloudflare, they're getting this monster content delivery network, security, and a web application firewall in one. It's all rolled into one, and it's massive. Unless you have your website hosted on a massive hosting provider, there's no way that you can deliver the amount of data that Cloudflare can provide to the end users. If you have static content, there's no way that you can ever match what Cloudflare can do. Obviously, there are competitors to Cloudflare that do the same, but I'm saying other types of solutions. Let's say you go with F5. Great, that's on-prem. That's in your colo. You can't deliver as much data to the internet as you can with a CDN. You don't have to spend $20,000 on a net scaler, F5, or whatever Cisco's selling now. You don't have to buy that. You pay them $50 a month or $150 a month. It's totally worth it because even in five years, you'll never get the performance value, not just the actual ROI. You have to consider how much throughput you can get with Cloudflare.
Nick Wilsdon - PeerSpot reviewer
An easily scalable and stable product that provides exceptional support
The product should provide improved bot detection and management. The product should also provide support for code management. Everybody working in CDN is currently looking for ways to better manage code deployment with various authorization levels and synchronization with our lower environments. Matching up what's happening in CDN with what's happening on the origin regarding testing would always be useful.
Syed Ubaid Ali Jafri - PeerSpot reviewer
I like the content monitoring feature which I haven't seen in other WAF solutions.
They could improve by minimizing false positive results. Although this occurs less with Imperva, we would like to see some further improvements. We have been using this product for last 1 years, it's result is very impressive. But due to the excessive load on the Web site where thousands of requests‎ are generated from legitimate users, however the request in which any sequential or specialised characters are requested would be directly blocked by impreva . Currently imperva blocks the special character request generated from the user, as I conduct a test where I am parsing the encoded html values of the same special characters to the input field, imperva bypasses these encoded values for example : ' i.e. %27 or / i.e %2F, the WAF bypasses these encoded characters. I hope that this device should have a capability to detect the pattern which is associated with Xss or Xsrf, rather then by not blocking the request which contains any special characters.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The web application firewall brought us good security and a view of the accesses/blocks of the entire domain and subdomain that were accessed both by region (country) and IPs."
"The most valuable feature of Cloudflare DNS is its global reach and it is always evolving."
"The most valuable feature of the solution is external DNS. It is also very secure. They have their own main server and once you configure it, the product takes care of everything. There are no issues in resolving IPs and low latency is also present."
"Its ease of integration with Office 365 and the fact that it's a good product compared to what I had before"
"Cloudflare offers CDN and DDoS protection. We have the front end, API, and database in how you structure applications."
"It is a stable solution. I rate the stability a ten out of ten...I rate the scalability a ten out of ten."
"It is a fast and secure DNS."
"I rate its stability a ten out of ten."
"Rate limiting is a good feature that protects from volumetric attacks."
"Its initial setup process is straightforward."
"The product helps our organization to access sites located in different regions quickly."
"The product's initial setup phase is straightforward."
"Support is good; the product works as advertised. We have a Slack connection with them. So we can basically ask for help, live, engage, and ring when they respond. Very quickly."
"Compute@Edge features are valuable to me."
"Fastly uses configuration versioning, where you can deploy a new version in less than one minute."
"Integration with IBM AS/400 and Db2 is okay."
"The technical support is excellent."
"​Technical support provides good, quick responses."
"The most valuable features for us are the DDoS and Bot."
"The dashboard is good and user-friendly."
"The solution's most valuable aspect is that it is easy to configure."
"The three-second service level agreement is already better than the competition."
"Incapsula takes care of the CDN infrastructure and bandwidth volume, providing several enterprise "load balancing" features."
 

Cons

"Although I think it's quite good, it doesn't provide me with all the features I would expect to have if I were using Imperva."
"One area of improvement is in the Access Rules. Hypothetically, if we wanted to block or challenge traffic outside of the United States, the only way to currently do that (as far as I know) is to enter every single country outside of the United States. That could be a labor intensive job. A solution could be to enable users to create a rule where traffic is only allowed within a certain country."
"There should be a specific price list for enterprise-level customers."
"Cloudflare should add more documentation and pricing to the cloud version."
"It would be beneficial for us if Cloudflare could offer a scrubbing solution. This would involve taking a snapshot of my website and keeping it live during a DDoS attack, ensuring uninterrupted service for our users. DDoS attacks are typically short in duration, and having Cloudflare maintain the site's availability from its secure network would enhance the overall user experience. I would appreciate it if Cloudflare could consider implementing this feature. Many organizations already utilize similar capabilities in their CDN platforms, where a static snapshot of the web page is displayed during DDoS attacks. In terms of features, Cloudflare needs to enhance its resilience and stay more focused on adopting new technologies. For instance, solutions like F5 XC Box, Access Solution, and Distributed Cloud Solution have impressive features, and Cloudflare should strive to match and exceed those capabilities. There's a need for improvement in areas like AI-based DDoS attacks and Layer 7 WAF features. Cloudflare should prioritize enhancements in areas such as behavioral DDoS and protection against SQL injection attacks, considering the prevalent trend of public exposure to the internet for business reasons. Overall, Cloudflare needs to invest more in advancing its feature set."
"It should have easier documentation for the configuration. It's very technical and people who aren't technical should also be able to do the configuration."
"Technical support is lacking."
"For large enterprises, the pricing is okay. However, the enterprise price for small projects is a bit high. A mid-tier pricing option would be beneficial."
"The solution's pricing could be better."
"Fastly's customer service area needs improvement."
"What I don't like about Fastly is that they charge a heavy price."
"Support is not that great."
"Stronger analytics would be helpful, like showing configurations that haven't served a certain amount of traffic in a while. With many properties, things can get lost track of - duplicates or unused configurations not properly decommissioned."
"It is missing a "staging" platform to deploy a test configuration with all of the real settings, which would allow us to properly test before putting it into production."
"The product should provide improved bot detection and management."
"Imperva DDoS does not provide version control."
"The solution should integrate with something that looks at continuous security management."
"I would like to have support for SSL management and secure DNS."
"Imperva always needs to adjust to new versions of cyber attacks, it needs to be faster, improve the resiliency of the software of the solution."
"Imperva should have more points of presence in Africa."
"It needs to be improved every time there are new attacks."
"The cost could be lower; our end clients need to have a high budget to purchase this solution."
"There’s nothing that’s missing in terms of features."
 

