You are on page 1of 2

DATASHEET- PROTECT YOUR INFRASTRUCTURE

BENEFITS
Alleviate concerns over
The number one objective of any Service Provider is to keep their operations running at
large-scale DDoS attacks
all times. With the DDoS threat-landscape continually worsening, it has never been more
that threaten your
important to protect your infrastructure from being impacted by DDoS attacks.
infrastructure with
Today’s threat actors understand how easy and inexpensive it is to launch massive DDoS cloud defenses fully
attacks that result in Internet outages and potential damage to a provider's owned and operated by
infrastructure. DDoS attacks that were once measured in hundreds of Mbps, are now NSFOCUS  
observed in hundreds of Gbps; due to the proliferation of IoT malware, easy-to-rent
Decrease DDoS
botnets, and the continued development of new attack amplification techniques.
mitigation costs by
As DDoS attack sizes grow daily, the threats to all service providers becomes even more reducing the time and
significant. As a result, nearly every service provider recognizes they must deploy resources spent
cloud-based DDoS defenses to mitigate DDoS attacks that threaten their defeating attacks
infrastructures. Without the proper defenses in place, service providers are challenged
Always-on, on-demand,
with keeping their operations online in the face of ever-growing DDoS attacks.
clean traffic billing with
NSFOCUS Cloud DDoS Protection Service (DPS) is designed with Service Providers in unlimited cloud
mind and protects providers world-wide from this ever-growing threat. NSFOCUS mitigation usage
Cloud DPS is easy to implement, inexpensive to operate, reliable, and effective.

KEY FEATURES
WORLD-WIDE COVERAGE
The NSFOCUS Cloud is made up of five NSFOCUS Cloud Centers strategically located where Terabit+ capacity and
vast amounts of Internet traffic originates and terminates at the largest Internet growing
exchanges.* Quick and easy network
integration with BGP

Multi-vector DDoS
attack mitigation
Ashburn
Flexible connectivity for
Frankfurt return traffic - direct,
Singapore partner connect, and
GRE tunnels
Silicon Valley
London Built-in Cloud Portal
allows Service Providers
to control their own
SEAMLESS INTEGRATION WITH YOUR NETWORK mitigation policies
The NSFOCUS Cloud DDoS Protection Service utilizes BGP for diversion, to redirect the
incoming traffic to the Cloud Centers for attack traffic removal. Legitimate traffic is Reporting and analytics
returned using either GRE tunnels or a direct connection to your network. included in Cloud Portal

Integrated with
• A BGP announcement will divert customer Legitimate
NSFOCUS On-Premises
traffic when under attack Traffic

Normal Traffic Route


Defenses
• The solution will pull traffic into
multiple Cloud Centers for cleaning
Malicious CUSTOMER
• Malicious traffic will be discarded by all Traffic INTERNET

Cloud Centers
• Legitimate traffic will be forwarded to BGP Diversion

customer via GRE or direct connection Legitimate


Traffic
• Operates within acceptable latency for Malicious
Traffic

all regions within the global footprint

*Contact NSFOCUS sales for the latest coverage map NSFOCUS CLOUD CENTERS
PROTECT YOUR INFRASTRUCTURE
CLOUD DDoS DEFENSES DESIGNED FOR SERVICE PROVIDERS

WIDE RANGE OF ATTACK PROTECTIONS - NSFOCUS Cloud DDoS Protection Service provides service providers with a
range of mitigation policies and algorithms capable of defeating L3/L4 and L7 DDoS attacks, regardless of their size,
frequency duration, and complexity

DELIVERING CLEAN TRAFFIC - NSFOCUS provides flexible “clean traffic re-injection” options when connecting to the
NSFOCUS Cloud. Due to traditional GRE approaches being less reliable, NSFOCUS provides direct access within a common
data center or alternatively, through NSFOCUS Partner Connection Program - providing reliable access to over 150 data
centers globally

GLOBAL NETWORK PRESENSE - NSFOCUS Terabit+ network spans multiple continent and is continually growing.
NSFOCUS is able to efficiently mitigate all DDoS attacks and delivers your clean traffic back to you, through the most
latency efficient route available; regardless of where the attack originates

SERVICE PROVIDER CLOUD PORTAL - NSFOCUS provides each service provider with their own web-based portal; giving
them visibility of their attacks, metrics, attack data, and other key information. Most importantly, the portal provides real-
time policy control and advanced configuration options to protect your infrastructure from the largest DDoS attacks

FLEXIBLE OPTIONS - There are flexible options available with models serving all customers, when using the NSFOCUS
Cloud. NSFOCUS does not penalize for needing always-on vs. on-demand, nor are there additional charges to protect
additional IP addresses. The billing model is based on clean traffic, using 95th percentile billing

FUTURE READY – IPv6 CAPABLE - As IPv4 address space runs out, IPv6 is fast approaching. Be assured that the
NSFOCUS Cloud is ready to support and provide protection for your critical infrastructure - as you begin to migrate to IPv6

HYBRID READY- The NSFOCUS Cloud is hybrid-ready when used with NSFOCUS On-Premises Defenses, providing
unlimited DDoS mitigation to protect your customers and your infrastructure

CLOUD PORTAL HIGHLIGHTS

• View traffic visualization • Disable mitigation to an IP


• View graphs for total & clean traffic • Automatic customer notification
• View previous attack history • Enforced password complexity
• Control mitigation policies/revision • Login/account activity audit log
• Scheduled timely reports

Example 200 Gbps DDoS Attack Defeated by NSFOCUS Cloud DPS

NSFOCUSGLOBAL.COM | 3979 Freedom Circle, Suite 900 | Santa Clara, CA 95054 | 408.907.6638 CLOUD DPS | DS041817

You might also like