
Arbor Edge Defense (AED)
“Always-on, intelligent DDoS protection and threat prevention at the enterprise edge.”
What is Arbor Edge Defense?
Arbor Edge Defense (AED) is a specialized inline security solution deployed at the enterprise/customer edge, between the Internet router and the firewall.
Unlike traditional firewalls or IDS/IPS, AED is purpose-built to stop inbound DDoS attacks and block outbound malicious traffic, acting as the first and last line of defense.
Powered by ATLAS® global threat intelligence and Arbor’s decades of DDoS expertise, AED uniquely combines:
- Stateless, line-rate DDoS protection,
- Threat intelligence enforcement, and
- Integration with SOC/NOC workflows.
Key Features
- Inline DDoS Protection
o Detects and mitigates volumetric, TCP state-exhaustion, and application-layer attacks.
o Works automatically, always-on, with minimal operator intervention. - Threat Intelligence Gateway
o Blocks known malicious IPs and command-and-control communications.
o Ingests ATLAS® intelligence feeds and customer-specific blacklists. - Outbound Threat Blocking
o Stops compromised internal hosts from participating in botnets or data exfiltration.
o Protects reputation and prevents secondary compromise. - Fast Deployment
o Drops into the network edge with minimal configuration.
o Complements existing firewalls, IDS/IPS, and security stacks. - Integration & Automation
o REST APIs for SOC/NOC automation.
o Reporting dashboards for DDoS events, blocked threats, and compliance.
Benefits for the Client
- Protect stateful devices – offloads DDoS floods from firewalls, IPS, and load balancers.
- Stop attacks at the edge – block malicious traffic before it enters the enterprise.
- Contain compromised hosts – prevent outbound C2 or DDoS participation.
- Rapid time-to-value – simple to deploy inline at Internet edges.
- Lower operational burden – automated, always-on protection.
Why AED is Different ?
- Purpose-built edge defense – not a general-purpose firewall, but optimized for DDoS and threat intelligence.
- Dual-direction protection – inbound (DDoS) + outbound (C2/malware) coverage.
- Powered by ATLAS® intelligence – leveraging visibility from 400+ carriers worldwide.
- Complements existing security – reduces load on NGFW, IPS, WAF, and SIEM.
- Always-on defense – designed to run continuously, not just on-demand.
Typical Use Cases
- Enterprise Internet edge protection against DDoS floods.
- Shielding firewalls and VPN concentrators from volumetric attacks.
- Enforcing threat intelligence to block malicious IPs at ingress.
- Preventing compromised internal machines from exfiltrating data.
- Complementing Arbor Hybrid DDoS Protection in a layered defense.
Services & Support (What We Offer)
- Edge Assessment – evaluate current DDoS and threat exposure.
- Deployment Services – rapid implementation of AED at Internet edges.
- Integration Workshops – automate response with SIEM/SOAR and SOC playbooks.
- Managed AED Services – outsourced edge defense operated by experts.

