Managed Distributed Denial-of-Service protection for Azure resources with always-on traffic monitoring, adaptive real-time tuning, cost-guarantee protection against scale-out attacks, and integration with Azure Monitor for attack analytics and telemetry
Jurisdictional exposure
Attributes
- SLA Uptime
- 99.99%
Sub-services (3)
Network Protection (free tier)
Always-on passive protection included free with every Azure subscription
IP Protection
Paid per-IP protection with adaptive tuning and DDoS response team access
Network Protection
Paid VNet-scope protection bundling analytics, cost protection, and WAF discount
Compliance & Certifications
This service is attested for the following frameworks. Always verify with the provider before relying on a specific compliance posture.
Where this runs
Sovereign regions (13)
- Australia Central · CanberraAzure Australia Government
- Australia Central 2 · CanberraAzure Australia Government
- US Gov Virginia · VirginiaAzure Government (US)
- US Gov Arizona · ArizonaAzure Government (US)
- US Gov Texas · TexasAzure Government (US)
- US DoD East · VirginiaAzure Government Secret (US)
- US DoD Central · IowaAzure Government Secret (US)
- China North (Beijing) · BeijingMicrosoft Azure China (21Vianet)
- China East (Shanghai) · ShanghaiMicrosoft Azure China (21Vianet)
- China North 2 · BeijingMicrosoft Azure China (21Vianet)
- China East 2 · ShanghaiMicrosoft Azure China (21Vianet)
- China North 3 · HebeiMicrosoft Azure China (21Vianet)
- China East 3 · ShanghaiMicrosoft Azure China (21Vianet)
Commercial regions (60)
Europe (21)
- Austria East
- Belgium Central
- Denmark East
- Finland Central
- France South
- France Central
- Germany North
- Germany West Central
- Greece Central
- North Europe
- Italy North
- West Europe
- Norway East
- Norway West
- Poland Central
- Spain Central
- Sweden Central
- Switzerland West
- Switzerland North
- UK West
- UK South
North America (13)
- Canada East
- Canada Central
- Mexico Central
- West US
- East US 3
- North Central US
- Central US
- West US 3
- South Central US
- East US
- East US 2
- West US 2
- West Central US
South America (3)
- Brazil Southeast
- Brazil South
- Chile Central
Asia (13)
- East Asia
- South India
- Jio India West
- West India
- Jio India Central
- Central India
- Indonesia Central
- Japan West
- Japan East
- Malaysia West
- Southeast Asia
- Korea South
- Korea Central
Oceania (3)
- Australia East
- Australia Southeast
- New Zealand North
Middle East (5)
- Israel Central
- Qatar Central
- Saudi Arabia Central
- UAE Central
- UAE North
Africa (2)
- South Africa West
- South Africa North
Tags
Equivalent services on other platforms
Managed WAF protecting web apps from OWASP Top 10 attacks, bot traffic, API abuse, and data scraping, with global and China regional deployment, custom rule engine, and unified consoles across Anti-DDoS and Security Center
Web application firewall that protects against common exploits with managed rule groups, custom rules, rate-based rules, Bot Control, and CAPTCHA challenges
Managed DDoS protection service with always-on Standard tier for CloudFront and Route 53 edge, and Advanced tier adding 24/7 DDoS Response Team access, cost protection, and enhanced Layer 7 detection
L3 DDoS scrubbing and IP transit for enterprise data centres — BGP advertises customer prefixes from Cloudflare's edge, clean traffic flows back via GRE / IPsec / private peering. Sub-3-second time-to-mitigation with no rerouting on the customer side.
Machine-learning bot classification at the edge — scores every request 1-99 and exposes that to WAF rules. Distinguishes search-engine crawlers, scrapers, credential-stuffing tools, and headless browsers without breaking legitimate automation.
API-specific security layer — schema validation, mTLS client authentication, rate-limiting per JWT subject, sensitive-data detection in responses, and API discovery / inventory that auto-surfaces unknown endpoints.
L7 web application firewall protecting against OWASP Top 10 risks with Cloudflare-managed rule sets, custom expression-based rules, exposed-credentials detection, rate-limiting integration, and machine-learning attack-score signals tuned across the global traffic graph
Volumetric and application-layer DDoS protection for services hosted on Cloud Temple, with sub-second detection and automated mitigation across the SecNumCloud-qualified perimeter
Always-on L3/L4/L7 DDoS mitigation delivered at Gcore's edge POPs, with traffic scrubbing, capacity in the multi-Tbps range, and SLAs against volumetric and application-layer attacks
Web application and API protection with OWASP rule sets, bot management, API schema enforcement, and rate limiting — delivered at the CDN edge with a single configuration surface
Edge DDoS protection and web application firewall with managed rule sets for OWASP Top 10, adaptive bot protection, and reCAPTCHA Enterprise integration
Managed web application firewall with OWASP Top 10 rule sets, bot management, anti-crawler, CC (challenge-collapsar) attack mitigation, custom rule engine, and regional deployment with integrated DDoS protection
Always-on volumetric and protocol-level DDoS mitigation at the network edge, with automatic detection and scrubbing for L3/L4 attacks targeting Compute Engine, Load Balancer, and Public IP resources
Layer-7 protection against OWASP Top 10 attacks (SQLi, XSS, RCE), bot traffic, and DDoS at the application layer. Edge-deployed for global protection or regional for backend-fronted apps.
L7 web application firewall protecting against OWASP Top 10 risks — SQL injection, XSS, command injection — with managed rule sets, custom rules, IP allow/block lists, and bot-detection heuristics tuned for OTC-hosted apps