What are the Relationships Between ADS and Anti-DDoS Traffic Cleaning, CNAD Pro, and AAD?
Huawei Cloud provides multiple security solutions to defend against DDoS attacks. You can select an appropriate one based on your service requirements. Huawei Cloud Anti-DDoS Service provides three sub-services: Cloud Native Anti-DDoS Basic, Cloud Native Anti-DDoS Advanced, and Advanced Anti-DDoS.
Cloud Native Anti-DDoS Basic is free while Cloud Native Anti-DDoS Advanced and Advanced Anti-DDoS are paid services.
The application scenarios and DDoS protection capabilities of the three sub-services are shown in Table 1.
Edition |
Description |
Application Scenario |
DDoS Protection Capability |
---|---|---|---|
Cloud Native Anti-DDoS Basic |
Cloud Native Anti-DDoS Basic monitors the service traffic from the Internet to public IP addresses and detects attack traffic in real time. It then scrubs attack traffic based on user-configured defense policies without interrupting services. It also generates monitoring reports that provide visibility into the security of network traffic. |
You can use this service to protect your Huawei Cloud EIPs (IPv4 and IPv6) against the DDoS attacks if you have only basic security requirements. |
Cloud Native Anti-DDoS Basic provides 500 Mbit/s DDoS attack defense for users free of charge. |
Cloud Native Anti-DDoS Advanced |
Cloud Native Anti-DDoS Advanced is developed to improve the anti-DDoS capabilities of cloud services such as ECS, ELB, WAF, and EIP. Cloud Native Anti-DDoS Advanced takes effect for IP addresses on Huawei Cloud. You do not need to change the IP addresses. With few clicks on the console, you can enjoy always-on DDoS mitigation. |
Cloud Native Anti-DDoS Advanced is used to protect your Huawei Cloud services (with public IP addresses assigned to) from DDoS attacks, meeting your requirements for immense protection capability and high network quality. Cloud Native Anti-DDoS Advanced can be used for the following scenarios:
NOTICE:
CNAD Advanced can work with only cloud WAF. For details, see Using WAF, ELB, and CNAD Advanced to Improve Website Service Security. |
|
Advanced Anti-DDoS |
Advanced Anti-DDoS works as a proxy and uses Advanced Anti-DDoS IP addresses to forward requests to origin servers. All public network traffic is diverted to the high-defense IP address so that the origin server is hidden from the public. This protects origin servers from DDoS attacks. |
Huawei Cloud, non-Huawei Cloud, and IDC hosts can be protected. Advanced Anti-DDoS applies to the following scenarios: Services are frequently attacked by DDoS attacks. Continuous protection is required to ensure service continuity.
NOTICE:
|
One high-defense IP address is able to defend against 1 Tbit/s network-, and application-layer DDoS attacks. The Advanced Anti-DDoS service offers more than 15 Tbit/s of defense capability.
|
Feedback
Was this page helpful?
Provide feedbackThank you very much for your feedback. We will continue working to improve the documentation.See the reply and handling status in My Cloud VOC.
For any further questions, feel free to contact us through the chatbot.
Chatbot