Zum Hauptinhalt springen
Support
0
Kontaktieren Sie uns
English
Nederlands
Español
Dedicated ServersFlexible VPSCloud-TechnologieColocationHerausforderungen in der ITSektorenCareers
Cloud Compute

Mit Cloud Compute haben Sie jederzeit und überall Zugriff auf ein Portal, über das Sie Ihre gesamte IT-Umgebung konfigurieren können – egal wo auf der Welt Sie sich befinden.

Cloud-Speicher

Zuverlässiger Zugriff auf Ihre Dateien, Infrastruktur und Anwendungen zu jeder Zeit – ganz ohne Unterbrechungen oder Verzögerungen. Bei Worldstream bieten wir eine Vielzahl von Speicherlösungen an.

Flexible cloud icon
Flexible Cloud
Private cloud icon
Private Cloud
Bare metal icon
Bare Metal Compute
Hollow cube icon
Objektspeicher
Hollow cube icon
Dateiablage
Block storage icon
Blockspeicher
Backup storage icon
Sicherungsspeicher
Brauchen Sie Unterstützung?

Mit erfahrenen Technikern und einer durchschnittlichen Reaktionszeit von 7 Minuten erhalten Sie innerhalb kürzester Zeit eine solide technische Supportlösung.

Dedicated Server

Wählen Sie jetzt Ihren Dedicated Server. Individuelle oder Instant Delivery. Leistungsstarke Server, die perfekt zu Ihrem Anwendungsfall passen.

Use Cases

Ganz gleich, welcher Use Case – wir helfen Ihnen, die ideale Lösung zu finden.

Deal servers icon
Deals
AMD servers icon
AMD-Prozessoren
AI servers icon
Intel-Prozessoren
Hollow cube icon
Virtualisierung, Containerisierung & Orchestrierung
Hollow cube icon
Websites & Applications
Hollow cube icon
Gaming & Streaming Infrastruktur
Brauchen Sie Unterstützung?

Mit erfahrenen Technikern und einer durchschnittlichen Reaktionszeit von 7 Minuten erhalten Sie innerhalb kürzester Zeit eine solide technische Supportlösung.

Smartes Outsourcing

Bestimmte IT-Lösungen generieren Mehrwert, andere erfüllen eher eine unterstützende Funktion. Denken Sie beim Outsourcing daran.

Kosteneffizienz

IT-Komplettpakete mögen erstmal wie eine sichere Option erscheinen, doch wenn man sich die Kosten genau anschaut, sind andere Lösungen oft sinnvoller.

IT-Flexibilität und Kontrolle

Outsourcing heißt nicht, dass man die Kontrolle verliert; man bekommt sogar mehr Flexibilität und Kontrolle.

Cloud-Repatriierung

Die Cloud ist kein Endziel: Sie sollten Ihre Cloud-Umgebung kontinuierlich prüfen und an die sich ändernden Anforderungen anpassen.

Finanzdienstleistungen
Logistik und Transport
Einzelhandel und E-commerce
Medien und Unterhaltung
Technik und Softwareentwicklung
Sicherheit
Managed Service Provider
Brauchen Sie Unterstützung?

Mit erfahrenen Technikern und einer durchschnittlichen Reaktionszeit von 7 Minuten erhalten Sie innerhalb kürzester Zeit eine solide technische Supportlösung.

Chatten Sie mit unsKontaktieren Sie uns
Über WorldstreamÜber die TechnologieKundenfälleWissensdatenbank
Über unsLernen Sie unser Team kennenJobsWerden Sie WiederverkäuferZertifizierungenUnsere RechenzentrenUnser NetzwerkDDoS-SchutzAMD EPYC-ServerTechnologiepartnerBetriebssystemeAlle KundenfälleEasyTerraDutch Drone CompanyPerfGridArtikelFAQNachrichten und BlogbeiträgeProdukte und Services
Kontaktieren Sie uns

Rufen Sie an unter +31 (0) 174 – 712 117 Industriestraat 53, Naaldwijk

English
Nederlands
Español
0
Dedicated ServersFlexible VPSCloud-TechnologieColocationHerausforderungen in der ITSektorenCareersÜber WorldstreamÜber die TechnologieKundenfälleWissensdatenbankMy Worldstream
Contact
Support
EnglishNederlandsEspañol
  1. HomeHome
  2. Knowledge Base
  3. Security
  4. Understanding DDoS protection: what it actually does

Understanding DDoS protection: what it actually does

Gilt für Dedicated Servers, Flexible VPSZielgruppe Technical evaluator, existing customerZuletzt geprüft September 2026

Kort antwoord

DDoS protection defends against attacks that try to overwhelm a server or network with traffic rather than exploiting a software flaw. Always-on mitigation analyses traffic continuously and scrubs out attack traffic in real time, rather than waiting for an attack to be detected before switching on. DDoS protection is included by default on Worldstream servers and can be scaled to a higher mitigation capacity as an add-on.

