360° ddos protection for our modern worldhandles everything. our service protects against direct...

6
360° DDoS Protection for Our Modern World

Upload: others

Post on 23-Jul-2020

2 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: 360° DDoS Protection for Our Modern Worldhandles everything. Our service protects against direct attacks on DNS services, and abuses of server vulnerabilities as a leverage to launch

360° DDoS Protection for Our Modern World

Page 2: 360° DDoS Protection for Our Modern Worldhandles everything. Our service protects against direct attacks on DNS services, and abuses of server vulnerabilities as a leverage to launch

Global Network Map

Awards and Mentions

Global Leader in DDoS Mitigation

nexusguard.com

[email protected]

World-Class Reliability

• Proprietary Mitigation Technology

• Highly Customizable Solutions

• Transparent Pricing

• Advanced Detection & Analytics

• Dedicated Technical Account Manager

• Real-time Monitoring - Live Attack Mitigation Map & Threat Analytics - Visualized Web Analytics - Caching Performance

Largest Global Footprint

GlobalScrubbing

Centers

9

TotalActive

MitigationCapacity

1.44 Tbps

SecurityResponse

CenterCoverage

24x7

MIAMI

HONG KONG

SAN JOSELOS ANGELES

LONDON

SINGAPORE

AMSTERDAM

TAIPEI

Page 3: 360° DDoS Protection for Our Modern Worldhandles everything. Our service protects against direct attacks on DNS services, and abuses of server vulnerabilities as a leverage to launch

Nexusguard Application Protection ServiceNexusguard Application Protection mitigates all types and sizes of DDoS attacks and cyber threats, delivering maximum uptime to organizations with an uninterrupted online presence. Our solutions are secure, reliable, customizable, and backed by enterprise grade SLAs.

A multi-layered protection featuring patented and proprietary technologies and a global scrubbing network is in place to mitigate network-layer attacks that aim to overwhelm victim servers, as well as more complex, stealthy application-layer attacks that aim to exhaust the target’s network resources.

How it works

pure-cloud solution, there is no upfront cost and ongoing maintenance and upgrade costs. Mitigation can start immediately. The mechanism is based on two methods of protection, in which signature-based detection is complemented by statistical behavior analysis.

Deployment is easy and quick. Proxy can be set up using DNS forwarding. Proxy mode supports any application running TCP or UDP such as HTTP, HTTPS, SIP, FTP, DNS, and more on either IPv4 or IPv6. It is especially useful for those preferring minimum network changes and do not control a full public Class CIDR/24 network, or those who simply need protection on individual applications.

sssss

Application Protection

Customer Network

Users

Attackers

Nexusguard’s/Partner’sScrubbing Centers

Solution features and benefits• Global scrubbing network with mitigation capacity in excess of 1.44Tbps • Global CDN, load balancing and caching ensuring fast content delivery and network resilience • Progressive authentication blocking all intrusions while ensuring seamless user experience

• Enterprise-grade solution that meets your SLA requirements• Web Application Firewall (WAF) against OWASP Top 10 Common Vulnerabilities • Intuitive, visually appealing Customer Portal that enables real-time reporting and robust logging• Easy installation, fast deployment• PCI DSS compliance • Cybersecurity intelligence provided by a dedicated research team

Page 4: 360° DDoS Protection for Our Modern Worldhandles everything. Our service protects against direct attacks on DNS services, and abuses of server vulnerabilities as a leverage to launch

Nexusguard Origin Protection Service

Nexusguard Origin Protection secures all backend network elements, including the origin of applications, network infrastructure, and the backend IPs typically associated with proxy solutions. It is highly suitable for organizations that

Implemented via tunneling and making use of BGP-anycast routing, Origin Protection guards network resources against all volumetric and protocol-based DDoS attacks, such as UDP, SMTP, SYN floods, fragmented packets attacks, Ping death, Smurf DDoS and much more.

How it works

servers. In this sense, Nexusguard advertises all protected IP range announcements on your behalf.

By establishing BGP peering sessions, you retain complete control over network operations, while strengthening your

tunnels or direct fiber connections, ensuring uninterrupted availability for your business-critical systems.

Origin Protection

Client’s InfrastructureGRE Tunnel

Users

Attackers

Nexusguard’s/Partner’sScrubbing Centers

Solution features and benefits• Comprehensive protection for entire network• Individual IP address protection for mission-critical online services• Consistent uptime connections and high availability• “Always On” reliability

• Superior end-user experience

Page 5: 360° DDoS Protection for Our Modern Worldhandles everything. Our service protects against direct attacks on DNS services, and abuses of server vulnerabilities as a leverage to launch

Nexusguard DNS Protection Service

The Domain Name Service (DNS) is a key component of the Internet, allowing users to quickly reach online resources using easily remembered, readable names. For instance, it resolves a domain’s numerical IP address (e.g., 209.191.122.70) into yahoo.com. As such, the DNS is critical to today’s Internet experience, and keeping that experience accessible to users requires organizations to protect their DNS infrastructure from Denial of Service (DDoS) attacks at all times.

Keeping your websites always accessible on the InternetNexusguard DNS Protection service protects mission-critical online services from all DNS attacks and malicious queries. The solution leverages Nexusguard’s globally distributed network of scrubbing centers to resolve incoming DNS queries quickly and reliably.

How it worksResiding in front of a customer’s infrastructure, Nexusguard DNS Protection Service replaces the DNS server by directly fetching zone records from the customer’s servers and hosting them in our globally distributed scrubbing centers.

As the destination for all incoming queries, Nexusguard’s cloud-based DNS servers absorb all DNS attacks, while filtering out

handles everything. Our service protects against direct attacks on DNS services, and abuses of server vulnerabilities as a leverage to launch DNS amplification attacks on other servers.

Get started nowDeployment is easy. All you have to do is migrate zone files on the Customer Portal from your DNS server to Nexusguard’s DDoS-proof DNS servers. All legitimate DNS queries will then be handled and answered by Nexusguard’s cloud, while filtering out malicious queries.

eeeeee

DNS Protection

Client’s DNS Server

Nexusguard’sScrubbingCenters

Zone transfer by migrating zone files to

Nexusguard’s cloud via DNS Customer

Nexusguard asauthorized name server

for the client website

DNS QueryDNS Response

Legitimate Users

DNS attack absorbed by Nexusguard’s enormous cache

Users

Attackers

Solution features and benefits• Always-on protection and faster DNS response time • Easy configuration and deployment via user-friendly Customer Portal • Expert Security Operation Center (SOC) • Improved security against snooping, dynamic update vulnerability and fingerprinting tools• More secure zone transfer

Page 6: 360° DDoS Protection for Our Modern Worldhandles everything. Our service protects against direct attacks on DNS services, and abuses of server vulnerabilities as a leverage to launch

Twitter twitter.com/nexusguard

Facebook facebook.com/NXG.PR

LinkedIn linkedin.com/company/nexusguard

nexusguard.com

[email protected]

20170215-EN-A4

We are Nexusguard. As a long-time global leader in DDoS defense, Nexusguard is at the forefront of the

fight against malicious Internet attacks, protecting organizations worldwide from threats to their websites,

services, and reputations. Continually evolving to face new threats as they emerge, we have the tools, insight,

and know-how to protect your vital business systems no matter what comes their way.