Cisco Cloud Filter as a Service (FaaS) Solution Brief

Available Languages

Download Options

  • PDF
    (1.8 MB)
    View with Adobe Reader on a variety of devices
Updated:January 16, 2025

Bias-Free Language

The documentation set for this product strives to use bias-free language. For the purposes of this documentation set, bias-free is defined as language that does not imply discrimination based on age, disability, gender, racial identity, ethnic identity, sexual orientation, socioeconomic status, and intersectionality. Exceptions may be present in the documentation due to language that is hardcoded in the user interfaces of the product software, language used based on RFP documentation, or language that is used by a referenced third-party product. Learn more about how Cisco is using Inclusive Language.

Available Languages

Download Options

  • PDF
    (1.8 MB)
    View with Adobe Reader on a variety of devices
Updated:January 16, 2025
 


Cloud Filter as a Service

Cloud Filter as a Service is an add-on component of the Cisco® Secure Cloud DDoS Protection[1] solution, which provides cloud-based network access control that offloads unwanted and potentially harmful traffic before it reaches the organization’s network. Cloud Filter as a Service improves network efficiency and provides consistent protection for the entire network. With no appliance to manage and IP blocking at scale, the service allows organizations to manage their traffic more efficiently and with less human intervention. The service comes with a full package of services to help ensure the
best security.

Cloud-based network access control for enhanced network efficiency and consistency

IP Blocking at Scale

Overcome scaling limitations and reduce configuration overhead by blocking IP, IP ports, and signature patterns

Offload Unwanted Traffic

Remove unwanted and potentially harmful traffic before it reaches the network, servers, and applications

Global Consistency

Establish centralized and unified protection enforcement settings across all your environments

Cloud-Based Service

No appliance to manage, no experts needed

Key Features

Traffic Management

Configuration of Allow lists and Block lists ahead of time

Geo Blocking

Complete control of geo blocking via Cisco’s cloud portal

IDS and IPS

Signature-based intrusion detection and prevention

Threat Intelligence

Preemptive blocking of known attackers with ERT Active Attackers Feed1

Related image, diagram or screenshot

Figure 1.    The Filter as a Service management options inside of the Cloud DDoS Management System

 

Global Coverage, Massive Capacity

The Cisco Secure Cloud DDoS Protection Service1 is backed by a worldwide network of 21 scrubbing centers, with 15 Tbps of mitigation capacity (and growing). Offered in partnership with Radware, the scrubbing centers are globally connected in full mesh mode using anycast-based routing. This helps ensure that distributed denial-of-service (DDoS) attacks are mitigated closest to their point of origin and provides truly global DDoS mitigation capable of absorbing even the largest volumetric attacks.

A map of the world with blue dotsDescription automatically generated

Figure 2.    DDoS Mitigation Scrubbing Centers (as of January 2025) [2]

 



[1] Cisco Secure DDoS Protection, Cloud Filter as a Service, the ERT Active Attackers Feed, and other industry-leading solutions are sold by Cisco through its global OEM partnership with Radware.

Learn more