All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.
LF host w/ better TCP DDoS protection than cosmicguard/path.
ilikebeans
Member
Hey, the title says basically everything but here is specifically what I’m looking for:
Server Upgrade Requirements:
I am currently using a dedicated server with the following specs:
CPU: Ryzen 9 5950x
RAM: 128GB DDR4 3200Mhz
Storage: 2TB SSD
Port: 10Gbps
IPs: 3 or more required
I am looking to upgrade to a newer generation of Ryzen CPUs to take advantage of DDR5 RAM. The storage and RAM capacity can remain the same as my current setup.
Budget: $300/month
DDoS Protection:
The DDoS protection must offer advanced TCP filtering. Specifically, it needs to have insanely good SSH filters.
My current protection (I have tried Path and currently have CosmicGuard) has failed to fully protect against attacks, allowing over 10Gbps to leak through and cause downtime.
I need a solution that can prevent these issues more effectively.
Optional:
A firewall control panel that allows for active management and application of specific filters to individual ports.
WireGuard filter: Although not essential, I use this server as a VPN, so having a UDP WireGuard filter would be a plus.

Comments
Perhaps if you okay on EU (germany specially), you could give a try to aurologic @jh_aurologic
Why do you need SSH filtering? It's useless, whitelist it to a vpn or home ip.
Maybe give @RoyaleHosting a look - https://royalehosting.net
Hi -- no. they leak worse than path or cosmicguard. EU is fine however, yes.
Reasons unknown
i run custom L7 protection, I need port 22 open for something.
Hi, no thanks. once they upgrade however, maybe.
their stateful filtering is NOT stateful filtering. god knows how they've messed that up.
overall the protection leaks worse than path/cosmicguard
@MannDude has Cosmic Guard
Hyperfilter?
Not right now. Was supposedly receiving it through our old colocation provider in KC, but I don't think we acually ever were. I've removed this marketing from our website until we can replace it ourselves by going with them direct.
Looking for something OTHER than path or cosmicguard -- thanks though.
I havent heard of them, do you have a link?
SSH Servers die instantly if they receive an attack - why would you need SSH protection for an important online service? Just apply some firewall rules.
AFF: https://customers.hyperfilter.com/aff.php?aff=62
non AFF:https://www.hyperfilter.com/
I'm not sure when this became a discussion about how I do my protection, but okay!
please make a thread if you want to continue this
Thanks
I think neoprotect might work, but am unsure. Might be worth looking into?
Have you tried zare?
https://zare.com
Alternatively, there is still good old Voxility
http://voxility.com
You are using this server as WireGuard VPN but you need quote "insanely good SSH filters.".
As I already said, SSH is a protocol you can only protect on a best effort basis - it will die at 5Kpps.