Here is a link to a FloodGuard demo program:
http://www.netzentry.com/demos/index.php
We will be providing FloodGuard coverage (aka: "Protection Domains") in blocks of IP's as follows:
1 IP --------------------> $5.00/month
8 IP's ------------------> $10.00/month
16 IP's -----------------> $20.00/month
32 IP's -----------------> $40.00/month
64IP's ------------------> $75.00/month
128 IP's ----------------> $100.00/month
255 IP's ----------------> $200.00/month
"When we decide to get this from SM, do we have access to the control panel sort of thing, that you can see in their flash demos of how it works?
and if not, what happens if it blocks legitimate traffic, such as game server traffic?"
FloodGuard is part of our network infrastructure and is offered as a managed service for the benefit of our customers. No customer access to the system is allowed. The FloodGuard will never block legitimate traffic. This is not an Intrusion Detection system. We already have IDS deployed. This is a DoS / DDoS mitigating system. FloodGuard only watches for and responds to verified DoS / DDoS traffic. I know it will always be tempting to look for external causes when a server isn't working, but unless your running a "DoS Me" game, the FloodGuard will not be blocking your traffic. Please see FloodGuard's site and read the whitepaper for technical details on connection tracking, whitelisting and more.
"Will SM lift the ban on IRC now that FloodGuard is deployed?"
Not likely.
"Gee, now that I'm DoS proof, I think I'll challenge everyone I know to come DoS me. Maybe I'll even post some inflamatory messages on IRC. I work hard for my money, so I REALLY want to get my $10.00 worth."
You will lose.
DoS mitigated is not DoS / DDoS / DRDoS "proof". It is possible to send enough traffic to overcome the actuators and bring your server down. FloodGuard just makes it very difficult.
<repeat after me> "THERE IS NO INTERNET CONNECTED SYSTEM THAT IS IMMUNE TO THE EFFECTS OF DoS / DDoS."
Additionally, if it becomes known that you challenged the DoS, you may be financially liable for all of the bandwidth consumed during the attack. If you repeatedly invite DoS / DDoS into our network, you will be in violation of our Acceptable Use Policy and Terms of Service.
"I just installed a new software package on my server, and it's not working. I heard that FloodGuard might be blocking traffic to my server somehow"
Ummm.... No. FloodGuard doesn't work that way.
"Well, I was seeing 80,000 hits per day on my stats last week, and now I'm seeing less. I think FloodGuard is blocking people."
Again, No. FloodGuard doesn't work that way.
"But what if 100 people all connect to my server at the sime time. Will FloodGuard block them?"
Nope.
FloodGuard only blocks confirmed Dos / DDoS / DRDoS attacks. That's all.
"Well, Mabel Tuscadero form down at Kasperski's Deli told me that product X, Y or Z was MUCH better than FloodGuard."
Tell Mabel that she should stick to selling cold-cuts.
The Planet and Server Matrix are commited to providing you with the best products and managed services available.
"Does this mean that if I do not purchase FG and someone atacks my server I will have to pay 250$?"
Absolutely not.
It means that if you fall under a DoS / DDoS attack, have not purchaced FloodGuard protection ahead of time, and you now want to use the FloodGuard to mitigate the attack, you will be charged a $250.00 fee for Incident Response.
Incident Response consists of an "emergency" FloodGuard set-up, fast training of the FloodGuard device, isolation of the attack traffic, instant creation of your "protection domain", hand-coded discrimination filtering and finally - the mitigation of the attack on your servers.
The FloodGuard appliances really do work better and are more responsive when set-up in advance of an attack.
Hope that helps to answer some questions.