L3 DDoS scrubbing and IP transit for enterprise data centres — BGP advertises customer prefixes from Cloudflare's edge, clean traffic flows back via GRE / IPsec / private peering. Sub-3-second time-to-mitigation with no rerouting on the customer side.
Jurisdictional exposure
Attributes
- Ga Year
- 2019
Sub-services (3)
BGP Advertisement
Customer prefix announcement from Cloudflare's global anycast network
GRE / IPsec Tunnels
Encrypted return paths from Cloudflare to customer data centres
Private Network Interconnect
Direct cross-connects at shared colo facilities for cleanest return path
Compliance & Certifications
This service is attested for the following frameworks. Always verify with the provider before relying on a specific compliance posture.
Where this runs
Commercial regions (29)
Europe (10)
- Paris
- Frankfurt
- Dublin
- Milan
- Amsterdam
- Warsaw
- Madrid
- Stockholm
- Zurich
- London
North America (4)
- Toronto
- Ashburn
- Chicago
- San Jose
South America (2)
- Buenos Aires
- São Paulo
Asia (6)
- Hong Kong
- Mumbai
- Tokyo
- Singapore
- Seoul
- Taipei
Oceania (2)
- Sydney
- Auckland
Middle East (2)
- Tel Aviv
- Dubai
Africa (3)
- Lagos
- Cape Town
- Johannesburg
Tags
Equivalent services on other platforms
Managed DDoS protection service with always-on Standard tier for CloudFront and Route 53 edge, and Advanced tier adding 24/7 DDoS Response Team access, cost protection, and enhanced Layer 7 detection
Managed Distributed Denial-of-Service protection for Azure resources with always-on traffic monitoring, adaptive real-time tuning, cost-guarantee protection against scale-out attacks, and integration with Azure Monitor for attack analytics and telemetry
Edge DDoS protection and web application firewall with managed rule sets for OWASP Top 10, adaptive bot protection, and reCAPTCHA Enterprise integration