Skip to main content
PletX DDoS Protection

PletX DDoS Protection

DDoS protection
included

At ForgeHost, enterprise DDoS protection is standard, powered by PletX. Always-on, multi-layered and optimized for gaming and root servers.

4+ Tbit/s

Filtering capacity

< 1 ms

Mitigation

Inline

No DNS switching

Always-on

No activation needed

  • DE & Eygelshoven

    Hosting in Berlin, KVM/TS in NL

  • 99.95% availability

    Stable infrastructure

  • Data protection

    Hosting in Germany

  • Prepaid

    No hidden costs

  • Personal support

    No ticket bots

  • 4.0 out of 5

    6 reviews

Defense

How PletX filters attacks

From volumetric floods to the application layer – multi-stage, automatic and without changing DNS.

Attack

UDP · TCP · Amplification

PletX Filter

XDP/eBPF · Edge

Clean traffic

Your service online

Three layers of mitigation

01

Edge pre-filtering

PletX routers filter most volumetric floods (UDP, TCP, amplification) at the network edge, before traffic travels deeper into the network.

02

XDP/eBPF analysis

Multi-layer filtering with XDP/eBPF inspects connections in real time, symmetrically for inbound and outbound traffic, with minimal false alarms.

03

Clean delivery

Legitimate traffic is forwarded inline. Special game filters and query proxies keep Minecraft, roleplay servers, Steam and voice stable.

Technology

PletX in detail

Multi-stage network protection with over 4 Tbit/s filtering capacity, XDP/eBPF, always-on and without DNS changes.

Always-on

Always-on, no activation delay

PletX DDoS Protection filters attacks instantly at network level. Permanent protection, no manual switching on, no waiting until mitigation kicks in.

  • 4+ Tbit/s filtering capacity

    Global high-capacity mitigation. Volumetric attacks are already roughly pre-filtered at the PletX routers.

  • XDP/eBPF filtering

    Our own XDP/eBPF-based software stack analyzes connections precisely, with high throughput and low resource usage.

  • Symmetric · L3 to L7

    Inbound and outbound traffic is analyzed. From UDP/TCP floods and amplification to application layer – fewer false alarms.

  • Game filters included

    Special filters for Minecraft, roleplay servers, Steam, TeamSpeak and CS2, incl. query proxies and SYN authentication where needed.

  • 24/7 monitoring

    Continuous traffic analysis with real-time filtering and sFlow insights – anomalies are detected before they reach your service.

Covered attack vectors

L3/L4 volume, application layer and game-specific attacks – IPv4 and IPv6 protected.

  • UDP/TCP floods
  • SYN/ACK attacks
  • Amplification
  • HTTP floods
  • Slowloris
  • Query floods
  • Bot attacks

Network

PletX at SkyLink

Game servers, KVM and TeamSpeak run in Eygelshoven with connectivity to DE-CIX and AMS-IX. PletX filters inline in the carrier path, without you having to change DNS or proxy.

  • Inline mitigation

    Traffic stays in the ForgeHost path – no scrubbing detour via third-party proxies.

  • Gaming filters

    Query proxies and game-specific filters for Minecraft, Roleplay, Steam and voice.

  • IPv4 & IPv6

    Both protocols are covered, volumetric and application layer.

  • No surcharge

    Protection is standard for the protected products, not a separate add-on.

Frequently asked questions

A quick look at capacity, DNS and product scope.

Included with all products

No surcharge, no add-on – PletX DDoS Protection is active at ForgeHost from the start, at SkyLink in Eygelshoven.