How Shield works

Inline scrubbing, attack detection and custom filtering profiles explained.

Concept1 min readUpdated 20 Sept 2026.md
On this page

Architecture#

Every packet entering the Avenlith network passes through scrubbing appliances at the edge of each region. Clean traffic continues to your server with less than 0.3 ms of added latency.

Detection#

Shield builds a traffic baseline for each IP. When volume or packet patterns deviate, mitigation starts automatically — typically within one second.

Filtering profiles#

Profiles tune filtering for specific protocols such as game servers, VoIP or DNS:

Shell
avenlith shield rule create \
  --target 203.0.113.24 \
  --protocol udp --port 27015 \
  --profile game-a2s

Capacity#

PlanCapacityLayers
Standard500 GbpsL3/L4
Advanced3 TbpsL3–L7
Enterprise18 TbpsL3–L7 + SOC

Was this page helpful?

Still need help?

Our engineers answer tickets 24/7 — average first response in 7 minutes.

Contact support