BGPShield from Setec Astronomy, Inc. - Real time threat intelligence and blocking for your network

by•
Real BGP blackholing (RTBH) for single-router networks. No multihoming required. No public ASN required. $59/mo, 14-day free trial, no card required, auto-approved. Set up in minutes. We built our own enterprise network to protect yours

Add a comment

Replies

Best
Hey Product Hunt — I'm Jonathan, I operate AS23026 (a real BGP network, not a resold feed) and built Shield out of a problem I had myself: when one of my servers gets attacked, why does every other server I run have to wait hours to hear about it, if it ever does? Large ISPs solve this with BGP blackholing — announce a route for a bad IP, upstream drops the traffic before it reaches you. It's the most effective form of network-layer defense that exists, and until now it's been locked behind needing your own ASN, transit diversity, and a real network engineering team. Shield brings the same mechanism to a single router. Sign up, get a generated config for OpenWrt/pfSense/VyOS/BIRD/FRR, peer over GRE or WireGuard, and you're blackholing routes in minutes — no public ASN, no multihoming, no card required for the 14-day trial. One thing I want to be upfront about, because I'd rather you hear it from me than find out the hard way: this stops connection-based attacks (brute force, exploits, known-bad IPs) — it does NOT stop volumetric DDoS floods on its own. That needs uRPF configured alongside it, which the setup guide walks through. If someone tells you BGP blackholing alone stops a flood, they're oversimplifying. Would genuinely love feedback, especially from anyone who's run RTBH before and can poke holes in the approach.