DDoS Security
Simwood offers a fully comprehensive and affordable DDoS security solution which helps Internet Service Providers take proactive measures to prevent and mitigate the impact of Distributed Denial of Service (DDoS) attacks. The multi-layer service is an economic and effective alternative to expensive standalone solutions. Many ISPs have struggled with the cost and complexity of putting effective security solutions in place, yet face increasing security risks both to their own systems and those of their customers.
The Simwood DDoS security service is always-on and blocks traffic from questionable sources, provides rapid and continuous monitoring for anomalies, and actively blocks intrusion. If this wasn’t enough, it is also then overlaid by a vast capacity solution that can be brought into play to cope with even extreme DDoS.
The Simwood solution creates a broad-based defence by integrating four key aspects of security within a multi-layered model and backing this up with a vast provision of capacity and DDoS mitigation for extreme attack scenarios. In essence, dirty traffic comes in one side, passes through progressive layers and leaves only clean traffic to pass into the customer network.
Some layers are also offered as a partial DDoS solution for those seeking to augment existing security models.
- Layer A – An estimated 60% of attack traffic originates from falsified or otherwise invalid IP addresses, but Simwood edge routers maintain a continuous track of these and deny any traffic to or from them.
- Layer B – Traffic to or from suspicious sources is blocked through the use of block lists from ThreatSTOP, the leading provider of real-time IP reputation services. It has an unparalleled database of infected sources that is updated every two hours. Undesirable traffic is dropped from the Simwood network at wire speed on a continual basis.
- Layer C – Rapid and continuous monitoring for anomalies within traffic at layer 3, 4 and 7 in all protocols. 100% of traffic is inspected, rather than only sample traffic, as many others do. This layer blocks traffic that does not display acceptable behaviour.
- Layer D – Provides a final check and ‘polishing’ of traffic through 8 sub-layers, including highly configurable firewalling which can specify acceptable traffic types for a particular customer, and the proactive scanning of traffic for attack or vulnerability signatures.
Processing for all four layers is done entirely in hardware at wirespeed, adding a latency of only 100 micro-seconds.
The Simwood security solution provides a real alternative for ITSPs and ISPS who have found existing solutions either overly expensive or inadequate, and have found themselves forced to gamble on there being little likelihood of an attack. The rapid rise in the incidence of DDoS and other malicious attacks now makes this an increasingly risky strategy.
The Simwood solution also effectively makes networks invisible to many attackers, and shares the cost of heavyweight DDoS defence across a large number of service provider customers who would otherwise not have the funds or specialist experience to create their own integrated DDoS solutions.



