DDoS protection
Attack traffic out,
genuine traffic in
DDoS attacks take little effort to carry out and hit anyone whose reachability matters. Our protection redirects the attack traffic to external scrubbing centres, filters it out there and passes the productive traffic on.
Protection against overload attacks
How our DDoS defence works
Online applications, e-commerce solutions, portals of federal, state and local government, and also websites with high visitor numbers or of public interest are popular targets of cyber attacks, DDoS attacks among them. These attacks take comparatively little effort: a flood of data aimed at the target overloads the infrastructure and prevents delivery.
Our high-bandwidth DDoS protection redirects the attack traffic to external "scrubbing centres". There, malicious traffic is filtered out so that the productive traffic can still be delivered. We offer incident-based protection that only becomes active when there is an attack – alternatively, it can be switched to continuous "always on" protection.
For encrypted traffic too
Web DDoS protection for HTTPS
A growing share of attacks runs over TLS-encrypted connections and is therefore invisible to pure volume filtering. Our web DDoS protection detects and fends off DDoS attacks on HTTPS traffic as well.
Which methods apply in your case depends on the type of attack and on your connection. The protection bandwidth of our incident-based defence is 100 Gbit/s per IP range.
- Bogon filtering
- IP reputation filtering
- Protocol verification
- Stateful TCP connection filtering
- IP rate limiting
- Statistical application protocol filtering
Prices
What DDoS protection costs
DDoS protection is included with all managed systems — in the cloud, on managed servers and in the private cloud you do not have to book it separately. It has a price where it is a service of its own: in colocation, where the systems belong to you and we only house them.
DDoS defence
- Incident-based (colocation) 100 Gbit/s protection bandwidth, per IP range, filtering and return of the traffic
- €399.00 / month + €199.00 setup
- Incident-based (cloud) Filtering and return of malicious traffic
- On request
- "Always on" protection Continuous filtering instead of activation when an attack occurs
- On request
- Web DDoS protection Detection and defence on TLS-encrypted traffic
- On request
All prices net, plus statutory VAT, as of January 2026.
Goes with it
Protection in front and behind
Firewall, WAF & NGF
Whatever gets through the filtering meets the firewall next – at network and at application level.
To firewall, WAF & NGFContent delivery network
A CDN absorbs load peaks and keeps requests away from the origin system – seasonal ones too.
To the CDNConnectivity
How your traffic reaches the data centre and which protection options depend on it.
To connectivityFrequently asked questions about DDoS protection
What is a DDoS attack?
A distributed overload attack: many systems simultaneously generate a flood of data aimed at one target until its infrastructure can no longer carry the load and the application can no longer be reached. The effort for the attacker is small; the damage for the target can be large.
Your cloud pages say "DDoS protection included" — here there is a price. Which is it?
Both, for different cases. If we run the system, the protection is part of it: Secure Public Cloud, private cloud, cloud servers and managed services include it at no extra charge. In colocation, your own machines stand in our data centre — there the defence is a service you book in addition, and that is why it has a price here. The technology behind it is the same.
How does the defence work?
The attack traffic is redirected to external scrubbing centres. There, malicious traffic is filtered out and kept away from the target, while the productive traffic continues to be delivered. The methods used include bogon filtering, IP reputation filtering, protocol verification, stateful TCP connection filtering, IP rate limiting and statistical application protocol filtering.
What is the difference between incident-based and "always on" protection?
Incident-based protection becomes active when an attack is detected. With "always on" protection, traffic runs through the filtering all the time. Incident-based costs less; "always on" reacts without any switchover time. Which fits depends on how sensitive your application is to the switchover.
What does DDoS protection cost?
With managed systems, nothing extra — the protection is included there. In colocation it is a service of its own: incident-based defence costs €399.00 net per month per IP range, with 100 Gbit/s protection bandwidth, plus €199.00 net one-off for setup. For continuous "always on" protection and web DDoS protection, we price according to protection needs.
Do you also protect encrypted traffic?
Yes. Web DDoS protection detects and fends off attacks on TLS-encrypted (HTTPS) traffic as well. Pure volume filtering does not see these attacks.
Where is the traffic cleaned?
Cleaning can be limited to the EU. For systems with requirements on where data is processed, that is the deciding detail — tell us whether it applies to you and we will set it up that way.
Does DDoS protection replace a firewall?
No. DDoS defence keeps overload away from the target, but it does not check what individual permitted connections do. That is the job of the firewall, the web application firewall and attack detection. The layers complement one another.
What response times do you commit to?
We monitor around the clock, every day of the year. How quickly we intervene and through which escalation stages is set out in your contract — a time we have not committed to is not a time we state here.
Satisfied customers















Sovereignty
Paving the way for digital sovereignty
-
Owner-managed since 1997
As an owner-managed operator with our own data centers, we make our decisions independently and are subject exclusively to German / EU law.
-
100% made in Germany
Our data center, product development, and customer support are all based in Germany for your digital sovereignty.
-
24/7 Customer Support
We are here for you: 24/7/365 customer support, in English and German
Let us find the right solution together
We take the time to understand what you need and to develop solutions that fit. We explain complicated technical matters clearly and precisely as we go. Get in touch with me directly and we will work it out.
- We will get back to you as soon as we can.
- No obligation, free of charge.