Book a demo
Connect with us to explore our solutions or request a personalized offer

On-premises Protection Against Carpet Bombing DDoS for a Major ISP

22 Apr, 2026 | 4 min
On-premises Protection Against Carpet Bombing DDoS for a⦁Major ISP
A big broadband internet company provides telephony, digital TV, and Wi-Fi services to more than 5 million subscribers.

In 2023, comprehensive carpet bombing DDoS attacks on the ISP’s branches in several cities simultaneously overloaded transport links and disrupted customer services, including intercoms, video surveillance, and government communications.

A company needed a highly effective tool to both detect and filter such critical threats.
"Standard tools are unable to stop a carpet bombing DDoS attack. We needed a solution that would effectively protect against DDoS attacks targeting large ranges of IP addresses simultaneously, while also being located within our infrastructure under our full control."

Senior NOC engineer, ISP

Challenge

Early detection and effective filtering of carpet bombing DDoS attacks.

Before implementation, the company specified strict technical requirements for the security system:

  • Traffic analysis module performance: at least 100K FPS
  • Protection module performance: at least 100 Gbps
  • BGP FlowSpec support by the traffic analysis module
  • sFlow v5 support
  • Adaptive sample rate calculation
  • Multi-tenancy software architecture
  • Filtered traffic statistics display
  • Advanced analytics on anomalies: distribution by attack vector and attack power (bits, packets, duration)
"We're a broadband operator with a network handling over 10 Tbps of traffic from millions of subscribers. Not every analyzer can handle such a huge flow volume. Therefore, the traffic analysis system had to handle up to 100,000 FPS, and the cleaning system had to have 100 Gigabit ports and clustering capabilities."

Senior NOC engineer, ISP

Solution

The unified Strictera NDP system for detecting and filtering network anomalies and network threats—including carpet bombing DDoS—is implemented on-premises.
"A DDoS attack analysis and filtering suite should be unified. Of course, there are solutions where the analyzer is from one vendor and the filtering suite from another. This will generally work. However, compatibility issues with rules and traffic diverting tools can arise. By using Strictera NDP with convenient centralized management, we’ve addressed this need."

Senior NOC engineer, ISP
100 Gbps DDoS attacks blocked by Strictera NDP (December 2024)
100 Gbps DDoS attacks blocked by Strictera NDP (December 2024)

Results

Since 2025, a major ISP has been reliably protecting its own infrastructure using a Strictera NDP unified system for detecting and filtering malicious traffic with an advanced feature set.

  • High-performance protection against malicious traffic
  • Traffic control (analysis and filtering) in a single interface.
  • Ready-made SaaS control panel for DDoS protection monetization
"We're satisfied with Strictera’s solution: we’ve received exactly the functionality we wanted. We’re now protected from critical issues caused by DDoS attacks, while simultaneously providing our clients with a modern, commercially viable SaaS security solution."

Senior NOC engineer, ISP

Book a demo to see Strictera NDP in action

Strictera
Strictera
Innovative, scalable, and cost-efficient cybersecurity solutions to safeguard your networks, websites, apps, and APIs from evolving threats

Contact us by email:

Call the number:

Book a demo

Connect with us to explore our solutions or request a personalized offer
Table of contents
    Book a demo

    Connect with us to explore our solutions or request a personalized offer.

    Book a demo