Carrier-grade DDoS Attack mitigation appliance

Have anyone tried any DDoS attack mitigation appliance rather than Arbor PeakFlow TMS? I need it to be carrier-grade in terms of capacity and redundancy, and as far as I know, Arbor is the only product in the market which offers a "clean pipe" volume of traffic, so if the DDoS attack volume is, for example, 1Tbps, they will grant you for example 50Gbps of clean traffic.

Anyway, I'm open to other suggestions, and open-source products that can do the same purpose, we have network development team that can work on this.

Thanks.

Hi,

A lot of new vendors have entered the DDoS attack prevention market other than Arbor, I've seen carrier grade devices made by Huawei, NSFocus, RioRey and many others.

If you're looking at something software based, I've used Andrisoft WanGuard and would recommend it.

Ammar.

I've heard good things about the A10 Networks appliances. I have not used them personally, but do use their ADC appliances and they do work well.

Jordan Medlen
Network Engineer
Bisk Education

so if the DDoS attack volume is, for example, 1Tbps, they will grant you
for example 50Gbps of clean traffic.

Please feel free to contact me off-list if I can assist, as it seems you've
been provided with incorrect information.

Does anyone on list currently use Peakflow SP from Arbor with TMS, and is it truly a carrier grade DDoS detection and mitigation platform? Anyone have any experience with Plixir?

Tony McKay
Dir. Of Network Operations
Office: 870.336.3449
Mobile: 870.243.0058
-The boundary to your comfort zone fades a little each time you cross it. Raise your limits by pushing them.

This electronic mail transmission may contain confidential or privileged information. If you believe that you have received this message in error, please notify the sender by reply transmission and delete the message without copying or disclosing it.

Hi,

We’re currently running the Arbor Peakflow SP with the TMS and it works very well for us.

Best Regards,

Ammar Zuberi
FastReturn, Inc

Direct Line: +971 50 394 7299
Email: ammar@fastreturn.net

This email and any files transmitted with it are confidential and intended solely for the use of the individual or entity to whom they are addressed. If you have received it by mistake, please let us know by e-mail reply and delete it from your system; you may not copy this message or disclose its contents to anyone. Please note that any views or opinions presented in this email are solely those of the author and do not necessarily represent those of the company. Finally, the recipient should check this email and any attachments for the presence of viruses. The company accepts no liability for any damage caused by any virus transmitted by this email.

We also evaluating another appliance to put in place of Arbor, their
"support" outside USA its a joke.

Does anyone on list currently use Peakflow SP from Arbor with TMS, and is it truly a carrier grade DDoS detection and mitigation platform? Anyone have any experience with Plixir?

Peakflow SP with the TMS works quite well. Can be very fast once a threat is discovered, depending on how you set up the mitigation. If you use auto mitigate and anycast BGP announcements, you can get a base mitigation going within seconds.

Although it works quite well, it can be a bit pricey. I've seen but not yet played with DefensePro from Radware. I thought they also had premise based unit like Arbor's Pravail but I can't be sure on that.

--John

Switch to Nemo.

Dear All

We use a combination of NSFOCUS hardware (ADS, ADS-m and NTA along with A10 Hardware)

All of which I highly recommend !

Kindest Regards

James Braunegg
P: 1300 769 972 | M: 0488 997 207 | D: (03) 9751 7616
E: james.braunegg@micron21.com<mailto:james.braunegg@micron21.com> | ABN: 12 109 977 666
W: www.micron21.com/ddos-protection<http://www.micron21.com/ddos-protection> T: @micron21

[Description: Description: Description: Description: M21.jpg]
This message is intended for the addressee named above. It may contain privileged or confidential information. If you are not the intended recipient of this message you must not use, copy, distribute or disclose it to anyone other than the addressee. If you have received this message in error please return the message to the sender by replying to it and then delete the message from your computer.

What about DDOS protection as a service? is that something that is being
offered by more than a few vendors? I know of only one that exists through
a friend.

They basically start advertising your bgp routes, filter out the junk, and
send the good traffic back to you.

Tons of such companies exist; BlackLotus/Staminus/Prolexic/Voxility to name a few within the US.

Service provided is usually based on proprietary algorithms that may or may not do what you want it to do, though.