Cut the Click Fatigue - Detection Templates for Bastions Operators


Donny Chong
Nexusguard
Share to:
Introduction – Cut the Click Fatigue
If you're managing DDoS protection across dozens of customers using the Bastions platform, you've probably spent more time than you'd like repeating the same detection settings profile after profile. Copy-pasting thresholds, toggling detection modes, and ensuring each host or network profile is consistent—it’s tedious, error-prone, and doesn't scale.
Now, with the new Detection Templates feature, policy management just got a whole lot easier.

What Are Detection Templates?
Detection Templates are reusable detection policy configurations that can be applied across multiple customer profiles. They streamline how you manage similar traffic scenarios across customers—whether you're handling Clean Pipe, Origin Protection, or Network Protection services.
There are two distinct types of templates:
- Base Templates: These are created and stored at the Bastions (partner) level. They act as reusable blueprints for detection strategies and are not directly bound to any customer profile. Instead, operators can use them to clone Local Templates.
- Local Templates: These are applied within individual customer environments. They can be reused across a customer’s sites or hosts, and customized further as needed.
Both template types support different detection modes (Normal, Rapid, Smart), IPv4 and IPv6, and Host or Network profiles. This dual-structure allows operators to scale efficiently while still fine-tuning per-customer policies.

Template Structure Overview:
Each Detection Template is organized along three key axes:
- Service Type: Origin Protection, or Clean Pipe & Network Protection
- Policy Type: Host-based (focused, lower volume) or Network-based (broad, higher volume)
- IP Version: IPv4 and IPv6 templates are defined and managed separately
This structured approach ensures operators configure precise detection policies based on traffic characteristics and protection scope.
The Power of Base Templates
Base Templates are especially useful when you manage large sets of customers with similar traffic profiles. You can define gold-standard templates once, and allow individual tenants to clone and customize them as needed. They act as a blueprint—ensuring consistency without enforcing rigidity.

Use Case: Reuse Detection Logic Across E-commerce Customers
Say you manage 25 E-commerce customers. Instead of creating 25 separate detection profiles with similar UDP thresholds and behavior flags, you create one E-commerce_Profile_Template and apply it to all.
Later, if you want to tune sensitivity for all of them, simply edit the template once.

Enhanced Visibility & Change Tracking
Templates give you peace of mind. You know exactly what configuration is in place, where it’s applied, and who changed what. Preview panels, read-only views, and a one-year change log give you the clarity you need to manage large-scale detection setups.

Why Detection Templates Matter
- Slash onboarding time for new customers
- Ensure consistency across similar traffic profiles
- Easily update detection logic without editing dozens of profiles
- Reduce operational risk and human error
- Scale your Bastions deployment with confidence
Ready to Get Started?
Detection Templates are now available across Clean Pipe, Origin Protection, and Network Protection services. To begin, visit the Detection Template section in the Bastions portal—or reach out to your account team for a guided walkthrough.
Managing detection policies just got faster, smarter, and scalable.
Protect Your Infrastructure Today





