No more typing reviews! Try our Samantha, our new voice AI agent.

HAProxy vs Nexusguard DDoS Protection comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cloudflare
Sponsored
Ranking in Distributed Denial-of-Service (DDoS) Protection
3rd
Average Rating
8.6
Reviews Sentiment
7.0
Number of Reviews
79
Ranking in other categories
CDN (1st), WAN Optimization (4th), Managed DNS (1st), Domain Name System (DNS) Security (5th), Cloud Security Posture Management (CSPM) (18th)
HAProxy
Ranking in Distributed Denial-of-Service (DDoS) Protection
6th
Average Rating
8.2
Reviews Sentiment
7.2
Number of Reviews
47
Ranking in other categories
Application Delivery Controllers (ADC) (3rd), Web Application Firewall (WAF) (13th), Bot Management (7th), Service Mesh (2nd)
Nexusguard DDoS Protection
Ranking in Distributed Denial-of-Service (DDoS) Protection
24th
Average Rating
9.4
Reviews Sentiment
7.7
Number of Reviews
5
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of May 2026, in the Distributed Denial-of-Service (DDoS) Protection category, the mindshare of Cloudflare is 14.0%, down from 19.1% compared to the previous year. The mindshare of HAProxy is 1.5%, up from 1.5% compared to the previous year. The mindshare of Nexusguard DDoS Protection is 1.8%, up from 1.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Distributed Denial-of-Service (DDoS) Protection Mindshare Distribution
ProductMindshare (%)
Cloudflare14.0%
HAProxy1.5%
Nexusguard DDoS Protection1.8%
Other82.7%
Distributed Denial-of-Service (DDoS) Protection
 

Featured Reviews

M.A. Faisal - PeerSpot reviewer
General Manager at bKash Limited
Advanced protection has secured critical web workloads and provides clear traffic visibility
From a security perspective, there remains a security loophole, as some browsers in the market can bypass the Turnstile solution, which requires approximately 40 seconds to do so. From a performance perspective, this is acceptable. We also tried Google reCAPTCHA, and that can also be bypassed. From a security perspective, I would say neither solution is completely secured. Regarding uptime, we have faced a couple of incidents due to Cloudflare in recent years, so I cannot say we receive 100% uptime for our region. We sometimes face challenges, including downtime and other issues. As a result, we are not receiving 100% uptime from Cloudflare's solution. Since most of our customers are in this region, we need alternatives. We need something more competitive than Cloudflare. Unfortunately, in Bangladesh, Cloudflare has three points of presence already, and we cannot find any other solution provider in Bangladesh as an alternative, which presents another challenge. Competitor solutions have more attack signatures, which ensure better security compared to Cloudflare's predefined configurations. Customers do not have options to modify any configuration parameters in Cloudflare, whereas other competitor solutions, such as F5 Distributed Cloud, allow customers to tune configurations according to their requirements. Cloudflare could improve in this area. Additionally, regarding visibility, Cloudflare has static visibility, but they could adopt dynamic graph features for their customers.
Shrinivas Devarkonda - PeerSpot reviewer
Head of DevOps at TripFactory
Handles high traffic efficiently and simplifies complex routing with rule-based logic
I think HAProxy is good as it stands now, but I believe there could be improvements. gRPC has recently been implemented, which is great, along with TLS 1.2 and 1.3 support, and HTTP 2.0 is also available. However, I'm unsure about the benchmark of those HTTP 2.0 requests on HAProxy. If there were any other protocol with better performance than HTTP 2.0, or perhaps mTLS and other similar features, including that in HAProxy would be really great. For improvements, I think that during setup and configuration, the steps provided are neat and clear. Anyone can easily install and configure it. There are many kernel tuning parameters also available, which is great. For specific improvement, in terms of logging, I think printing the full object of the request may help, or if there's a way to reference two requests, it would be beneficial to find a complete session history from a logged-in customer, as it would help analyze customer and user analytics.
ShashikaKodikara - PeerSpot reviewer
Head of Cybersecurity at Technovage Solution
A solution requiring straightforward maintenance while remaining cost-effective compared to its competitors in the market
I am not in a position to speak about the areas where the solution needed improvement because I resigned during the implementation phase. At that time, the implementation was ongoing, and everything seemed to be going well. Using the solution, our team managed to transfer a couple of routers through a few areas. However, I believe the migration is still ongoing. Nonetheless, the first phase of the implementation was successful before my departure. There was a certain level of performance degradation in the solution, which I don't know if it can be tuned. This is because I was working for a short period on the solution. In my experience, it is an area that can be improved while also considering the stability and scalability aspects of the solution. If one wants to scale up, then one needs to change their plan. However, the thing is, one can always go for the larger scale based on one's anticipation of future traffic.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The solution offers the flexibility to control configuration rules."
"It's a great product because it's scalable, has great coverage, and is mature with good defenses against DDoS attacks."
"I didn’t have to pay anything for better website security and reduced server load."
"The solution is a great fit for customers who want unlimited bandwidth."
"The solution is very good at mitigating threats."
"Using the CDN of Cloudflare improved the speed significantly, reducing the page loading times to appropriate levels."
"Cloudflare makes it easier for me to handle and set up DNS for multiple users and multiple clients, and basically go in and access their account, make the changes they need, and it's a one-stop shop."
"CloudFlare provides an answer to a variety of issues, so it gives you very high value for your money."
"Load balancing is valuable, and we are also using the WAF feature."
"I have deployed over 50 instances of HAProxy over the past 15 years and never encountered any stability issues."
"We were able to use HAProxy for round robin with our databases, or for a centralized TCP connection in one host."
"The most important features would be the load-balancing of HTTP and TCP requests, according to multiple LB-algorithms (busyness, weighted-busyness, round robin, traffic, etc). Another important feature that we cannot live without is the username/passwd authentication for legacy systems that had none."
"The support for all major Linux distros makes running and testing a breeze."
"Tech support is super-quick to respond, and always on target with answers specific to the current issue."
"It improves our scalability and responsiveness services to meet our demanding customer requirements."
"The ability to handle a sequence of front- and back-ends gives the user the opportunity to send traffic through different services."
"The managed service allows us to confidently rely on Nexusguard’s professional team to take relevant actions as and when required to make sure DDoS attacks are successfully mitigated, ensuring 100% uptime of our service."
"Based on the support received for implementation, I rate the solution's technical support a nine out of ten."
"Nexusguard has given us confidence that we are protected against any outside attacks."
"Cloud Diversion is another good feature packaged with the whole solution. When attack traffic is detected, Cloud Diversion triggers to automatically route our prefix to Nexusguard’s scrubbing center, ensuring that all attack traffic is dropped in the shortest time possible."
"The support team was helpful."
"Nexusguard has exponentially improved the availability of our services because we don't have to worry much about any threats or DDoS attacks towards our services."
"Filters can be customized depending on the characteristics of the attack traffic. This feature has made it easier for Nexusguard's SOC team to further isolate any specific attack that can't be blocked by pre-configured mitigation."
"The managed service allows us to confidently rely on Nexusguard’s professional team to take relevant actions as and when required to make sure DDoS attacks are successfully mitigated, ensuring 100% uptime of our service."
 

