Everything you need to know about Soreva's protection, plans, and how we work. Can't find what you're looking for? Reach out to us.
Soreva handles the full spectrum of DDoS attack types across all network layers:
Mitigation is performed at the network edge via BGP anycast scrubbing, so attack traffic is absorbed before it can reach your infrastructure.
Our network currently provides 280 Tbps of total mitigation capacity distributed across 45+ global points of presence. This ensures that even multi-vector, high-volume attacks are absorbed close to the source, minimising latency impact on legitimate traffic.
Yes. All plans include support for SVC and Plasmovoice proxying. Premium and Enterprise plans additionally support Geyser via our anycast network, allowing you to expose a single protected address without exposing your origin IP.
BGP anycast is a routing technique where multiple geographically distributed nodes advertise the same IP address. Inbound traffic is routed to the nearest node automatically, which means attack traffic is absorbed locally instead of traveling to your origin.
This results in lower latency for legitimate users, faster attack absorption, and no single point of failure in the protection layer.
Under normal conditions, Soreva adds less than 0.3 ms of latency overhead. Because scrubbing occurs at the edge node closest to each user, traffic does not travel an unnecessarily long path. In practice, the protected path can sometimes be faster than a direct connection depending on your origin's upstream routing.
DDoS mitigation is our core offering, but our platform covers a broader range of cybersecurity needs. This includes IP firewall management (CIDR-level allowlisting and blocklisting), IP reputation filtering, geo routing, Layer 7 behavioral analysis, and uptime monitoring. Enterprise customers also have access to a verification server for advanced bot and client challenges.
If you have a specific security requirement not listed here, contact us — we work with clients on tailored configurations.
Yes. Soreva's scrubbing pipeline handles both TCP and UDP traffic at line rate. Whether you run a web application, a game server, a VoIP service, or any other UDP-based protocol, traffic is filtered and forwarded to your origin without protocol-specific limitations.
Yes. Our Layer 7 intelligence module performs behavioral fingerprinting and challenge-response validation for HTTP and HTTPS traffic. This stops HTTP floods, bot scraping, credential stuffing, and API abuse before they reach your application servers. Custom mitigation rules are available on Premium and Enterprise plans.
Available on Enterprise plans, the IP reputation database cross-references inbound traffic against a continuously updated list of known malicious IPs, ASNs associated with botnets, Tor exit nodes, and high-risk ranges. Traffic from flagged sources is subject to heightened scrutiny or automatic blocking before it reaches the scrubbing layer.
Most deployments are fully operational within ten minutes. There is no traffic rerouting downtime — your services continue running while the protection layer is provisioned. Full onboarding instructions are available in our documentation.
No significant infrastructure changes are required. You point your traffic at Soreva's anycast addresses (via DNS update or direct IP replacement), and our edge nodes handle the rest. Your origin servers remain unchanged and their IPs stay hidden behind our network.
Yes. The Soreva REST API lets you manage networks, domains, firewall rules, and mitigation settings programmatically. Full API reference documentation including authentication, endpoints, and example requests is available in our docs.
Two-factor authentication adds a second verification step when logging in to your Soreva dashboard — typically a time-based one-time code from an authenticator app. 2FA is included and available on all plans. We strongly recommend enabling it to prevent unauthorised access to your protection configuration.
Soreva offers three plans:
All plans include 2FA, uptime monitoring, and zero setup fees. See the full comparison on our pricing page.
No. There are no setup fees on any plan and no credit card is required to get started. Contact our team for details on minimum commitment terms for Enterprise agreements.
The Starter plan includes 5 TB of monthly bandwidth. Premium and Enterprise plans include unlimited bandwidth. If you are on Starter and approach your limit, you will receive a notification. Overages can be purchased or you may upgrade to a higher plan. Your protection will not be interrupted.
Sub-accounts are supported on Premium and Enterprise plans (up to 10 sub-accounts each). Sub-accounts share the parent plan's resource limits and can be given restricted access for team members or clients who need to manage specific networks or domains without full account access.
All plans include a 99.99% uptime SLA on the protection network. Uptime monitoring runs continuously and you can view current and historical status from your dashboard. SLA credits are applied automatically in the event of a qualifying outage.
Automated mitigation begins immediately upon attack detection — no human intervention is required for the initial response. For incidents that require engineering involvement, SLA response times by plan are:
You can reach the Soreva support team through the contact page. Premium and Enterprise clients also have access to a dedicated emergency line for time-sensitive incidents. Our documentation covers the most common configuration and troubleshooting scenarios.
Mitigation alerts are available on Premium and Enterprise plans. When an attack is detected and actively being mitigated, you receive a notification with details including attack type, volume, and duration. Premium and Enterprise clients also receive monthly traffic and mitigation reports.
Still have questions?
Our team is happy to walk you through anything not covered here.
Deploy in under ten minutes. No traffic rerouting downtime. No credit card required to start.