언어 선택

DDoS Mitigation

DDoS Mitigation with
Industry-Leading Solution

We offer the best practices for DDoS mitigation to ensure sustained business continuity for our customers by leveraging AhnLab DPX, one of the leading DDoS response solutions.

Challenges

Persistent Attacks, Ongoing Damage

Ceaseless DDoS Attacks

DDoS is old but remains one of the most formidable cyber-attacks. In particular, recent DDoS traffic is difficult to distinguish from regular traffic, making it even more challenging to take down. These attacks employ widespread IoT devices, evolving methods like the “Distributed Reflection Denial of Service (DRDoS)”, and stealthy techniques like source IP spoofing.

Multi-Layered Approach

A linear approach to DDoS mitigation is less likely to succeed. Organizations must design the multi-layered security architecture by leveraging threshold-based rules, authentication methods, and scrubbing centers (if necessary) to achieve near-perfect DDoS mitigation.

DDoS-Optimized Security Strategy

We acknowledge the inherent difficulty of achieving 100% prevention against DDoS attacks, so we use the term “mitigation” instead of “defense”, and focus on an adequate response. For a successful DDoS mitigation, it is crucial to run DDoS-specialized solutions like AhnLab DPX at peak levels with correct configurations.

Solution

DDoS-Optimized Solution: Transcending Traditional Network Security

Existing network security products like firewall and intrusion prevention system (IPS) partially delivers DDoS mitigation features, but more is needed to tackle advanced DDoS attacks. AhnLab DPX, fully committed to DDoS response, is designed to systematically mitigate a variety of DDoS attacks without compromising the performance of other network security appliances and ultimately enhance organization-wide business continuity.

솔루션_07디도스 방어.png

Benefits

Optimal DDoS Mitigation
Tailored to Customer
Needs

Optimal Response to Diverse DDoS Attacks

AhnLab DPX provides over 60 threshold-based and user-defined rules, along with six authentication-based response techniques, offering optimal response strategies for countering various types of DDoS attacks.

Flexible Deployment Methods

AhnLab DPX supports both inline and out-of-path methods, allowing deployment to internal or external networks in line with the customer's business requirements; inline and out-of-path methods stand out with their agility and availability, respectively.

Multi-Layered Filters for Advanced DDoS Mitigation

AhnLab DPX meticulously detects and responds to a variety of DDoS attacks through its advanced filters with 12 layers. Each layer involves traffic authentication, real-time detection, and prevention of abnormal traffic based on pre-defined policies.

Minimal False-Positives

AhnLab DPX performs a real-time full packet inspection, allowing users to detect and block DDoS attacks with minimal false positives. Its exceptional performance ensures laser-accurate detection and low latency throughout the inspection process.

Distributed Management of Policy and Monitoring

Given that each server has different security requirements, AhnLab DPX allows users to configure up to 300 logically separated “zones” ensuring independent management of each protection target. The feature enables target-specific monitoring and customized policy configuration to achieve optimal protection.

Flexible Appliance Options

AhnLab DPX offers three lineups spanning 5000B, 10000B, and 20000B adhering to different customer needs. Customers can select the appliance that best fits their business scale and budget.