Cons

"I would like Cloudflare to offer a dedicated account manager for large enterprise clients like us."
"If they improve on the placement of their data centers, it would be better."
"The reporting can definitely be improved to offer a lot more explanation on something that may have happened or has actually happened."
"One area of improvement is in the Access Rules. Hypothetically, if we wanted to block or challenge traffic outside of the United States, the only way to currently do that (as far as I know) is to enter every single country outside of the United States. That could be a labor intensive job. A solution could be to enable users to create a rule where traffic is only allowed within a certain country."
"If they improve on the placement of their data centers, it would be better. I'm living in a remote area. I would like to connect to them without any kind of lag."
"The timing aspect can lead to it being considered overpriced. This is a particular concern we have with Cloudflare, as they may struggle with accurately detecting the client."
"Cloudflare's free plan is limited to 5,000 records for their free plan. They should increase that. For example, if I create a domain called abc.com and a subdomain called a.abc.com, my record count will be two. I can make a maximum of 5,000 subdomains. However, if we use our own DNS hosted on another provider, there is no limit. Their free plan also lacks name server customization."
"Access to the solution's dashboards is not intended for a service company. You are practically blind, and to validate a problem, you must view the customer's screen."
"While troubleshooting, we are having some difficulties. There are no issues when it is running; it is stable and very good; however, if there is a troubleshooting issue or an incident occurs, we will have issues because this is open-source."
"If nbproc = 2, you will have two processes of HAProxy running. However, the stats of HAProxy will not be aggregated, meaning you don't really know the collective status in a single point of view."
"The solution's dashboards and reports could be improved."
"I would like to see better search handling, and a user interface, with a complete functional graphical unit."
"Maybe HAProxy could be more modular."
"The logging functionality could use improvement, as it is a little cryptic."
"The tech support is good however, there are sometimes delays in resolving issues because when there is a shift change there doesn't seem to be any communication between the support staff and we are constantly having to repeat our issues to the next person."
"HAProxy is very weak in the logging and monitoring part and requires improvement."
"The mitigation scope of Origin Protection is not fully efficient as there could be delays in activating the countermeasures."
"One thing that we would like to improve from them is to provide more training to SOC team for them to have a deep understanding of the solution so that they would always be ready to answer anything without the need to escalate queries to senior personnel."
"One of the features that should be added to the next release is report generation. Currently, reports can be downloaded every month and are only available at the beginning of each month. It would be nice to generate the reports based on specific dates that we prefer and not have to wait until the next month for the current month’s report."
"The solution must provide features for the post-processing of the traffic type and the traffic quality."
"There was a certain level of performance degradation in the solution, which I don't know if it can be tuned...In my experience, it is an area that can be improved while also considering the stability and scalability aspects of the solution."
"One thing that we would like to improve from them is to provide more training to SOC team for them to have a deep understanding of the solution so that they would always be ready to answer anything without the need to escalate queries to senior personnel."
"One of the features that should be added to the next release is report generation."
"The mitigation scope of Origin Protection is not fully efficient as there could be delays in activating the countermeasures."
 

