Please ensure Javascript is enabled for purposes of website accessibility

Securing the Service Provider Peering Edge

By learning normal traffic patterns at both the host and prefix levels, DriveNets detects attacks such as carpet bombing that can evade per-host thresholds.

Enforcement occurs on the peering router. Standards-based BGP FlowSpec supplies granular L3-L4 traffic matches and actions, while DNOS can add local fixed-offset byte-pattern matching for precise mitigation without application-layer parsing. Automation, sensitivity and policy remain under customer control.

In this white paper, we cover

  • the architectural model
  • the inline DDoS mitigation use case
  • how bidirectional threat-intelligence enforcement can extend protection across both sides of the service provider edge

Download

Continue reading

White Papers

The Four Dimensions of Network Convergence

Convergence offers a transformative methodology that unifies network functions, simplifies operations, and enhances reso ...

Read more

Case Studies

Case Study: IP/MPLS core network to disaggregated architecture

Like many tier-1 service providers, the global network operator, realized that the networking industry had changed, and ...

Read more

eGuide

Segment Routing: Enhancing scalability and flexibility

Service providers are turning to advanced traffic engineering techniques – such as segment routing.

Read more