Skip to main content Skip to search

DDoS Defense Deployments: Proactive vs. Reactive

October 17, 2017

Choosing whether you deploy DDoS defense solutions in reactive or proactive modes depends on your goals as a business.In this video, A10 Networks' Don Shin breaks down the differences from deploying DDoS defense in proactive mode and reactive mode.Proactive mode delivers the highest resolution detection capabilities. It's commonly used for real-time apps like voice, video and gaming. With proactive mode, detection is on all the time and you have an inline tool with 100 percent visibility through packet analysis.Reactive mode leverages the flow data available from edge routers and switches to analyze meta data to detect anomalies. From there, you mitigate when you've detected a DDoS attack. With reactive mode, you can over-subscribe mitigation and mount a DDoS defense that is more cost-effective, but you sacrifice real-time response.A10 Thunder TPS supports both proactive and reactive deployments  TPS supports proactive mode deployments through real-time, surgical attack mitigation that leverages tracking 27-plus different types of behavioral indicators. And for reactive mode DDoS defense, A10 partners with industry leading companies that take fresh new approaches to flow analysis using virtualization and cloud, which delivers stronger protection than legacy DDoS defense systems that are struggling to keep up with modern, sophisticated DDoS of Things attacks.