Edge Protection (EP)

Scale up Protection of Internet Uplink and infrastructure of CSPs

Integrated Edge Protection for Resilient Uplink Connectivity

Nexusguard's Edge Protection service delivers an integrated and cohesive solution that bridges the gap between on-premise and cloud protection. CSPs with Nexusguard Bastions deployed stand to benefit the most from this service, as it provides an instantaneous increase in mitigation capacity, significantly enhancing the security and performance of their internet connections. The result is a seamless and uninterrupted connectivity experience, ensuring the consistent delivery of reliable, high-quality services to their customers.

How it works

Nexusguard Edge Protection safeguards CSP partners by mitigating attacks that could exceed their allocated bandwidth or overwhelm their Bastions server capacity. This is accomplished by intelligently diverting malicious traffic to the Nexusguard Cloud.

When an attack threatens to surpass local scrubbing capabilities, Nexusguard Edge Protection activates immediately to safeguard CSP partnersโ€™ uplinks. The attack traffic is scrubbed within Nexusguardโ€™s global cloud infrastructure, neutralizing threats close to their source instantly. Meanwhile, legitimate traffic is efficiently routed back to the destination network via a GRE tunnel, enabled by the locally deployed Bastions.
Nexusguardโ€™s Edge Protection delivers a truly integrated and unified user experience

Nexusguardโ€™s Edge Protection delivers a truly integrated and unified user experience, while providing an instantaneous increase in mitigation capacity to any Bastions deployment using the Nexusguard Cloud, scaling up protection instantly.

Advanced Features for Scalable Edge Security

Safeguard against Volumetric Attacks

Actively protects uplink Internet connections of partner CSPs from L3-L4 DDoS attacks

Automated Traffic Diversion

Dynamically swings traffic to global scrubbing centers via Nexusguard Cloud Diversion App when attacks exceed allocated bandwidth capacity

Surgical Mitigation

Automatically removes attack traffic while ensuring the flow of legitimate traffic is uninterrupted

Flow Data Analysis Capability

Advanced multi-layered detection engine that identifies traffic anomalies through deep data analysis

Clean Traffic Delivery

After scrubbing, clean traffic is routed back to destination networks via Smart GRE tunnels terminated at the local Bastions servers

Operational Advantages for Reliable Uplink Protection

Immediate Mitigation Capacity Boost

Redirects additional mitigation capacity from Nexusguard Cloud to Bastions PoP swiftly
Redirects additional mitigation capacity from Nexusguard Cloud to Bastions PoP swiftly

Lowers Dependency on CSP Bandwidth

Reduces reliance on CSP mitigation bandwidth โ€” improving overall efficiency
Reduces reliance on CSP mitigation bandwidth โ€” improving overall efficiency

Cloud Diversion App Implementation

Utilizes Cloud Diversion App for seamless and automated traffic rerouting
Utilizes Cloud Diversion App for seamless and automated traffic rerouting

Attack Risk Diversion

Shifts attack risks to the Cloud environment for enhanced security
Shifts attack risks to the Cloud environment for enhanced security

Enhanced Attack Event Transparency

Intuitive portal provides real-time visibility into active attack events, enabling swift response and control
Intuitive portal provides real-time visibility into active attack events, enabling swift response and control
With Nexusguard's Bastions, I not only get faster onboarding but the freedom to be truly creative-building flexible packages that adapt to an ever-changing market. I can rely on Nexusguard's platform and team to deliver flawlessly every time, allowing us to meet customer needs with confidence.
We want to make the network environment for our customer as safe as they feel at home. Nexusguard offers a customized internet security solution so that our customers can continue to interact with us the way supposed to be and the way they want toโ€”all the way without interruption.
We chose to partner with Nexusguard because of its specialty in DDoS mitigation. In fact, they not only focus on DDoS attacks, they are also curious about and strive to address the pain points they face.
Our customers are extremely satisfied with Nexusguard DDoS Protection solutions because they have sophisticated tools that give them visibility into their networks. With Netpluz mitigation facility commissioned in Singapore, powered by Nexusguard, our customers can expect proactive and intelligent mitigations to ensure only clean traffic reaches their network.
The Nexusguard solution secures our network with enterprise-grade SLAs. Most importantly, it ensures all business-essential applications have the uptime that they require.
When we have queries and new service requests, the Nexusguard team were able to attend to us promptly. This is a good partnership that every business would want to ensure our business plans are implemented smoothly.

FAQs

How does Edge Protection benefit CSPs with Nexusguard Bastions deployed?

CSPs leveraging Edge Protection experience improved security, performance, and reliability in their Internet connections, providing a seamless experience for their customers.

What support and resources are available for customers utilizing Edge Protection for their networks?

