Check Point DDoS Protector is a perimeter defense product for mitigating network and application attacks in real time. It uses behavioral AI/ML algorithms for automated protection against known and zero-day attacks, including DNS amplification, IoT botnet floods, SSL/TLS floods and attacks across Layers 3–7. Check Point says its real-time signatures can detect attacks and protect in less than 10 seconds. Deployment options include inline, SPAN-port and copy-port monitoring, as well as out-of-path mitigation. It is offered in cloud-based, hardware-based and hybrid deployments, with a virtual appliance for software-defined data centers. A dashboard supports viewing detection events, applying policies and refining configurations. The X Series integrates with Check Point’s Hybrid Cloud DDoS Protection Service. Maximum programmable mitigation throughput is listed as up to 800 Gbps, depending on model, and the datasheet lists latency below 60 microseconds. Pricing is available on request, and Check Point offers a free demo through a request form.
Who it is for
It is aimed at enterprise networks and cybersecurity operations, and also supports service providers with multitenant and multipolicy capabilities.
What is good
- Covers network and application attacks
- Multiple deployment modes and options
- Up to 800 Gbps, depending on model
- Managed setup and tuning available
What to know first
- Pricing is available on request
- One-year hardware and software maintenance
Verdict
DDoS Protector combines multiple deployment modes with automated attack mitigation and a management dashboard. Organizations considering it will need to request pricing and assess the model-specific capacity that fits their requirements.
Compared on intrusion detection and prevention software
- Attack layers
- both
- Mitigation mode
- hybrid
- Deployment model
- hybrid
- Managed mitigation
- Yes




