Main  /  Additional Services  /  Anti DDoS

Anti DDoS

Professional DDoS mitigation for servers and applications

No website is immune to crashes caused by DDoS attacks, nor the financial and reputational losses it can lead to.

Protect your site with Selectel Anti DDoS.

Types of Protection

Basic protection

We provide protected IP addresses (one address is included in the base fee and more can be ordered from the control panel) and a dedicated channel for secure traffic.

Incoming traffic is first sent over a secure IP address for filtering. All illegitimate traffic is dumped and your servers receive only clean traffic.

You can read more about how we filter traffic in our knowledge base.

Advanced protection

L7 protection is provided by proxying requests to client applications through a filtering system that analyzes and cleans traffic on the application protocol level: HTTP, DNS, SIP, game protocols, etc.

For more information on Advanced DDoS Protection, please visit our knowledge base.

Load balancer

In addition to DDoS protection, our filtration suite also includes tools for load balancing and added fault-tolerance.

Additional information can be found in our knowledge base.

Features

Cost-effective

Transparent payments for clean incoming traffic only.

Transparent

Our reporting system includes comprehensive information on the scale and duration of attacks.

Personalized

Protection plans are configured to meet your project’s needs.

Anti DDoS Prices

Prices and currencies apply to the following countries:

Armenia

Azerbaijan

Belarus

Georgia

Kazakhstan

Kyrgyzstan

Moldova

Russia

Turkmenistan

Ukraine

Uzbekistan

Prices and currencies apply to the following countries:

Austria

Belgium

Cyprus

Estonia

Finland

France

Germany

Greece

Ireland

Italy

Latvia

Lithuania

Luxembourg

Malta

Netherlands

Portugal

Slovakia

Slovenia

Spain

Prices and currencies apply to the following countries:

Afghanistan

Albania

Algeria

American Samoa

Andorra

Angola

Anguilla

Antigua and Barbuda

Argentina

Aruba

Australia

Bahamas

Bahrain

Bangladesh

Barbados

Belize

Benin

Bermuda

Bhutan

Bolivia

Bonaire, Sint Eustatius and Saba

Bosnia and Herzegovina

Botswana

Brazil

British Virgin Islands

Brunei Darussalam

Bulgaria

Burkina Faso

Burundi

Cabo Verde

Cambodia

Cameroon

Canada

Cayman Islands

Central African Rep.

Chad

Chile

China

Colombia

Comoros

Congo (Rep. of the)

Cook Islands

Costa Rica

Cote d`Ivoire

Croatia

Cuba

Curaçao

Czech Rep.

Dem. People`s Rep. of Korea

Dem. Rep. of the Congo

Denmark

Diego Garcia

Djibouti

Dominica

Dominican Rep.

Ecuador

Egypt

El Salvador

Equatorial Guinea

Eritrea

Ethiopia

Falkland Islands 'Malvinas

Faroe Islands

Fiji

French Departments and Territories in the Indian Ocean

French Guiana

French Polynesia

Gabon

Gambia

Ghana

Gibraltar

Greenland

Grenada

Guadeloupe

Guam

Guatemala

Guinea

Guinea-Bissau

Guyana

Haiti

Honduras

Hong Kong, China

Hungary

Iceland

India

Indonesia

Iran (Islamic Republic of)

Iraq

Israel

Jamaica

Japan

Jordan

Kenya

Kiribati

Korea (Rep. of)

Kuwait

Lao P.D.R.

Lebanon

Lesotho

Liberia

Libya

Liechtenstein

Macao, China

Madagascar

Malawi

Malaysia

Maldives

Mali

Marshall Islands

Martinique

Mauritania

Mauritius

Mexico

Micronesia

Monaco

Mongolia

Montenegro

Montserrat

Morocco

Mozambique

Myanmar

Namibia

Nauru

Nepal

New Caledonia

New Zealand

Nicaragua

Niger

Nigeria

Niue

Norfolk Island

Northern Mariana Islands

Norway

Oman

Pakistan

Palau

Panama

Papua New Guinea

Paraguay

Peru

Philippines

Poland

Puerto Rico

Qatar

Romania

Rwanda

Saint Helena, Ascension and Tristan da Cunha

Saint Kitts and Nevis

Saint Lucia

Saint Pierre and Miquelon

Saint Vincent and the Grenadines

Samoa

San Marino

Sao Tome and Principe

Saudi Arabia

Senegal

Serbia

Seychelles

Sierra Leone

Singapore

Sint Maarten (Dutch part)

Solomon Islands

Somalia

South Africa

South Sudan

Sri Lanka

Sudan

Suriname

Swaziland

Sweden

Switzerland

Syrian Arab Republic

Taiwan, China

Tajikistan

Tanzania

Thailand

The Former Yugoslav Rep. of Macedonia

Timor-Leste

Togo

Tokelau

Tonga

Trinidad and Tobago

Tunisia

Turkey

Turks and Caicos

Tuvalu

Uganda

United Arab Emirates

United Kingdom

United States of America (USA)

United States Virgin Islands

Uruguay

Vanuatu

Venezuela

Viet Nam

Wallis and Futuna

Yemen

Zambia

Zimbabwe

Service
Price per month
Anti DDoS over 100 Mbps

All prices include 18% VAT

How It Works

When ordering Anti DDoS Protection, please indicate:

  • the server’s primary purpose
  • the number of IP addresses that need to be protected
  • the desired mitigation methods

We will put together a defense strategy based on the information you provide us and that best fits your project. Protection packages have been developed for the most common server types (web servers, application servers, DNS servers).

Attacks and Countermeasures

Our system protects against the following kinds of attacks:

  • TCP floods
  • SYN floods
  • UDP floods
  • DNS floods
  • ICMP floods
  • HTTP floods
  • DNS cache poisoning
  • VoIP and SIP attacks
  • SSL attacks
  • sockstress attacks
  • IP, TCP, and UDP fragment attacks
  • illegal TCP flag combinations
  • HTTP session attacks (Slowloris, Pyloris, etc.)
  • TCP session attacks, including TCP Idle, Slow TCP, etc.

The following mitigation methods can be implemented in the event of an attack:

  • Invalid RFC packet filtering (Invalid Packet List)
  • Black and white IPv4 and IPv6 address lists
  • Traffic filtering and geographic policing (GeoIP Filtering and Policing) – monitors, restricts, and blocks traffic from countries where the most DDoS attacks are launched;
  • TCP SYN / DNS Authentication
  • Request checks for RFC compliance (DNS Malformed, HTTP Malformed, SIP Malformed)
  • Request limiting for a single IP address (DNS Rate Limiting, HTTP Rate Limiting, SIP Request Limiting)
  • DNS response validation (DNS NX Domain Rate Limiting)
  • Extended TCP connection prevention (TCP Connection Reset)
  • Traffic filtering by applying regular expressions to Payload packets (Payload Regular Expression)
  • Request validation with regular expressions (HTTP Scoping, DNS Scoping)
  • Blocking of SSL traffic that isn’t RFC compliant (SSL Negotiation)
  • Vulnerability signature tracking

For more information about different attack types, please visit our knowledge base.