Active Defense System

VoxiShield DDoS Protection & Smart Firewall

Enterprise-grade two-layer mitigation delivering 4+ Tbit/s capacity. Keep mission-critical services online and secure under sustained attacks. Included free with all services.

4+ Tbit/s

Mitigation Capacity

2 Layers

Defense System

24/7

Active Protection

VoxiShield Firewall Overview Dashboard
THREAT MITIGATED
Actively filtering DDoS, exploits, malware & brute-force traffic across all edge nodes

Powerful Firewall at Your Fingertips

No complicated iptables rules. Manage rules, filters, and security directly from the VoxiHost dashboard with sub-second propagation.

01 · Rules Policy

Inbound Rules & Rate Limiting

Open required ports, restrict protocol types (TCP/UDP), and set precise traffic rules for your game servers and applications.

Port / Range & Protocol limits
Allow / Drop Action control
Custom packet rate limit per second
Inbound Rules Step 1
Inbound Rules Step 2
Inbound Rules Step 3
Inbound Rules Step 4
Inbound Rules Step 5
02 · Egress Security

Outbound (Egress) Traffic Control

Enforce outgoing filters to prevent compromised applications from scanning the web or sending spam email, keeping your IP address clean.

SMTP Mail Block (Port 25)
Prevent outbound DDOS / scanning bots
Outbound custom port whitelist controls
Outbound Control Step 1
Outbound Control Step 2
Outbound Control Step 3
Outbound Control Step 4
03 · Block Analyzer

Firewall Block Analyzer

Instantly query any IP address to check if it is blocked by a global inbound filter or if it is currently rate-limited by active inbound port rules.

Instantly check any IP address for active firewall blocks
Verify if an IP is filtered by Global Inbound rules (e.g. GeoIP/ASN)
Check if an IP exceeds rate limits defined in your Inbound Rules
Firewall Block Analyzer Step 1
Firewall Block Analyzer Step 2
Firewall Block Analyzer Step 3
04 · Global Inbound

Global Inbound Protection

Control default routing and block bad traffic before it ever touches your server's operating system.

GeoIP Country Filter
ASN Network Filter
Threat Shield Intelligence
Global Filters Step 1
Global Filters Step 2
Global Filters Step 3
Global Filters Step 4
Global Filters Step 5
Global Filters Step 6
Global Filters Step 7
Dedicated Game & Protocol Protection

Supported Games & Applications

VoxiShield features dedicated, automatically deployed scrubbing templates for the most popular games and network protocols.

Java / Bedrock

Minecraft (Java & Bedrock)

Custom filter rules validate network protocols, dropping JVM connection floods, query validation exploits, and invalid client handshakes.

UDP Query / RakNet

FiveM & GTA SA-MP

Direct filtering of UDP Query floods, validation of RakNet connection states, and prevention of player-slot exhaustion exploits.

RakNet Stateful

Rust

Tailored filters for RakNet traffic, preventing packet manipulation, entity-spam lag spikes, and query verification bypasses.

Steam Query

Counter-Strike 2

Low-latency filtering of Steam Query protocol floods and UDP payload exploits, ensuring stable tickrates during heavy attacks.

VoIP / TS3

TeamSpeak 3 & VoIP

Dynamic filtering of UDP connection handshakes, voice packet replication attacks, and TS3 query floods.

HTTP / L7

Web APIs & L7

Advanced protection against HTTP Floods, gRPC stream exhaustion, scraping, and slow-rate (Slowloris) application layer exploits.

Any TCP / UDP

And Much More...

Native mitigation for Metin2, NovaLife, SAMP, Growtopia, PlasmoVoice, OpenVPN, WireGuard, SSH, RDP, and any custom TCP/UDP application port.

All game and application names, logos, and brands are property of their respective owners. VoxiHost is not affiliated with, endorsed, or sponsored by any of these trademark holders.

Safety shouldn't cost a fortune.

With us, premium DDoS protection is a built-in standard, not a paid luxury. We actively adapt to current world threats so everyone stays protected.

Included Addon

Get enterprise-grade filtering automatically attached to your main purchase. No surprise bills or hidden limits.

Constant Threat Adaptation

We analyze and adjust filtering patterns daily to handle emerging worldwide zero-day threats and network exploits.

Universal Protection

Whether you run a high-traffic game server or a normal business website, we ensure your online presence is fully protected.

Frequently asked questions

Everything you need to know about VoxiShield.

Yes! VoxiShield is included free with all VoxiHost services. Every virtual server comes with full edge filtering and custom firewall controls enabled from day one at no additional cost. You don't pay extra for DDoS protection, traffic scrubbing, or rule configuration - it's built into every plan.
Traffic is analyzed and filtered progressively through two distinct defense layers:

Layer 1: Edge Scrubbing - Our global edge network with 4+ Tbit/s capacity absorbs massive volumetric floods (like UDP/SYN floods) before they can reach our network core.

Layer 2: Core Firewall - Cleaned traffic reaching our hypervisors is inspected by an intelligent core firewall. This is where your custom rules, port access, GeoIP filters, and rate limits are enforced with sub-second propagation.
VoxiShield protects against a wide range of threat vectors: volumetric UDP/TCP floods, NTP/DNS amplifications, invalid protocol payloads (e.g. game query exploits for Minecraft, Rust, and FiveM), application layer (L7) HTTP floods, brute-force attempts, and port scans. Our edge templates automatically adapt to game and web traffic, dropping malicious packets while letting real users connect.
Yes! Every customer gets full management access to the firewall via the VoxiHost dashboard. You can create custom port rules, restrict protocols, set packet rate limits, block specific countries using our GeoIP filter, toggle anonymous VPN/Tor network blocks, and inspect blocked connections in real-time via the live analyzer feed.
In most cases, you don't need to do anything at all. VoxiShield mitigates attacks automatically within seconds. If you notice any service degradation, you can check the live firewall log in your panel or contact our support team. We can immediately write custom Layer 2 rules or adjust edge filtering patterns for your specific application port.
No. Unlike traditional tunneling protections that route traffic through distant cleaning centers, our Layer 1 edge network is strategically located near main transit nodes, and Layer 2 filtering runs at the hypervisor level. This means security filtering happens inline without introducing routing loops or increasing latency, keeping game tickrates and api response times low.

Still Have Questions?

Our support team is available 12:00-20:00 CET (best effort outside hours) to help you get started with VoxiHost.

Languages