STAY PROTECTED AND SECURED

WHY YOU NEED BGP ROUTING AND PROTECTION

ANTI DDOS


WHY YOU NEED DDOS PROTECTION

Gotel Telecom BGP Network partnering with Tier-1 Data Centers providers and multi-carrier network to provide an automated solution that block volumetric DDOs attacks through its ability to enhance bandwidth capacity and diversity of routes. To further secure user’s web server, we provide 24x7x365 management and monitoring by expert security staff, as well as performance-based SLAs, providing comprehensive protection for the network resources that power your business.

FEATURES

  • DDOS PROTECTION
    GOTEL DDoS Protection network can absorb the DDoS attack and threats before it reaches a consumer server. It blocks the range of the attacking source IP. During this process of mitigation, certain IP addresses may not be able to reach the server.
  • SOPHISTICATED DETECTION TECHNIQUES
    This includes built-in attack profiles and features, statistical and behavioural analysis methods to quickly identify attacks in progress.
  • ADVANCED MONITORING SYSTEM
    Designed to manage network traffic in real-time to identify and block anomalies, malicious attack and quarantine packets in traffic.
  • CLEAN PIPE NETWORK
    GOTEL premium network cleans your Internet traffic eliminating malware, spams, viruses and other threats without putting stress on your hardware, assuring that your data is clean and secured.

WHY BGP DDOS PROTECTION?

  • Environmental Control: Provides control and maintenance by automated systems.
  • Premium Bandwidth: We offer Premium bandwidth through top-tier service providers, including China-dedicated connectivity.
  • On-site security: Makes it our passion to ensure that your servers stay active and have a 99.99% uptime all the time.
  • Redundant Power Systems: Lets you enjoy maximum network output by ensuring your BGP server is upgraded with our internationally acclaimed global carrier-grade connectivity!
  • Top-tier networking technologies: Unprecedented network coverage across the planet through our satellites today!

BGP benefits in controlling how traffic enters the local AS, rather than how traffic exits it.


HOW THE BGP DDOS PROTECTION WORKS


BGP ANTI-DDOS

BGP has introduced an infra anti-DDoS construct to keep your server and your client devices safe, providing users with layers of anti-DDoS defence. This method is always at hand to provide strong clean-up of your hosted sites and network grids, setting them free from any potential threats and viruses through augmented filtering, limiting query quota and the support of early detection plus intelligent mitigation solutions. Once a BGP server detects a potential DDoS threat the user will receive a basic IP clean-up and nullification rout of malicious IP addresses. Our mitigation service is carrier-agnostic/neutral, we can redirect your web flow via BGP configuration or DNS redirect onto BGP’s very own global mitigation network for further disinfection without the interference of carrier signal rejection, assuring all your servers safe and secure without much interruption. Reports generated through an anti-DDoS network are completed and analysed by our partners and collaborators to strengthen our resources against outside threats. Preventing DDoS attacks could sound complicated procedure for many, but our DDoS prevention packages are perfectly suitable for the security budget of any business and IT company and can offer your organization complete prevention against a threat that could deprive you of essential company resources.



DDOS MITIGATION SERVICE

  • Broad spectrum DDoS prevention and protection from L3 to L7
  • Volumetric clean-up for application layer
  • Mitigation models offered
  • “Always-On” or “By-Demand”
  • Preventing traffic baselining
  • Proxy of Web Application Firewall (WAF)
  • At BGP we use a WAF system that uses both positive and negative security models to identify, detect, narrow down and prevent all kind of complex DDoS attacks with minimal impact on other applications by using the F5 BIG-IP® Application Security Manager.
  • Integrated defender against all L7 attacks.
  • Blocks malicious attacks that include SQL injection, cross-site scripting, forceful browsing, and invalid input.
  • MPLS/VPN Option: MPLS/IP VPN provides extra security by directing web traffic through paths, ensuring anonymity and concealing as traffic is transferred from BGP Global Mitigation Network to the customer datacentre for clean traffic.
  • GRE Option: GRE offers a tunnel system setting a safe and secure path within public networks for clean traffic from BGP mitigation network to the customer datacentre.
  • Internet Direct Option: Cleaned web traffic is directed over L3.


FLOW BASED MONITORING

BGP Operations Centres will monitor every hour, every edge router to identify and suspect anomalies in volumetric flows to provide early warning against threats.

  • Early detection and threat warning system users towards L3 and L4 DDoS attacks
  • Netflow, Sflow and Jflow data evaluation


BGP FLOWSPEC

BGP Flow spec, managed by the BGP Security Operations Centre to enable rapid response to threats, creates reports and notifications that are compliant to ACL rules delivery to any network. It neutralizes DDoS attacks by streamflow control by decreasing network traffic flow to avoid overcrowding.



LAYER 7 PROTECTION

Layer 7 offers early detection and threat warning system towards L3 and L4 DDoS attacks, tight monitoring heavy surveillance and monitoring to predetermine network rates for traffic with permissions. Virtual Routing and Forwarding (VRF) redirection for intricate traffic analysis.



BLOCK ANY TYPE OF DDoS ATTACK

TCP SYN+ACK Slowloris Mixed SYN + UDP or ICMP + UDP Flood
TCP FIN Spoofing DNS Flood
TCP RESET ICMP NXDomain
TCP ACK IGMP Ping of Death
TCP ACK+PSH HTTP Flood Smurf
TCP Fragment Brute Force Reflected ICMP & UDP
UDP Connection Flood As well as other attacks