Powerful DDoS Protection Made Simple
Arbor Networks APS provides proven, on-premise DDoS protection for the world’s most critical enterprise and government networks. Enhanced by automatic security updates delivered by Arbor’s Security Engineering and Response Team (ASERT), APS defends against both known and emerging availability threats so your organization can maintain business continuity – no matter what.
Features & Benefits
Custom Protection with Immediate Blocking
Easy to install, configure and use, APS provides immediate protection from application-layer DDoS attacks that threaten service and application availability. It also analyzes attacks and provides custom protection recommendations.
Proactive DDoS Detection and Mitigation
APS automatically detects and blocks DDoS attacks before service performance is impacted. Little to no user interaction is required, lessening the burden on your security team.
Support for Virtual Environments
Leverage the benefits of a virtual environment to quickly turn up DDoS protection. vAPS is a virtual version of the APS appliance that supports VMware, and KVM hypervisors.
Full Suite of Attack Countermeasures
APS incorporates advanced DDoS countermeasures that have proven effective in the world’s largest and most complex network environments. These countermeasures include a set of packet-based protections developed by ASERT that neutralizes the vast majority of global botnet threats.
Automated Threat Updates
Arbor has real-time visibility into more than 90 Tbps of the world’s Internet traffic. This unmatched insight enables ASERT to develop timely, automatic security updates to APS, keeping your organization one step ahead of emerging, malicious threats.
Combined On-Premise and Cloud-Based DDoS Protection
A leading cause of network downtime is how quickly a cloud-based provider of DDoS protection can respond and initiate mitigation when the attacks are too big for on-premise solutions to handle on their own. With Cloud Signaling, Arbor has reduced time to mitigation to as little as five seconds. A cloud signal can be pre-set and trigger automatically when links reach a certain saturation point, or they can be done manually. This tight integration is the best way to ensure the availability of critical network resources.
Real-Time Reporting and Forensics
APS produces in-depth, real-time attack reports that are easy to understand along with forensics detailing blocked hosts, origin countries of attacks and historic trends.
Built-in SSL Inspection to Block Encrypted Traffic
As the Internet evolves to increasingly rely on SSL encryption, DDoS attacks have also evolved to encrypt the malicious traffic and evade defenses. APS now includes an optional on-box SSL acceleration card to deliver an integrated, one-appliance solution to inspect encrypted traffic for DDoS threats. DDoS attacks are blocked in real time as normal traffic passes uninterrupted – all without forcing changes to existing network and application infrastructure.
Inbound Reputation-based DDoS Protection
APS now includes expanded DDoS defenses backed by the global threat intelligence of ATLAS and reputation-based research from ASERT. In-depth analysis expands the breadth of detection and blocking of various types of availability attacks based on the source of the traffic participating in known DDoS attacks.
Inbound and Outbound Advanced Threat Protection
Organizations need a way to stop threat communications in order to protect internal systems from being compromised. APS now applies global threat intelligence of ATLAS and reputation-based research from ASERT to block both inbound and outbound threats via domain and IP reputation.
Managed Arbor Networks APS (mAPS) Service
Arbor Networks APS is a premium DDoS protection product. With the Managed APS (mAPS) Service, you can rely upon the industry leading expertise of Arbor Networks to manage your on-premises APS device and optimize your DDoS protection.