Connection schemes

The chosen connection scheme is determined by the specific methods that will be used to redirect traffic to the Kaspersky DDoS Protection System and to deliver correctly filtered traffic to the site of the Protected resource.

Traffic redirection methods:

Traffic delivery methods:

Real-world connection schemes may consist of the following combinations:

Kaspersky DDoS Protection connection schemes

 

DNS

BGP

Reverse proxy

Yes

No

Routing

Yes

Yes

One separate element of a connection scheme is a Sensor, which will be required for attack detection if the "On demand" mode is selected or if protection without HTTPS decryption is required for "Always on" mode.

Page top