Customers using Edge Protection receive comprehensive support, including technical assistance, training materials, and access to a dedicated knowledge base to optimize their network security strategies.

What options are available for customers?

Customers can choose from a range of Edge Protection features such as seamless on-premise and cloud integration, enhanced security protocols, and performance optimization tools tailored to their network requirements.

How does your service differentiate from competitors?

Nexusguard's Edge Protection service stands out through its seamless integration of on-premise and cloud security, offering superior connectivity, comprehensive threat protection, and tailored solutions for diverse network environments.

How do you charge for your DDoS protection service?

Pricing for DDoS protection services is determined based on factors like traffic volume, protection level, and additional features. Nexusguard offers a flexible pricing model to ensure cost-effectiveness and scalability for varying network demands.

DDoS Protection

Anti-Flooding Protection

A robust set of rules designed to counter flood attacks, including IP, TCP, UDP, ICMP, SSL/TLS, and SIP floods. These attacks overwhelm systems by flooding them with excessive requests, depleting resources and blocking legitimate traffic. Anti-flooding ensures systems remain responsive and operational.

NTIF (Network Threat Intelligence Feed)

Powered by a dynamic IP reputation database, NTIF policies block threats based on the historical behavior and risk profiles of malicious IP addresses. This intelligence-driven approach proactively prevents attacks before they can disrupt operations or compromise security.

Flex Filter

A highly customizable tool that defines mitigation policies tailored to customer network traffic patterns and security needs. Flex Filter goes beyond standard anti-flood measures by offering enhanced metrics and comprehensive data visualization.

Traffic Policing

This technique sets traffic thresholds post-mitigation, ensuring controlled data flow before sending it to other systems or networks. Acting as a safeguard, it prevents network congestion and minimizes disruptions across shared network resources.

SMART Filter

SmartFilter is a cutting-edge mitigation tool within NetShield, powered by Nexusguardโ€™s Smart Detection mode. It automatically generates and adapts mitigation rules in real-time, dynamically responding to evolving attack strategies to ensure optimal protection.

At its core, SmartFilter employs a smart feedback mechanism, which continuously monitors traffic against a clean traffic level baseline, applying mitigation actions when deviations occur. During attacks, it self-adjusts โ€” dropping malicious traffic or allowing legitimate traffic to flow โ€” ensuring optimal performance and robust security at all times.

Flexible Detection Modes

Normal Mode

Continuously monitors traffic, offering advanced warnings and triggering responses if thresholds are exceeded within a set timeframe.

Rapid Mode

Focuses on bursty traffic and hit-and-run attacks, enabling quick threat detection through active traffic monitoring.

Smart Mode

Uses Nexusguardโ€™s AI-driven Deep Learning system for dynamic traffic profiles, ensuring precise detection and minimizing false positives.

Baselining

Smart Baselining

Leveraging advanced deep learning, Smart Baselining continuously analyzes network traffic to establish accurate baseline thresholds. This intelligent approach minimizes false alarms, enhances the speed of anomaly detection, and enables rapid threat mitigation.

Traffic Diversion

Auto-diversion to Cloud

Nexusguardโ€™s Edge Protection module leverages a Cloud Diversion App to automatically redirect customer traffic โ€” within minutes โ€” when it exceeds predefined bandwidth thresholds. This fully automated solution eliminates the need for on-premise hardware or manual intervention, delivering seamless, uninterrupted protection against attacks.

Administration Portal

Service Dashboard

Nexusguardโ€™s Administration Portal is a centralized command hub for real-time security management and network performance optimization. Designed for ease and precision, its integrated dashboard provides instant visibility into traffic patterns โ€” including raw and clean bandwidth, cached requests, and active threats โ€” allowing teams to swiftly configure mitigation settings aligned with their service plans.

Beyond real-time monitoring, the portal delivers deep insights into ongoing and historical DDoS attacks, revealing attack sources, geolocation data, and connection anomalies. For compliance and analysis, customers can access granular event logs, export raw data, and generate automated monthly reports โ€” ensuring every security decision is backed by actionable intelligence.

Resources

Datasheet

Nexusguard Edge Protection Datasheet

Whitepaper

View All

Empowering CSPs: Enhancing Security with Nexusguard Edge Protection

This document investigates specialized anti-DDoS solutions that can efficiently shield against a wide array of DDoS attacks, ensuring uninterrupted operations for organizations.

The Cost of DDoS Security

Nexusguard identifies and breaks down the direct and indirect capital and operations costs involved in deploying and maintaining a DDoS detection and mitigation strategy that works.

Looking for Simpler DDoS Protection?

Protect your critical infrastructure effortlessly with Nexusguardโ€™s reliable and easy-to-manage DDoS protection. Speak with one of our network security experts to learn how we can simplify your security operations and give you peace of mind.