Short for distributed denial of service: flooding an application with so much traffic that it can no longer serve anyone. Within Azure, the DDoS Protection service shields public IP addresses from this kind of attack.
Also called distributed denial of service.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains DDoS in context, with comparison tables and the common traps.
Related terms
- Azure DDoS infrastructure protection
The no-cost DDoS defence that Azure applies automatically at its network edge to every public IP address, with nothing to set up. Unlike the paid tiers, it comes without a customer SLA, attack analytics or rapid response support.
- Azure DDoS Protection
Azure defence for public IP addresses against volumetric and protocol-level DDoS attacks. Paid tiers (DDoS Network Protection and DDoS IP Protection) build on the basic infrastructure protection that comes free.
- DDoS infrastructure protection
Baseline DDoS defence applied automatically at no charge to every Azure service with public IPs, needing nothing to be set up. For protection tailored to your own resources, the paid DDoS IP Protection and DDoS Network Protection tiers go further.
- DDoS Rapid Response
Microsoft's DDoS specialists, available to DDoS Network Protection customers while an attack is happening, who help investigate it and analyse it afterwards. DDoS IP Protection does not give access to them.
- L4
In the OSI model, layer 4 is where TCP and UDP ports live, also called the transport layer. Network rules in Azure Firewall, and the mitigations in DDoS Protection, both act at layers 3 and 4.