DDoS Protection
Overview
Section titled “Overview”Syncara Cloud provides foundational DDoS mitigation across all of our hosting locations to help safeguard your services from common volumetric and application-layer attacks. While our protection is capable of absorbing most standard-level threats, the outcome of an attack may vary depending on its scale, persistence, and sophistication — in some cases, an IP nullroute or temporary service suspension may be necessary to preserve network stability.
Our team will make reasonable efforts to notify you if we detect a recurring pattern of malicious traffic targeting your service. However, immediate notification may not always be feasible, particularly during large-scale incidents that threaten the integrity of our broader network infrastructure.
Mitigation Infrastructure
Section titled “Mitigation Infrastructure”Our DDoS mitigation system is directly connected to a Layer 1 Scrubbing Center (Port 100G) on switching equipment at Equinix Singapore. This connection uses direct peering (not a GRE Tunnel), providing significantly higher reliability — even during large-scale attacks, the mitigation connection remains stable and uninterrupted.
Key Features
Section titled “Key Features”- Unmetered Mitigation — Mitigation technology is automatically and by default provided to all clients, with no minute or day-based mitigation counting, and is always available 24/7.
- Unlimited Clean Traffic Delivery — Our clean pipe is based on your ordered port interface. There are no usage limits or hidden fees.
- Standard Protection Up to 1 Gbps — All Syncara Cloud services are protected with standard DDoS mitigation up to 1 Gbps by default.
Detection Modes
Section titled “Detection Modes”Our mitigation system supports several detection modes that can be tailored to your needs:
Normal / Rapid Detection Mode
Section titled “Normal / Rapid Detection Mode”Both Normal Mode and Rapid Mode use thresholds for detection. The engine calculates traffic for each signature in real-time and compares it against manually configured thresholds. If traffic exceeds these thresholds, it is considered abnormal.
The key difference lies in time granularity:
- Normal Mode — Samples at the minute level
- Rapid Mode — Samples at the second level
Smart AI Detection Mode
Section titled “Smart AI Detection Mode”Smart Mode uses machine learning algorithms to analyze historical netflow traffic data and automatically detect network attacks. Its advantages include:
- Automatic learning from extensive historical and real-time data
- Minimal manual configuration required
- Simultaneous use of multiple traffic variables
- Better identification of complex traffic patterns compared to conventional threshold-based methods
Protection Capacity
Section titled “Protection Capacity”| Specification | Detail |
|---|---|
| Mitigation Capacity | Up to 1 Tbps+ |
| PPS Protection | Up to 200,000 pps |
| Mitigation Time | 2–3 minutes |
| Scrubbing Connection | Layer 1, Port 100G (Equinix SG) |
Prohibition of DDoS Activity
Section titled “Prohibition of DDoS Activity”Launching DDoS attacks is considered a criminal offense in numerous jurisdictions worldwide:
- United States — Such activity constitutes a violation of the Computer Fraud and Abuse Act (CFAA) of 1986, which may result in severe penalties including imprisonment, substantial fines, and a permanent criminal record.
- Indonesia — Under Law No. 1 of 2024 on Electronic Information and Transactions (UU ITE), specifically Articles 32 and 33, any action that causes disruption to an electronic system — including DDoS attacks — is punishable by up to 10 years of imprisonment and/or a fine of up to IDR 10 billion.
- Malaysia — DDoS attacks fall under the Computer Crimes Act 1997 (Act 563), which criminalizes unauthorized access and interference with computer systems. Offenders may face imprisonment of up to 10 years and/or significant fines.
- Singapore — Under the Computer Misuse Act 1993 (Cap. 50A), unauthorized interference with computer systems — including DDoS — is a criminal offense carrying penalties of up to 10 years of imprisonment and/or fines of up to SGD 50,000.
- Worldwide — Most countries have enacted cybercrime legislation that explicitly prohibits denial-of-service attacks. Regardless of your jurisdiction, launching or facilitating DDoS activity is almost universally considered a serious criminal offense.
Additionally, acquiring or utilizing DDoS-for-hire services, stress testing tools, or botnets is both unethical and a direct contribution to organized cybercrime. These tools typically rely on vast networks of compromised devices — many of which belong to unknowing victims whose systems have been hijacked without consent.