Protection for individual IP addresses and services

If you host multiple services on a single server without full network control, we offer a simple cloud-based protection solution

Ask question
Generating a large number of server requests is trivial, but processing these requests consumes significant server resources. This can exhaust server capacity and lead to service outages

Generating a large number of server requests is trivial, but processing these requests consumes significant server resources. This can exhaust server capacity and lead to service outages

How it works

Modes of traffic passing

Always-On

Traffic continuously passes through our Scrubbing Centers, ensuring attack mitigation occurs transparently without impacting your users or business operations

On-Demand

Once an attack begins, traffic is automatically redirected to Scrubbing Centers, where malicious packets are filtered out. Only legitimate users reach the protected resource, ensuring uninterrupted service

Modes of traffic passing

DNS servers protection

By using our provided IP address as your DNS server, we block illegitimate DNS queries from reaching your infrastructure while hiding your origin server from network-layer attacks.

DNS servers protection

Protection without certificate revealing

When certificate sharing is not possible, we safeguard your service using an on-premise Sensor deployed in your infrastructure.

Protection without certificate revealing

DNS switching

We assign an IP address from our network and configure traffic routing back to your services via dedicated lines or GRE tunnels. You can then update the A-record on your DNS server and manage service protection through personal account

DNS switching

Our advantages

Fault-tolerance

Fault-tolerance

Each geographic zone has two Scrubbing Centers -a primary and a backup

Reliability

Reliability

Each Scrubbing Center is connected to multiple Tier-1 ISPs to ensure network availability

Protection for all application types

Protection for all application types

Our system safeguards applications running on SMTP, DNS, VPN, and other protocols not used for web services

Flexible service protection

Flexible service protection

The solution enables On-Demand protection for individual IPs and services, optimizing costs and simplifying deployment of Kaspersky DDoS Protection

System event notifications

System event notifications

We send notifications about anomalies and attacks on your IPs and services via SMS, Email, Telegram, or Webhook

Layer 7 Protection

Layer 7 Protection

Optionally, we can deploy an on-premise Sensor to protect selected IP addresses and services at L7

Plans & Pricing

The billing unit is a resource — an IP address or subnet and SLA tier.

Premium

Premium

For high-load resources with SLA requirements
  • Attack filtration capacity20 Gbps
  • Connection schemeCustom
  • Objects per IP10
  • ProtocolsCustom
  • Allowed and denied IPs lists100
  • Traffic load balancingCustom
  • Emergency support24x7
  • Expert supportPremium
  • Free traffic allowance50 Mbps
Get quote
Business

Business

Premium SLA for high-traffic websites
  • Attack filtration capacity10 Gbps
  • Connection schemeGRE, DNS Proxy
  • Objects per IP5
  • ProtocolsStandard
  • Allowed and denied IPs lists10
  • Traffic load balancing4 servers per IP
  • Emergency support24x7
  • Expert supportBase
  • Free traffic allowance50 Mbps
Get quote
Standard

Standard

For protecting low-traffic web servers
  • Attack filtration capacity3 Gbps
  • Connection schemeDNS Proxy
  • Objects per IP5
  • Protocolshttp (s)
  • Allowed and denied IPs lists10
  • Traffic load balancing2 servers per IP
  • Emergency support24x7
  • Expert supportLight
  • Free traffic allowance50 Mbps
Get quote

Useful resources

Learn more about network and data center protection