IntruGuard Products
Products Overview
Key Capabilities
Benefits
Technical Specs
Product Datasheets
 

Request Further Information

Click the icon below to:
  • Request a price quotation.
  • Request Competitive Analysis of DDoS mitigation solutions available in the market.
  • Request a Webinar.
  • Request a technical call to discuss your DDoS mitigation needs.
Request Further Information from IntruGuard

What's wrong with Other DDoS Solutions in the Market and Why IntruGuard is the Leading Solution?

Key Features Description IntruGuard Competitors (ask them)
Partitioning of network into logical groups with independent policies.
Granular Visibility of traffic at layer 3, 4 and 7.
Granular Control of traffic parameters at layer 3, 4 and 7.

Guaranteed line rate performance under attack with Hardware Logic

Genuine Third Party Validation from a reputed company
Detailed specifications of technology and techniques for DDoS mitigation
Detailed reports of attacks, attackers, attacked URLs, and a whole lot more
Centralized monitoring of mutliple appliances using SNMP, Cacti etc.
Minimum False Positives due to hardware logic, configurable short blocking period of a few seconds and re-evaluation within seconds

 

Software Based Solutions

Under a typical DDoS, the number of packets is so huge that most software based solutions just crumble under the pressure. The amount of calculations and number crunching required to correlate DDoS and botnet attacks is humongous. If the CPU of software solutions and their memory bandwidth become a bottleneck, you will have false positives and legitimate traffic will be dropped.

 

We haven’t had any real-life attack situations that has affected service too much as attacks customers received are far too small, but the unit simply fails to keep our network up with testing we’ve done (400-500Mbps, SYN) so we’ve never really gone live with the (RR) product too much. Too much traffic ends up passing through resulting in networking gear going down.

I couldn’t believe the product is so inefficient against these attacks. We’re looking at the moment for a solid replacement..

- A genuine Riorey customer complaint

We're primarily looking to replace the RioRey devices in our European/US markets. Riorey works well but we need the ability to scale without purchasing new equipment all the time. As any hosting company, we're in an expensive, and incredibly competitive business.

We have increasing issues with its inability to drop SYN floods. The larger floods can overwhelm the systems and we lose connectivity. This is a horrible situation in lights-out locations for us.
- Another genuine Riorey customer complaint

IntruGuard solution is engineered around the best-of-the-breed re-configurable hardware. The processing power is manifold higher than the best-of-the-breed CPUs and network processors.

Due to a massively-parallel architecture, we can correlate millions of parameters available in network packets to figure out the source or cause of the DDoS and botnet attacks and stop them from going further.

 
TCP-dump/Wireshark based Forensic Organizations

These organizations claim forensic capabilities after the attacks have happened on your network. It is best to prepare to block attacks before they happen and block them as they happen using custom-hardware from IntruGuard. Do you think botnet attacks and DDoS attacks can be captured using tcpdump and wireshark? Go ahead if you think so.

 
IntruGuard's solution has a built-in detection and guarding capability. It is instantaneous and not after-the-fact. Attacks are stopped within 2 seconds.
 
Netflow Based Appliances

These appliances and the whole setup are so expensive and complex to deploy that only large ISPs can afford to install them. If you are not an ISP or your ISP does not protect you using these appliances, your next best bet is to protect using IntruGuard. Remember that most web-hosts leave your domain un-protected and open to the Internet.

 
IntruGuard solution is easy to deploy. It is effective and cost-effective. Actual installation in your network takes less than 1 hour. Due to its adaptiveness, it is a True Set It and Forget It solution.
 
Anti-DDoS Services

These vendors reroute your Internet traffic through one or more of their network centers and deliver clean traffic back to the customer. These services require that your confidential data flows through another network that you may not trust. This adds another dependency to your network uptime which is not in your network administrator's control.

 

We currently have several licensed gaming operators whose main market is in Asia. These operators are hosted at our partner data center. For the past months, our operators have been hit by DDoS and somehow our hosting partner have not successfully mitigated the attacks. Worst part is that our other operators are affected even if their servers are not the main targets.. basically some sort of collateral damage.

Our hosting partner have instituted various DDoS mitigation system to no avail. We've subscribed to Prolexic and they've used Arbor Systems and Cisco guard but still the DDoS attacks persist.

We're dealing with very sophisticated attackers.

-A Genuine Prolexic Customer Complaint

With IntruGuard solution, the traffic remains in your data center. You have total control over the network and the traffic. You get the visibility into your network, and the protection from the attacks.
 

Intrusion Prevention Systems (IPS) Appliances and Unified Threat Management (UTM) Systems

For UTM and IPS appliances, DDoS mitigation is yet another feature. Their main focus is on header, state and content anomalies (based on known signatures). DDoS mitigation requires a ground-up approach in hardware (for performance reasons) as signatures are not known. Content is genuine but the intent is malicious. Moreover, most IPS and UTM appliances are gearerd for enterprise deployment. Facing the Internet is another ballgame. No one goes to your data-center with an infected laptop. Your enemies are out there on the Internet ready to flood you with bandwidth and botnet floods.

 
IntruGuard solutions are custom-designed for mitigating DDoS. DDoS is not an-afterthought at IntruGuard.

 

Want to compare our products with other competitive products? Click here.