Accueil / Guides / DDoS-Protected VPS Explained — What Filtering Actually Covers
How-to

DDoS-Protected VPS Explained — What Filtering Actually Covers

What included L3/L4 DDoS filtering protects, what L7 attacks need, and how NovaVPS handles volumetric traffic on every VPS and dedicated plan.

Le corps de l'article est en anglais. L'interface, le catalogue et la caisse sont traduits.

NovaVPS DDoS abstract: cyan shield around racks

The layers that matter

DDoS attacks are named by the OSI layer they hit. L3/L4 attacks (SYN floods, UDP amplification, ACK storms) try to saturate your pipe or state tables — these are absorbed upstream by the scrubbing centers before traffic reaches the host. L7 attacks (HTTP floods, slowloris, API hammering) look like real requests; no network filter can tell them from your users — they are your application's job (rate limiting, WAF, caching).

VPS from $8.50/mo. Email, a 12-character password, then a crypto invoice.

Launch now

What is included on every plan

Sizing against an attack

Is DDoS protection really included, not an upsell?

Yes — L3/L4 filtering is included on VPS, Storage and dedicated tiers. L7 application defense stays your stack's job; Dual adds L3/L7 scrubbing.

Will filtering block my legitimate users?

Volumetric filtering is statistical and tuned upstream; normal traffic patterns pass. Aggressive L7 floods are best handled by your application or a CDN.

Do Tor exits get DDoS protection?

Yes, though exits attract more noise by nature. Exits are provisioned on request with an abuse contact.

Ready to launch?

Configure a VPS or dedicated server, set a password, then pay the invoice.

Network

Edge RTT

Uptime · 36h

Complaints · 36h

Pick a city