Virtuasys
ConnectivityEnterprise Fiber
  • Multi-site & LAN2LAN
  • SD-WAN
IP & NetworkTier 1 Connectivity
  • DDoS Protection
  • IPv4 / IPv6 / ASN
  • BGP & Peering
All network services→
Datacenter & CloudHousing
  • Cloud
  • Bare Metal Servers
  • VPS SSD NVMe
View All Services→Check eligibility
GuidesAboutContact
Customer Portal
  • Enterprise Fiber
  • Multi-site & LAN2LAN
  • SD-WAN
  • Tier 1 Connectivity
  • DDoS Protection
  • IPv4 / IPv6 / ASN
  • BGP & Peering
  • All network services
  • Housing
  • Cloud
  • Bare Metal Servers
  • VPS SSD NVMe
GuidesAboutContact
View All Services→Check eligibility
Customer Portal
  1. Home
  2. Services
  3. DDoS Protection

DDoS Protection

3 Tbps scrubbing capacity across layer 3, layer 4 and layer 7. Mitigation in under 30 seconds, always-on or on-demand.

3 Tbps capacity·< 30s mitigation·L3 / L4 / L7 coverage

Get a quote

Answer within one business day.

At a glance

Scrubbing on AS35661 that absorbs volumetric floods and application-layer attacks before they reach your origin.

Capacity
3 Tbps
Mitigation
< 30 seconds
Routing
BGP anycast
Coverage
L3 / L4 / L7

Specifications

Scrubbing capacity3 Tbps aggregate, up to 500 Gbps per customer
CoverageLayer 3, layer 4 and layer 7 (network, transport, application)
Attack typesSYN flood, UDP flood, ICMP flood, amplification, HTTP flood
Mitigation timeUnder 30 seconds from detection
RoutingBGP anycast, IPv4 and IPv6, no IP renumbering
Protection modesAlways-on or on-demand activation
FilteringStateless ACLs, rate limiting, protocol validation, GeoIP
ProvisioningOnboarding timeline and contract term confirmed at quote

Use cases

Network operators and ISPs
Announce your prefixes through our scrubbing centers via BGP and absorb volumetric floods aimed at your transit and edge routers.
Hosting and game infrastructure
Keep latency-sensitive UDP services online during SYN, UDP and amplification floods without rerouting traffic mid-attack.
Web platforms and APIs
Add layer 7 filtering for HTTP floods and bot traffic on top of layer 3/4 volumetric scrubbing.

Delivery and coverage

Traffic is filtered at our scrubbing centers and clean packets are forwarded to your origin over a GRE tunnel or direct connection. Always-on mode keeps all traffic on the scrubbing path with no activation delay; on-demand mode announces your prefixes when an attack is detected. The 24/7 SOC handles escalation and custom filtering rules.

Capacity
3 Tbps
Mitigation
< 30s
SOC
24/7

Frequently asked questions

Pricing depends on protected capacity, the number of prefixes announced, and whether you run always-on or on-demand mode. We scope it on the quote against your traffic profile; there is no per-attack surcharge.

Layer 3 and layer 4 scrubbing stops volumetric floods (SYN flood, UDP flood, ICMP, amplification) that saturate bandwidth. Layer 7 filtering handles HTTP floods, Slowloris and bot traffic against web apps and APIs. Most infrastructure runs both; we scope the mix on the call.

Always-on keeps all traffic on the scrubbing path 24/7 with no activation delay. On-demand announces your prefixes via BGP when an attack is detected and mitigates in under 30 seconds. Always-on is recommended for mission-critical infrastructure.

No. We announce your existing IPv4 and IPv6 ranges via BGP, so no renumbering is required. Legitimate traffic passes through unaffected; only attack traffic is dropped at the scrubbing center.

Protect your infrastructure

Send us your traffic profile and we will scope scrubbing capacity and mode.

Related services

  • Always-On DDoSContinuous traffic scrubbing with no activation delay
  • Layer 7 MitigationApplication-layer filtering for HTTP floods and bot attacks
Virtuasys

Enterprise connectivity, IP transit and colocation on a 100% European backbone.

AS35661 · RIPE NCC member

Connectivity
  • Enterprise Fiber
  • 10 Gbps Enterprise Fiber
  • FTTO vs FTTH
  • L2, Wavelength & Dark Fiber
  • Multi-Site Connectivity
  • SD-WAN Solutions
  • MPLS Solutions
  • Bandwidth on Demand
  • Tunneling (GRE/VXLAN/IPsec/WireGuard)
IP & Network
  • Tier-1 Connectivity
  • BGP & Peering
  • Internet Exchanges
  • DDoS Protection
  • Always-On DDoS Protection
  • Layer 7 DDoS Mitigation
  • Registry & RIPE
  • IPv4 Allocation
  • IPv4 Leasing
  • IPv6 Allocation
  • ASN Registration
  • RIPE Sponsorship
  • IP Transfer Services
  • Looking Glass
Datacenter & Cloud
  • Housing & Colocation
  • Colocation Paris
  • Colocation Lille
  • Rack Rental
  • Cage Hosting
  • Remote Hands
  • Cloud
  • Bare-Metal Servers
  • VPS SSD/NVMe
  • API Automation
  • Custom ISO Deployment
Company
  • About
  • Peering Policy
  • Contact
  • Abuse
  • Guides
  • Check Eligibility
  • Customer Portal
  • Legal notice
  • Privacy

100% European infrastructure · GDPR compliant · 24/7 NOC

© 2026 Virtuasys. All rights reserved.·Legal notice·Privacy·Part of ma2t holding