Auf dieser Seite
  • What a DDoS attack actually is
  • Always-on mitigation vs. on-demand mitigation
  • Why detection speed and false positives both matter
  • What Worldstream's DDoS protection actually covers

What a DDoS attack actually is

A distributed denial-of-service (DDoS) attack tries to make a service unavailable by overwhelming it, usually with traffic sent from many sources at once rather than one. That's the "distributed" part: the traffic doesn't come from a single machine you could simply block, it comes from large numbers of hosts, often part of a botnet, all directed at the same target. Attacks generally fall into three broad categories, and a real attack often combines more than one:

  • Volumetric floods. The simplest kind conceptually: sheer volume of traffic aimed at a target's network link, trying to consume all the available bandwidth so legitimate traffic can't get through. UDP floods and amplification attacks (where a small request tricks a third-party server into sending a much larger response to the victim) are common examples.
  • Protocol attacks. These target weaknesses in how network protocols handle connections rather than raw bandwidth. A SYN flood, for example, opens huge numbers of TCP connections and never completes them, exhausting the connection-tracking resources of a firewall or server rather than its bandwidth.
  • Application-layer attacks. The most targeted kind: traffic that looks like normal, valid requests (HTTP requests to a website, for example) but is sent at a volume or pattern designed to exhaust the application itself, its database, or its backend, rather than the network underneath it. Because the traffic looks legitimate at the network level, this category is generally the hardest to distinguish from real users.

Always-on mitigation vs. on-demand mitigation

The distinction that matters most in practice is when mitigation actually engages:

  • Always-on mitigation means traffic is continuously analysed as it arrives, attack traffic is scrubbed out, and clean traffic is passed through, all the time, whether or not an attack is currently happening. There's no window where an attack is running unmitigated while a system decides whether to react.
  • On-demand mitigation only activates once an attack is detected and traffic is rerouted to scrubbing infrastructure. That detection-and-rerouting step takes time, and during it the target is exposed to at least some of the attack.

Always-on protection removes that detection gap by design, which is why it's the standard approach for anything that can't tolerate downtime at the start of an attack.

Why detection speed and false positives both matter

A mitigation system is judged on two things, not one. Detection speed is the obvious one: the faster attack traffic is identified and scrubbed, the shorter the window of impact. But the false-positive rate matters just as much, and it's easy to overlook. A system that's too aggressive will start blocking or throttling legitimate traffic that merely looks unusual, real users and real requests getting caught in the same net as the attack. Blocking legitimate traffic is also a failure mode, not a safe default, since the practical effect for anyone affected looks the same as the outage the protection was meant to prevent. Well-tuned mitigation has to hold both goals at once: react fast, and avoid mistaking real traffic for an attack.

What Worldstream's DDoS protection actually covers

All Worldstream servers come standard with 20 Gbit/s of anti-DDoS protection, scalable up to 1 Tbit/s+ mitigation capacity. Mitigation is powered by Nokia Deepfield Defender, integrated directly with the network equipment, so suspicious traffic is analysed and filtered at the network level before it reaches your server, not after. That's always-on protection in the sense described above: it's standing by continuously, not switched on only once an attack is already under way. Filtering is tuned to your own risk profile and traffic pattern rather than a single one-size-fits-all threshold, and you can request a mitigation report with the details of a specific attack after it happens.

Related articles

  • Firewall basics in Portal
  • Continuous Security Validation
  • Configuring a dedicated server when you order it
War dieser Artikel hilfreich?

Solide IT. Keine Überraschungen

Sparringspartner für IT-Reife
Wir räumen die Hindernisse aus dem Weg, damit Sie freie Bahn haben
Vorhersehbare und transparente Kosten

Kontakt

  • Industriestraat 53, Naaldwijk
  • Zahlungsmöglichkeiten
  • Missbrauch
  • Ressourcen für Entwickler
  • Network Operations Center
  • Über uns
  • Lernen Sie unser Team kennen
  • Jobs
  • Werden Sie Wiederverkäufer
  • Zertifizierungen
  • Unsere Rechenzentren
  • Unser Netzwerk
  • DDoS-Schutz
  • AMD EPYC-Server
  • Technologiepartner
  • Betriebssysteme
  • Übersicht
  • FAQ
  • Kundenfälle
  • Nachrichten und Blogbeiträge
  • Use Cases
English
Nederlands
Español
English
Nederlands
Español
  • Rechtliches
  • Transparenzhinweis