We offer a service in collaboration with our transit connectivity provider, Arelion (formerly Telia Carrier), based on NETSCOUT's Arbor DDoS protection solutions, which are widely used worldwide. Our network traffic is constantly monitored, and traffic is analyzed in real-time using IPFIX records and other methodologies.
When an attack is detected, Arelion takes over routing to your vulnerable IP address across the entire internet by advertising more specific routes. The traffic is then directed through routers that cleanse network traffic using BGP flowspec technology to filter out malicious traffic and allow legitimate traffic to pass through. Legitimate traffic is then routed to our routers, where it continues its normal path to reach your service.
Standard Package
This includes basic DDoS protection, which consists of:
- Automatic restriction of network traffic during an attack
- Blocking of most known volumetric attacks
- Blocking of ICMP packets during an attack
The Standard Package is provided to all customers free of charge, offering 15 minutes of protection.
After 15 minutes, if the attack intensifies and exceeds 5 Gbps, the attacked IP is isolated (blackholed), making it inaccessible from the internet.
Premium Package
In addition to the capabilities of the Standard Package, we offer various customizable options in the Premium Package.
You have the ability to configure a customized DDoS protection policy according to your specific needs, using the following options:
- Allow specific IPV4 and IPV6 addresses from the internet during and outside of attacks to prevent accidental filtering during an attack.
- Remove specific IPV4/IPV6 addresses from DDoS protection, such as speed test servers, iperf servers, etc.
- Utilize different DDoS protection templates based on OSI model L7 (application layer) or L4 (transport layer), designed for web servers, SIP servers, SMTP servers, DNS servers, etc.
- Customize your protection policy using whitelisting (allowing specific IPs), blackholing (isolating IPs), and Geo-IP-based filtering (filtering by country or region).
For incoming internet traffic (new network sessions):
- Possible to select the protocol you want to protect (TCP/UDP).
- Possible to choose the destination ports that should remain open during an attack.
- Determine if and how you want TCP SYN authentication protection during an attack.
For outgoing responses to network traffic initiated by protected servers (ongoing network sessions):
- Possible to select the protocol you want to protect (TCP/UDP).
- Possible to choose the destination ports that should remain open during an attack.
- Compare traffic with Geo-IP databases and select protection actions based on location – restrict network traffic, block, or allow.
The Premium Package costs €120 per month and includes 60 minutes of protection. The cost for each additional minute exceeded is €5.
Our automatic DDoS protection service provides effective defense against congestion attacks that can disrupt the normal functioning of your services and have a negative impact on your company's reputation. With fast and efficient protection, customizable options, and minimal impact on legitimate network traffic, our service ensures the continuity of your business operations.