Edge pre-filtering
PletX routers filter most volumetric floods (UDP, TCP, amplification) at the network edge, before traffic travels deeper into the network.

PletX DDoS Protection
At ForgeHost, enterprise DDoS protection is standard, powered by PletX. Always-on, multi-layered and optimized for gaming and root servers.
4+ Tbit/s
Filtering capacity
< 1 ms
Mitigation
Inline
No DNS switching
Always-on
No activation needed
DE & Eygelshoven
Hosting in Berlin, KVM/TS in NL
99.95% availability
Stable infrastructure
Data protection
Hosting in Germany
Prepaid
No hidden costs
Personal support
No ticket bots
4.0 out of 5
6 reviews
Defense
From volumetric floods to the application layer – multi-stage, automatic and without changing DNS.
Attack
UDP · TCP · Amplification
PletX Filter
XDP/eBPF · Edge
Clean traffic
Your service online
PletX routers filter most volumetric floods (UDP, TCP, amplification) at the network edge, before traffic travels deeper into the network.
Multi-layer filtering with XDP/eBPF inspects connections in real time, symmetrically for inbound and outbound traffic, with minimal false alarms.
Legitimate traffic is forwarded inline. Special game filters and query proxies keep Minecraft, roleplay servers, Steam and voice stable.
Technology
Multi-stage network protection with over 4 Tbit/s filtering capacity, XDP/eBPF, always-on and without DNS changes.
PletX DDoS Protection filters attacks instantly at network level. Permanent protection, no manual switching on, no waiting until mitigation kicks in.
Global high-capacity mitigation. Volumetric attacks are already roughly pre-filtered at the PletX routers.
Our own XDP/eBPF-based software stack analyzes connections precisely, with high throughput and low resource usage.
Inbound and outbound traffic is analyzed. From UDP/TCP floods and amplification to application layer – fewer false alarms.
Special filters for Minecraft, roleplay servers, Steam, TeamSpeak and CS2, incl. query proxies and SYN authentication where needed.
Continuous traffic analysis with real-time filtering and sFlow insights – anomalies are detected before they reach your service.
L3/L4 volume, application layer and game-specific attacks – IPv4 and IPv6 protected.
Network
Game servers, KVM and TeamSpeak run in Eygelshoven with connectivity to DE-CIX and AMS-IX. PletX filters inline in the carrier path, without you having to change DNS or proxy.
Traffic stays in the ForgeHost path – no scrubbing detour via third-party proxies.
Query proxies and game-specific filters for Minecraft, Roleplay, Steam and voice.
Both protocols are covered, volumetric and application layer.
Protection is standard for the protected products, not a separate add-on.
A quick look at capacity, DNS and product scope.
No surcharge, no add-on – PletX DDoS Protection is active at ForgeHost from the start, at SkyLink in Eygelshoven.