We performed a comparison between Citrix NetScaler, F5 BIG-IP Local Traffic Manager (LTM), and HAProxy based on real PeerSpot user reviews.
Find out what your peers are saying about F5, Citrix, HAProxy and others in Application Delivery Controllers (ADC)."HTTP analysis and action. We have a lot of custom web applications that sometimes require custom header insertions. Some of these custom apps are external and, via the content switching, we can use one IP and leverage various back-end web app servers."
"Load balancing, cache redirection, content switching, all connected with traffic management."
"The most valuable feature is load balancing."
"Citrix NetScaler offers robust security features, including SmartAccess and customizable policies, making it a reliable choice for safeguarding user data."
"The GSLB feature allows us to move services between data centers. We can do this in either a planned or unplanned manner. We have experienced service provider outages at our primary data center and GSLB will kick in to automatically modify DNS records to point to a secondary data center (active/passive). We also make use of GeoIP information to point clients to the closest data center for accessing applications."
"The solution is very stable."
"The most valuable features of Citrix ADC are load balancing and application firewall."
"We appreciate that this solution facilitates our access to Citrix internet."
"It can determine if the system is going down, then route the traffic somewhere else."
"What we like best about this solution is its stability. It is extremely stable."
"The capability is at a seven or eight out of ten."
"F5 has many capabilities for load balancing and web application firewall features."
"The product is quite flexible."
"The most valuable feature is being able to manipulate the iRules, so you can send traffic to different avenues."
"Stable and scalable network traffic management solution for applications. It has good performance."
"One of the best features of the solution is the operating system."
"Reliability. HAProxy is the most reliable product I have ever used."
"We use it as a load balancer for our application servers."
"I estimate that this product has saved our company hundreds, if not thousands, of dollars in possible downtime from previous load balancers. We make a lot of our money from online sales, so it is critical to have 99.9% uptime."
"Software defined load balancing allows us to dynamically adjust and codify routing decisions. This speeds up development."
"The features I find valuable in this solution are session control which automatically disconnects users that forget to log off, and the ability to write rules to either allow or block certain file requests."
"HAProxy potentially has a good return on investment"
"The anti-DDOS PacketShield filtering solution (embedded in the physical appliances) as well as the BGP route injection are great features and heavily used."
"Stability is number one."
"Maybe creating policies with simple regular expressions."
"The technical support has room for improvement."
"I will try to migrate all the tools to the cloud because there is more lab and more VPN scalability available in the cloud. It is not available on-premises."
"The only thing customers told me that could be improved is that they would like to be able to purchase and receive the products in one box, rather than two boxes. This is something related to marketing, though."
"Currently, it is not easy to use the configuration capabilities of the product."
"Some of our customers have questioned the security of this solution lately, wondering whether it is safe or not, so enhancements in this respect would be good."
"Citrix ADC can be really complex. It isn't very simple like some other appliances that I've worked with. You need a lot of skill and experience to manage it. I'm not talking about a year or two. You need at least four years to understand it very well. It is not that easy to learn. They should make it a lot simpler for users to understand the management of it. They can also provide some additional training. The material they have on the site is not sufficient enough for you to understand how to manage it. Their training is expensive, and not everyone has the funds and experience for it. Citrix isn't very popular around these parts of the world. So, it can use some more marketing, sales, enlightenment, and advertisement. These could bring more market for them. Basically, there are just a few companies that really go for Citrix. Most of the companies go for VMware because they marketed themselves more than Citrix. There isn't much difference between Citrix and VMware. VMware is a little more robust than Citrix. Citrix has focused more on desktops rather than server virtualization, and that's the advantage VMware has over Citrix. Citrix also needs to educate and inform users about the infrastructure that is supported with a version. Currently, if the customers don't look at the datasheet, they might miss this important information."
"Citrix should improve the documentation. It is not really clear how to set up many features to our advantage. When we setup Citrix NetScaler ADC, we have to figure it out by ourselves without a lot of documentation."
"BIG-IP LTM is taking a long time to mature in cloud environments. They plan to improve cloud integration in the next version, but it isn't out yet. It's essential because more companies are moving to the cloud these days and using things like Kubernetes or microservices. F5 needs to improve in that direction, and they are."
"The deployment could be simplified."
"I would like there to be more device security. I would like the tool to support SSL links, along with SSL and TLS."
"It is a hardware load balancer, and its installation procedure is more complex than a software load balancer. There are pros and cons of using hardware load balancing. You have to have specific hardware deployed in your data center to activate this load balancer. They never came up with any software-based load balancing solution. It is all hardware-based."
"The SharePoint SSO part has some room for improvement."
"The synchronization does works fairly well. However, if I were to make changes, I would make it easier to start the sync process."
"LTM would be improved with the inclusion of signature-based blocking."
"We would like to have integration into encryption and PKI integration with SafeNet. That is probably the key component in using External PKIs, letting people bring their PKIs with them."
"I would like to evaluate load-balancing algorithms other than round robin and SSL offloading. Also, it would be helpful if I could logically divide the HAProxy load-balancing into multiple entities so that I would install one HA Proxy LB application which could be used for different Web servers for different applications. I am not sure if these features are available."
"Sometimes it's challenging to get through the log, and you need a log to understand what is going on. It isn't easy to map the logging with the documentation, and every time I read the log, I have to pull out the documentation to understand what I'm reading."
"They should introduce one feature that I know many people, including me, are waiting for: HAProxy should have provide hot-swipe for back-end servers. Also, they need a more detailed GUI for monitoring and configuration."
"There is no standardized document available. So, any individual has to work from scratch to work it out. If some standard deployment details are available, it would be helpful for people while deploying it. There should be more documentation on the standard deployment."
"The web stats UI, which provides the status of the health and numbers, could greatly benefit from having a RESTful interface to control the load-balanced nodes. Although there is a hack around the UI (by issuing a POST request to HAProxy with parameters), a RESTful interface would greatly improve the automation process (through Chef and Ansible)."
"The visibility could be improved."
"The basic clustering is not usable in our very specific setup. The clustering is mainly a configuration replication and is great in a case of active-passive usage. In the case of an active-active (or with more than two nodes) where the configuration is not fully identical, it cannot be used as-is."
"The solution can be improved by controlling TCP behavior better and mandating to clients what the expected outcome must be in order to avoid receiving contestant timeout logs."
More F5 BIG-IP Local Traffic Manager (LTM) Pricing and Cost Advice →