Azure DDoS Testing

Validate your system’s DDoS protection on Azure

 

Red Button is an authorized Azure Partner

DDoS Testing Tailored
to Your Azure Deployment

Verify your DDoS protection with attack simulations that challenge your specific Azure deployment architecture. So, whether you use Azure CDN, Azure Gateway, or Azure Virtual Machines– we’ll tailor our simulation to maximize the value of your testing. 

We simulate multi-vector DDoS attacks to identify which Azure component will (or will not) block each type of attack.

Actionable
Remediation Guidance

Following a DDoS simulation, you’ll receive:

  • A detailed report identifying all security flaws, prioritized by severity.  (See a sample test report)
  • Remediation recommendations – from optimal configuration options to the addition of specific security components.
  • An optional re-testing session to validate the fixes you implemented.

Get Results with
Near-Zero Efforts

Our fully managed DDoS testing service saves you time and resources:

  • End-to-end test planning, execution and analysis by highly experienced DDoS experts.
  • A total of five hours of your time: One hour for pre-test interview, three hours for test session, one hour for reporting the results and our recommendations.

FAQ

Why do I need testing if Azure provides protection?

There are several reasons. First of all, every digital environment must be tested to ensure full protection. DDoS protection without DDoS testing is like software without QA. Furthermore, while Azure assumes responsibility regarding network or infrastructure attacks, application attacks largely remain your responsibility. There are configurations and actions only you can perform, such as setting rate limits, scanner and probe protection, auto-scaling, and more. And all these application-level measures must, of course, be tested.

Do I need to update Microsoft before the test?

No. Red Button can carry out DDoS tests without notifying the Azure team. This makes the process simpler in many cases, such as, for example, last-minute testing.

Do you also test application level (Layer 7) DDoS attacks?

Yes. Our test simulation includes application-layer attacks that test your resistance to the more difficult-to-detect, layer 7 attacks; volumetric attacks to test your ability to withstand extreme and sustained campaigns with massive traffic; and protocol (network-layer) attacks such as SYN floods, UDP floods, and others. 

How long does DDoS testing take?

The actual test simulation session typically takes three hours. A more extensive test simulation with more attack vectors can take up to six hours.

Does your testing service include configuration recommendations?

Yes. Following the DDoS penetration tests, we provide you with recommendations specifically tailored for your Azure deployment. You can then decide to implement the recommendations as you see fit.

Can you help us implement the recommendations?

Yes. As a separate service, Red Button also provides support and guidance for implementing our DDoS mitigation recommendations.