BGP cluster

BGP & protected transit resources

FlowSpec, GRE/BGP, protected IP transit, routing models and handoff choices.

BGP & mitigation 8 min read

BGP Flowspec for DDoS: useful or dangerous?

What Flowspec does well, what it should never do alone and how to fit it into a safe multi-layer strategy.

Read the article
Architecture guide Reading time: 8 min

Protected IP transit: understand the model

Link saturation, 95th percentile, blackholing, asymmetric routing and clean traffic delivery: the fundamentals before comparing providers.

Read the article
Technical comparison Reading time: 8 min

GRE, BGP or protected IPs: which model fits best?

The strengths, limits and deployment cases of the main anti-DDoS delivery models depending on topology and network control.

Read the article
Routing & latency Reading time: 9 min

Latency, asymmetry and clean traffic delivery

Why the traffic path, local egress and handoff model matter as much as raw mitigation capacity.

Read the article
DDoS guide Reading time: 7 min

How BGP Anti-DDoS works in practice

A practical BGP Anti-DDoS guide covering prefix announcements, traffic steering, clean handoff and where BGP fits in a real mitigation stack.

Read article
DDoS guide Reading time: 6 min

Blackhole vs FlowSpec: which upstream DDoS control fits the situation

When blackholing is acceptable, when FlowSpec helps and why neither one replaces a real clean-traffic design.

Read article
VXLAN / IPIP 11 min read

DDoS protection over VXLAN or IPIP: when should you use them?

VXLAN and IPIP do not solve exactly the same clean traffic delivery problem after DDoS mitigation. This guide explains when each one makes sense, which limits matter and how to choose a model that matches your topology, edge design and operations. It also helps compare VXLAN, IPIP, GRE, clean handoff and post-mitigation traffic delivery with an operator-grade architecture, operations and buying logic.

Read the article
DDoS guide Reading time: 7 min

Protected IP transit benefits

Protected IP transit is not just about absorbing volume. It also changes routing clarity, handoff options and customer operations.

Read article
DDoS guide Reading time: 7 min

Anycast for DDoS protection: when it helps

Anycast can improve absorption and proximity in some models, but it does not replace careful handoff and clean traffic delivery design.

Read article
DDoS guide Reading time: 7 min

Operator buying checklist for Anti-DDoS and protected transit

A practical checklist for hosters, operators and technical buyers comparing Anti-DDoS providers, handoff models and protected transit offers.

Read article
DDoS guide Reading time: 7 min

Clean handoff design after DDoS mitigation

Clean traffic delivery is only useful if the handoff stays readable, supportable and aligned with the customer topology.

Read article

Talk to an engineer

FlowSpec, GRE/BGP, protected IP transit, routing models and handoff choices.