CHLink - găzduire web, VPS și jocuri

Protecție Anti-DDoS 1TBps+

Automatic DDoS attack mitigation, included for free on every chlink.ro service.

Through the partnership with the Voxility datacenter in Bucharest, chlink.ro can block volumetric attacks of up to 1TBps (1024 Gbps), with no need for null-route rules. Traffic filtering happens at the edge of the network, through an advanced firewall connecting multiple scrubbing sensors across different datacenters, so your server stays available even during an active attack.

Layer 3 / 4 attacks (volumetric)

  • TCP SYN / ACK Flood
  • TCP RST / Kill
  • TCP Direct
  • DNS Amplification
  • UDP Amplification
  • LDAP Amplification
  • SADP Amplification
  • UDP VSE și UDP RAW

Layer 7 attacks (application)

  • HTTP(S) Flood and HTTP(S) Spam
  • Slow-loris HTTP and other application-level attacks
  • WAF (Web Application Firewall) rules
  • JavaScript challenge for bot identification
  • Custom rules: GeoIP, per-IP rate-limiting, ASN, headers, user-agent, path regex

For web hosting, additional Layer 7 filtering rules are applied, and for game servers (Metin2, CS 1.6, FiveM, SA:MP), game-specific Anti-DDoS rules are permanently active.

How it works

Automatic filtering, no manual intervention

1

Detection

Traffic is monitored continuously, and anomalies are identified automatically.

2

Filtering

Malicious traffic is blocked at the edge of the Voxility network, before it reaches the server.

3

Continuity

Legitimate traffic keeps reaching the server, with no visible interruptions for users.

Anti-DDoS Game

Dedicated protection for game servers

Besides standard network protection, dedicated and colocation servers benefit from a hardware sensor that permanently monitors connections to game servers and compares packet signatures against configurable rules.

Connection-level verification

Every connection to the game server is verified before it reaches the server, and trusted IPs are allowed automatically.

Automatic blocking of malicious IPs

IPs identified in malware/botnet databases are blocked automatically, with no manual intervention.

Custom rules per client

Geo-location filters and connection thresholds adjusted based on the estimated number of players.

Monitoring and logging

Suspicious events are logged and kept for 30 days, with reporting to authorities in case of incidents.

Monitoring rules can be customized by port (22, 80, 443, 53, game port) and protocol (UDP/TCP), and communication between servers on the internal network is restricted to gateway-type connections, to limit the attack surface between clients.

Real statistics

The largest attacks blocked automatically

The Voxility network has automatically mitigated volumetric attacks of over 1.5 Tbps, with no downtime for the affected services.

DDoS attacks blocked automatically by the Voxility networkLargest attack blockedLargest attack blocked: 3.2 Tbps, blocked automatically3.2 TbpsVolumetric attackVolumetric attack: 980 Gbps, blocked automatically980 GbpsVolumetric attackVolumetric attack: 742 Gbps, blocked automatically742 GbpsVolumetric attackVolumetric attack: 610 Gbps, blocked automatically610 GbpsVolumetric attackVolumetric attack: 405 Gbps, blocked automatically405 GbpsVolumetric attackVolumetric attack: 268 Gbps, blocked automatically268 Gbps

Illustrative values for the largest volumetric DDoS attacks blocked automatically by the Voxility network, with no manual intervention and no downtime for the affected services.

Frequently asked questions