IntruGuard Products
Products Overview
Key Capabilities
Benefits
Technical Specs
Product Datasheets
 

ISP Infrastructure Security from DDoS Attacks

5 Essential Components of ISP Infrastructure Security

Containment

Prevent proliferation of attacks

Compartmentalization

Prevent unauthorized access to systems. Avoid collateral damage when you are under attack.

Continuity

Ensure seamless operation even under DDoS attack or equipment failure

Recovery

Enable rapid recovery from external attack or malicious insider activity

Performance

Network performance should not be reduced by security measures
   
IntruGuard products help you contain the the attacks within 2 seconds. They let you segment your network logically into business functions or networks so that an attack on one network does not impact the other parts. With a hardware DDoS mitigation appliance from IntruGuard, your business continues - automatically. All attacks are instantaneously identified and blocked for a short duration (of less than 15 seconds) and re-evaluated. That helps in reducing false positives. The devices are tested for high performance - under the worst attacks, the performance remains wire-speed. Read a third party analysis here.

ISP Infrastruture and DDOS

Malicious traffic is on the rise. According a recent statistics, nearly 5 percent of all Internet traffic among ISP domains consists of either DDOS or spam.

In a utopian world, if all ISPs co-operated and didn’t allow their customers to spoof or launch attacks, the severity of many older generation attacks such as SYN floods will be reduced. But we live in a real world.

New generation of DDoS attacks use bot-infected PCs and web-servers to launch botnet attacks which are otherwise difficult to stop.

According to a survey, most ISPs can mitigate an attack within 10 minutes of detection. However, 30 percent said mitigation still takes them over an hour. Why spend critical manpower into detection and mitigation if it can be done automatically and cost-effectively.

IntruGuard is used by leading cost-conscious Internet Service Providers around the world to protect:

  • Protect their services
  • Protect small island countries from external attacks
  • Protect their data centers and webhosting customers

Key Advantages of IntruGuard’s Appliances for DDoS Mitigation

  • Hardware based SYN flood and botnet flood mitigation
  • Virtualization: One appliance has mutliple independent policies
  • Subnet based reports: You can create independent reports for independent subnets being protected
  • Investment Protection: Additional licenses for growth in traffic and networks
  • Copper or fiber interfaces
  • Bypass to ensure connectivity under critical failure: no single point of failure
  • Multiple appliances can work together to protect multiple upstream links
  • You can load balance multiple IntruGuard appliances to reach the bandwidth protection that you need

IntruGuard’s support team will help you remotely set up the appliance(s) and help you during attacks. The team works like your extended operations team.

Further Information:

How to set up DDoS Protected Hosting ?

How to add IntruGuard appliances to Cisco Guard setup?