On-Premises DDoS Defenses

An Additional Layer of Defenses by Preventing DDoS Malicious Traffic from Ever Reaching Your Network Infrastructures

 

As DDoS attacks continually become larger and more sophisticated, an on-premises Anti-DDoS solution has a critical role as a necessary addition to pure cloud-based Anti-DDoS services. In most cases, cloud mitigation is typically used against volumetric DDoS attacks. Sometimes cyber-criminals will combine multiple DDoS threat factors to bring down their target, like reflection, application layer, and state-exhaustion techniques. NSFOCUS on-premises Anti-DDoS solution can safeguard your network infrastructures against even the most sophisticated DDoS attacks, while ensuring uninterrupted flow of legitimate traffic and critical services.

A COMPREHENSIVE SUITE OF COMPONENTS DEPLOYED IN YOUR NETWORK

 

ADS

Anti-DDoS System

NSFOCUS ADS can protect against volumetric, application and web application attacks in seconds, including DNS floods, HTTP/S floods, UDP/TCP amplification attacks, low and slow attacks, etc. With extremely low latency, high performance, and cutting-edge protection algorithms, users can obtain visibility and protect their network assets from various DDoS threats with granular and dynamic protection for specific subnets or hosts. With integrated NSFOCUS Threat Intelligence (NTI) subscription services, ADS can provide automatic protection from most botnet-based DDoS threats without any investment in operation and maintenance.

 

NSFOCUS ADS provides carrier-grade mitigation capacities with diverse models for organizations of any size:

  • 1U appliances (2 Gbps to 20 Gbps of mitigation capacity)
  • 2U appliances (20 Gbps to 100 Gbps of mitigation capacity)
  • 6U chassis (40 Gbps to 1 Tbps of mitigation capacity)
  • Virtual appliances supporting VMware and KVM hypervisors (200 Mbps to 40 Gbps of mitigation capacity)
Network Traffic Analyzer (NTA)

NSFOCUS NTA is designed to empower organizations with its deep detection capability across border, core, and edge routers in real-time using Deep Packet Inspection (DPI) and Deep Flow Inspection (DFI) techniques. It enables users to flexibly select detection models to protect against the constantly changing threat landscape. NSFOCUS NTA’s embedded traffic auto-learning function automatically learns and adapts the appropriate thresholds of detection policies based on the corresponding network environment.

 

Anti-DDoS System Manager (ADS-M)

NSFOCUS ADS-M is a multi-tenant management system designed for large-scale deployment scenarios. It provides centralized management of the ADS and NTA components with multi-tenant capabilities. It also includes a customizable customer portal, enabling Service Providers to deliver Managed DDoS Services. The AI-based smart protection module enables users to create appropriate protection policies automatically without any additional operational overhead.

WHY HAVE DDoS DEFENSES DEPLOYED IN YOUR NETWORK

Easy to Defeat with
On-Premises Defenses –
Enables Managed
DDoS Services
Easy to Defeat with
On-Premises Defenses –
Enables Managed
DDoS Services