Pricing and Cost Advice

"I think the pricing is competitive. I think as far as licensing is concerned it's pretty straightforward because it's based on domain. It's just that sometimes domains could be tricky with some customers."
"When you compare Cloudflare DNS to other solutions, such as Akamai, the price is reasonable."
"There are no additional costs beyond the standard licensing fees."
"I believe their performance has improved, but I'd like to refrain from discussing the pricing aspect related to the cloud. The pricing, in my opinion, could be simplified, and I think they should consider reevaluating the pricing for support, as it can be quite high. At times, this cost can make it challenging to choose CARFAGuard or opt for the support."
"The cost primarily depends on the size of the organization."
"The price of the solution is expensive."
"It's a premium model. You can start at zero and work your way up to the enterprise model, which has a very high pricing level."
"We don't have any issues with the price."
"The solution is cheaper than other products in the market."
"In my opinion, Fastly is priced competitively."
"Fastly is less expensive than one of its competitors."
"You need to pay a premium price for the tool."
"It is an expensive solution."
"I've generally found Fastly to be very competitive in pricing, especially around Compute@Edge."
"The pricing has been very competitive."
"It is a very expensive solution. The price is very high. A lot of customers tell us that they would love to use Imperva more. I have some customers who have 50 websites, but they have only 10 websites on Imperva because of the price. They would love to have all their websites running through Imperva, but they can't. They have to choose the more critical websites to protect because the price is very high. It is a very good product, but it is too expensive. If you buy a plan for 20 megabytes and you don't consume all of your 20 megabytes, it is okay, but if you consume more, you are charged for the superior traffic."
"We are satisfied with the pricing."
"The data packages are higher than our needs so we end up paying for data that we don't use."
"Varies depending on the needs of the customer."
"It is not expensive compared to the other similar solutions in this category."
"It is expensive."
"We have an issue with Imperva Incapsula in the Iraqi market because of the high price."
"There is a license or subscription renewal that our customers pay."
report
Use our free recommendation engine to learn which Distributed Denial-of-Service (DDoS) Protection solutions are best for your needs.
849,686 professionals have used our research since 2012.
 

Comparison Review

it_user68487 - PeerSpot reviewer
Nov 6, 2013
CloudFlare vs Incapsula: Web Application Firewall
CloudFlare vs Incapsula: Round 2 Web Application Firewall Comparative Penetration Testing Analysis Report v1.0 Summary This document contains the results of a second comparative penetration test conducted by a team of security specialists at Zero Science Lab against two cloud-based Web…
 

Top Industries

By visitors reading reviews
Educational Organization
17%
Computer Software Company
14%
Comms Service Provider
9%
Financial Services Firm
8%
Computer Software Company
18%
Comms Service Provider
10%
Financial Services Firm
9%
Manufacturing Company
8%
Financial Services Firm
16%
Computer Software Company
14%
Manufacturing Company
9%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is the best DDoS protection solution for a big ISP for monitoring and mitigating?
Cloudflare. We are moving from Akamai prolexic to Cloudflare. Cloudflare anycast network outperforms Akamai static GR...
Which would you choose - Cloudflare DNS or Quad9?
Cloudflare DNS is a very fast, very reliable public DNS resolver. It is an enterprise-grade authoritative DNS service...
What do you like most about Cloudflare?
Cloudflare offers CDN and DDoS protection. We have the front end, API, and database in how you structure applications.
What do you like most about Fastly?
Support is good; the product works as advertised. We have a Slack connection with them. So we can basically ask for h...
What needs improvement with Fastly?
What I don't like about Fastly is that they charge a heavy price. The pricing is different per region. If you have a ...
What do you like most about Imperva Incapsula?
We use Imperva DDoS to stop DDoS attacks and reduce the amount of unwanted queries against web services or web scraping.
What is your experience regarding pricing and costs for Imperva DDoS?
The pricing is rated a ten on a scale where ten is very expensive. The solution is only cloud-based and does not prov...
What needs improvement with Imperva DDoS?
Pricing can be improved, as it is quite expensive. Additionally, support response times for emails can sometimes be d...
 

Comparisons

 

Also Known As

Cloudflare DNS
No data available
Imperva Incapsula
 

Overview

 

Sample Customers

Trusted by over 9,000,000 Internet Applications and APIs, including Nasdaq, Zendesk, Crunchbase, Steve Madden, OkCupid, Cisco, Quizlet, Discord and more.
Twitter, Airbnb, Alaska Airlines, Pinterest, Vimeo, The Guardian, The New York Times, Ticketmaster, The Drupal Association, Opera, about.com, imgur, Etsy, Foursquare, GitHub, New Relic, shopify, Shazam, Firebase
Hitachi, BNZ, Bitstamp, Moz, InnoGames, BTCChina, Wix, LivePerson, Zillow and more.
Find out what your peers are saying about Fastly vs. Imperva DDoS and other solutions. Updated: April 2025.
849,686 professionals have used our research since 2012.