Pricing and Cost Advice

"The pricing for the service is reasonable, neither excessively cheap nor prohibitively expensive. It aligns well with the value of their solution."
"The tool is a premium product, so it is very expensive."
"We are using the free version."
"In terms of licensing costs, we don't pay for licensing for Cloudflare. We only establish communication, then for peering, Cloudflare takes care of the cross-connection in different data centers."
"The solution has many features but there are ones that you need to pay for. Sometimes you have to find out which is available for free and which you have to pay for."
"So far I use free tier and happy with it. You can subscribe to business package if needed."
"I give the price a five out of ten."
"We don't have any issues with the price."
"We use NGINX as well. However, because the health checks are a paid feature, I like to avoid it whenever possible​."
"HAProxy is free open-source software."
"We are using HAProxy as an open-source."
"The tool is open-source."
"The only cost is for the image manager, who is responsible for uploading the image, and that is trivial."
"It is free of cost."
"When it comes to pricing HAProxy is free."
"Very good value for the money. One of the simplest licensing schemes in this category of products."
"On a scale of one to ten, where one represents a cheap option, and ten represents an expensive option, I would rate the solution a seven in terms of cost."
report
Use our free recommendation engine to learn which Distributed Denial-of-Service (DDoS) Protection solutions are best for your needs.
894,738 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
10%
Comms Service Provider
10%
Computer Software Company
8%
Manufacturing Company
8%
Computer Software Company
14%
Comms Service Provider
10%
Financial Services Firm
9%
Manufacturing Company
9%
Comms Service Provider
40%
Media Company
11%
Financial Services Firm
6%
Educational Organization
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business46
Midsize Enterprise11
Large Enterprise26
By reviewers
Company SizeCount
Small Business17
Midsize Enterprise15
Large Enterprise16
No data available
 

Questions from the Community

Which is the best DDoS protection solution for a big ISP for monitoring and mitigating?
Cloudflare. We are moving from Akamai prolexic to Cloudflare. Cloudflare anycast network outperforms Akamai static GR...
Which would you choose - Cloudflare DNS or Quad9?
Cloudflare DNS is a very fast, very reliable public DNS resolver. It is an enterprise-grade authoritative DNS service...
What is your experience regarding pricing and costs for Cloudflare?
The tool's pricing is moderate. I rate the product’s pricing a five out of ten, where one is cheap, and ten is expens...
Do you recommend HAProxy?
I do recommend HAProxy for more simple applications or for companies with a low budget, since HAProxy is a free, open...
What is your experience regarding pricing and costs for HAProxy?
Since we used the open-source version, we were not concerned about pricing, setup cost, or licensing.
What needs improvement with HAProxy?
HAProxy already provides many of the features that other solutions in the market are providing, such as Nginx, so I d...
Ask a question
Earn 20 points
 

Also Known As

Cloudflare DNS
HAProxy Community Edition, HAProxy Enterprise Edition, HAPEE
No data available
 

Overview

 

Sample Customers

Trusted by over 9,000,000 Internet Applications and APIs, including Nasdaq, Zendesk, Crunchbase, Steve Madden, OkCupid, Cisco, Quizlet, Discord and more.
Booking.com, GitHub, Reddit, StackOverflow, Tumblr, Vimeo, Yelp
21st Century Technologies, Netpluz, REDtone, SNOC, StarHub, aamra
Find out what your peers are saying about HAProxy vs. Nexusguard DDoS Protection and other solutions. Updated: April 2026.
894,738 professionals have used our research since 2012.