abstract grey and white shaped background

Arbor Edge Defense (AED)

On-premise, AI-Automated, DDoS Protection

Dark red background with brighter red fiber optic light wires
Overview

AI-Automated DDoS Protection Backed by Unparalleled Global Threat Intelligence

Your Network's First and Last Line of Perimeter Defense

DDoS attacks continue to grow in frequency and sophistication, but most organizations rely on single-layer protection with documented blind spots. ISPs pass through sub-1 Gbps attacks that crash firewalls and application servers. CDNs can't mitigate direct-to-origin attacks or those exploiting their own proxy infrastructure. Public cloud DDoS protection covers only cloud-hosted workloads.

NETSCOUT Arbor Edge Defense (AED) closes these gaps as an always-on, inline, on-premises DDoS protection solution deployed between your internet router and firewall. Arbor Edge Defense doesn't replace your ISP, CDN, or cloud service; it completes them, handling what they hide or can't mitigate to protect your most business-critical services. Arbor Edge Defense also blocks inbound non-DDoS threats: scanning, brute force attempts, and outbound C2 communication from compromised internal devices, making it a true first and last line of perimeter defense.

Benefits

Stop What Others Miss. Protect What Matters Most

Maintain Operational Resiliency

Protect the availability of your network and your most critical applications and maintain operational resiliency, productivity, revenue, and reputation.

Close the Mitigation Gaps

Advanced attacks can evade upstream defenses (e.g. Cloud, CDN, ISP), making them insufficient on their own. Organizations must combine these services with local traffic visibility to achieve precise detection and targeted mitigation of sophisticated threats.

Protect Firewall Availability and Performance

Automatically protect the availability of your firewall from state exhaustion DDoS attacks and remove nuisance traffic to reduce the operational load on the firewalls by 80%

Cyber Defense Magazine’s Global InfoSec Awards

NETSCOUT’s Arbor Edge Defense and ATLAS Intelligence Feed Named Market Makers for Threat Intelligence

Global InfoSec Awards Winner badge
 

Why Arbor Edge Defense?

4.9 Out of 5
Features

Stateless, Always-On, AI Powered Perimeter DDoS Attack Protection

Arbor Edge Defense’s stateless, always-on DDoS attack protection at the perimeter of the network complements cloud-only based protection (e.g. ISP, CDN or public cloud) by automatically stopping small, short-lived inbound application-layer and state exhaustion DDoS attacks that can impact your most critical applications and firewalls.

Stateless, Always-On, AI Powered Perimeter DDoS Attack Protection

CDN-Aware Mitigation

Arbor Edge Defense stops direct-to-origin attacks that CDN-based protection cannot and applies countermeasures per attack source that are trying to exploit CDN proxies, enabling Arbor Edge Defense and CDN DDoS protection to work together seamlessly.

 CDN-Aware Mitigation

Non-DDoS Attack Protection

Arbor Edge Defense stops more than DDoS attacks. Arbor Edge Defense can automatically stop inbound scanning, brute force password attacks, and inbound or outbound communication to known malicious sites using millions of IoCs from NETSCOUT’s world-class ATLAS Intelligence Feed or third-party threat intelligence feeds.

CS-00454-EN-2502-WEB.svg

Artificial Intelligence Powered Adaptive DDoS protection

NETSCOUT’s Adaptive DDoS Protection solution for Arbor Edge Defense integrates AI-driven traffic analysis to detect new attacks, classify their nature,  recommend tailored countermeasures and automatically mitigate the new attacks if required.

Artificial Intelligence Powered Adaptive DDoS protection

Selective Decryption

Rather than blindly decrypting all incoming traffic, Arbor Edge Defense allows administrators to target specific protected services, IP segments, or protection levels. This preserves privacy and optimizes appliance performance.

 Selective Decryption

Centralized DDoS and Threat Management

Arbor Enterprise Manager manages the deployment of all Arbor Edge Defense providing unified DDoS management and reporting via a centralized management console. 

Centralized DDoS and Threat Management

Artificial Intelligence Powered Threat Intelligence

NETSCOUT’s AI threat curation capabilities are built on a foundation of unmatched global visibility into internet traffic and DDoS threats.

Artificial Intelligence Powered Threat Intelligence

Intelligently Integrated Hybrid DDoS Protection

Arbor Edge Defense’s cloud-signaling feature automatically and intelligently integrates on-premises mitigation with Arbor Cloud cloud-based mitigation to stop sophisticated, multi-vector DDoS attacks including volumetric attacks that overwhelm your internet circuit.

Diagram Arbor Sightline and Threat Mitigation System coverage

Related pages

Arbor Cloud DDoS Protection Services

Arbor Cloud provides industry-leading scrubbing capacity to enable powerful cloud-based DDoS protection to keep your applications up and running.

ATLAS Intelligence Feed (AIF)

ATLAS Intelligence Feed (AIF) provides up-to-date threat intelligence on the latest DDoS threats to our DDoS protection products. Automate defenses against trending attacks with AIF.

What Is a Distributed Denial of Service (DDoS) Attack?

Find out everything you should know about DDoS (Distributed Denial of Service) attacks and learn how to protect your network with these tips from NETSCOUT.

Indigo to jade abstract background
Contact Us

Contact NETSCOUT Today

To learn more about how NETSCOUT can help your company, speak to one of our highly experienced subject matter experts.