Anti DDoS


Distributed Denial of Service (DDoS) attacks are a common method of attack on the Internet, a nightmare for many organizations and businesses. When a DDoS attack occurs, the web server has to process a large number of access requests from attack sources, which leads to system resource overload. As a result, normal users cannot access the website because the server is paralyzed.

Currently, DDoS attacks are still occurring on an increasingly large scale and in increasing numbers, affecting millions of websites worldwide, including Vietnam. Attacked websites belong to many different fields such as online newspaper websites, e-commerce websites, and business product introduction landing pages. The purpose of DDoS attacks is often to sabotage, hinder operations, and cause significant economic and reputational damage to organizations/businesses.

Part of the Bizfly Cloud ecosystem of cloud computing solutions, Bizfly Anti DDoS is a superior denial-of-service attack prevention solution for websites. With experience in operating and preventing denial-of-service attacks for thousands of websites, including many of Vietnam’s top traffic websites, Bizfly Cloud provides an effective and reliable DDoS attack prevention solution, helping to ensure your business’s website operates stably 24/7.

How does Anti-DDoS work?

Untitled

  1. Normal users access the website. The request goes to the DDoS filter cluster.

  2. After passing through the threshold setting parameters, if it’s below the threshold, the filter forwards it to the origin server.

  3. After receiving the request, the origin server returns the content to the filter.

  4. After receiving the content from the origin server, the filter returns that content to the user.

  5. When the attacking source sends the first requests, if these requests have not reached the filter’s blocking threshold, they are still considered normal requests and are not blocked.

  6. For these requests, the filter still forwards them to the origin server normally.

  7. After receiving the requests, the origin server still returns the content normally.

  8. When it’s below the blocking threshold, the DDoS filter still returns it to the client normally.

  9. After the attacking source’s requests have reached the blocking threshold, the filter will monitor and block the attacking source’s requests to the origin server to prevent the origin server from being overloaded.

  10. After being blocked, the filter returns an error code to the attacking source, and the attacking source will no longer be able to access the site.

Anti-DDoS Features

  • Automatic DDoS attack filtering and blocking: The Bizfly Anti DDoS system automatically detects and quickly blocks access from attack sources within a short time (only 5 seconds to 1 minute). During the time the website is under attack, access from normal users is still guaranteed to be smooth and uninterrupted.
  • Captcha: Supports the Captcha mechanism to enhance the prevention effectiveness of the system when it is under attack with high frequency. By requiring the input of the Captcha code, normal users who enter the correct code will be able to access the website, while DDoS attack bots will be blocked.
  • Flexible filtering mechanism: Allows for effective attack detection with various methods such as filtering and blocking by domain name (Domain), by website path (URL), or by access session (Session).
  • CDN integration: Integrates CDN (Content Delivery Network) for HTML data to optimize transmission capacity, increase access speed from the website to users, and reduce the load on web servers.
  • Does not affect SEO: Does not block access from Google Bot/Facebook Bot or some popular Bots serving SEO (customizable).
  • Web server load balancing: Allows distributing access load to multiple web servers, helping to increase the ability to customize the number of web servers based on actual access load.
  • Customizable filtering IP blocking: Supports setting up a list of IP addresses that are allowed/blocked from accessing the website when a DDoS attack occurs.
  • Multi-layer DDoS blocking: The system has the ability to detect and prevent many different types of DDoS attacks at the IP, application, and protocol layers… (L3, L4, L7).