DDoS Protection Overview

Understanding Cloudflare's always-on DDoS mitigation

Your Request Was Protected

Every request to this site passes through Cloudflare's DDoS protection systems automatically. No configuration is required — it's always active.

  • L3/4 Network-layer DDoS protection
  • L7 HTTP DDoS Attack Protection
  • Automatic traffic profiling and anomaly detection
  • Global anycast network distributes and absorbs attacks

How It Works

L3/L4 Protection

Network-layer attacks (volumetric floods, SYN floods, UDP amplification) are absorbed at Cloudflare's edge before reaching your origin.

L7 Protection

Application-layer attacks (HTTP floods, slowloris, complex request floods) are detected using behavioral analysis and machine learning.

Testing DDoS Protection

Simulate Traffic

Use the Rate Limit test page to generate high-volume requests. While rate limits are zone-level rules, the underlying DDoS protection operates at all layers.

Resources