KestPress runs a online casino serving customers across Iberia. Before Deflecto, attacks meant diverting traffic to a scrubbing provider and waiting.
The challenge
Extortion emails followed by short, intense floods.
The result
- 78 attacks mitigated in the first year
- Median time to mitigation 390 ms
- 18% lower origin infrastructure cost
- Zero customer-visible outages
Our engineers get a notification, not a phone call.
Head of Infrastructure, KestPress
Interesting that most attacks are under ten minutes. Our experience is similar.
We had the exact false-positive issue with CGNAT carriers. The weighting change makes sense.
We moved from a scrubbing provider to always-on last year; time to mitigation went from minutes to basically nothing.
Solid runbook advice. The DNS-at-2am point hit home.
Do you publish the edge IP ranges in a machine-readable format?
Do you publish the edge IP ranges in a machine-readable format?
Thanks — sharing this with our on-call team.
Could you share the dataset behind the percentages?
Great to hear, thanks for sharing your experience.