Datafex LogoDatafex
Datafex Nexus logo
Datafex network security

Malicious traffic stops before it reaches your server.

Fexwall is our DPDK-powered L3/L4 security layer. It blocks traffic with forged source addresses at the network edge, applies project-specific filters at high speed, and forwards clean traffic to your service.

+100 Gbit

Point-to-point domestic network capacity

DPDK

High-performance packet processing engine

L3 / L4

Network and transport layer protection

100%

Protection against forged source addresses

End-to-end protection

Every packet passes through the right layer before reaching your service

Traffic first passes through volumetric attack pre-filtering on the DPDK router. Fexwall then evaluates the remaining traffic against project rules, forwarding verified packets to your server.

Normal packetHostile packetVerified traffic
Live filtering

01

Multiple traffic sources

Traffic from upstream, direct peers, and international connections.

02

DPDK edge router

Runs full-route and state tracking on TNSR, applying the first filter against Reflection and AMP-based TCP/UDP volumetric attacks.

Volumetric pre-filter applied

03

Fexwall

DPDK-powered high-performance L3/L4 filtering, intelligent traffic analysis, and project-specific security profiles.

Malicious traffic droppedClean traffic continues

04

Protected service

Only verified clean traffic reaches your VDS or dedicated server.

Technology built in-house

More than a general-purpose firewall

Fexwall runs inside the Datafex network topology as an integrated security layer shaped around real service requirements.

DPDK-powered processing

Packets are processed on a performance-focused data plane so protection does not become an infrastructure bottleneck.

Source address validation

Traffic carrying forged source addresses is blocked at the network edge before it can reach the protected service.

Project-specific filters

Protection profiles are tailored to the traffic patterns of games, applications, and specialized workloads.

Stateful control

Connection flow is tracked to distinguish expected traffic from anomalous traffic more accurately.

Flexible access rules

Reduce your service surface with allow or deny rules based on protocol, source, and port.

Traffic visibility

Monitor bandwidth, packet flow, dropped traffic, and active rules from the customer panel.

Fexwall control panel

You stay in control while protection runs at the edge

Monitor traffic for your protected IP, choose a ready-made protection profile, or define advanced rules for your own requirements.

  • High-performance L3/L4 packet filtering on DPDK infrastructure
  • Automatic protection against forged source addresses
  • Ready-made packages plus custom source, protocol, and port rules

Traffic statistics

203.0.113.10

Last 30 minutes

Bandwidth

8.42 Gbps

Normal flow

Firewall rules

3 active
ALLOWTCP:22Management access
ALLOWUDP:27015Game traffic
DENYANY:*Default policy

Protect your infrastructure with Fexwall

Let us assess your project's traffic profile and choose the right server infrastructure and protection profile with the Datafex team.