The DNSME engineers realized that there were also many limitations to using a normal Anycast network, and resolved to build their own. The plus isn't there just to look pretty, our engineers architected our network from the ground up to work perfectly with our suite of features.

Typical IP Anycast routing allows for a variety of features like global load balancing, redundancy, decreased latency, and a truly distributed response to denial of service (DoS) and distributed denial of service (DDoS) attacks. In an Anycast network, each name server IP corresponds to hundreds of systems world-wide that are announced from different geographical locations. When users send out DNS queries, they are then sent to the closest name server to the querying client. This system allows for multiple systems to dynamically respond the users, which boosts network performance and reduces resolution times. This type of architecture is fine for most providers, but it also has its limitations.

Our next generation IP Anycast + network was built and designed with the user in mind, giving all of our clients and their end-users some of the fastest resolution times on the planet. Our IP Anycast + technology is a proprietary multi-cloud architecture that provides enhanced traffic scalability, deliverability, and speed. We've spent the last 14 years and millions of dollars of infrastructure working to make sure every one of your queries is answered correctly as fast as possible.

All of DNS Made Easy systems are located at premium data facilities with multiple data providers. From a network standpoint DNS Made Easy is in the top tier of DNS providers worldwide. We have a historical 13 year 100% uptime and an overall 99.9999% uptime history, and continue to make significant improvements to redundancy and capacity to make sure we keep it that way.

This infographic explains how DNS Made Easy's IP Anycast+ network balance the load when facing off against a Volumetric DDoS attack. Our network is also engineered to protect against many other attacks such as: TCP State Exhaustion attacks (protocol abuse), Reflection attacks, and Application attacks (DNS).

1. The attacker floods the target with malicious traffic which drowns out the good traffic. Often in-house or unicast network's cannot handle a DDoS attack. Such connections are only so large and eventually will fail from being overwhelmed by the influx of traffic.

2. Malicious traffic is sent to DNSME's scrubbing facilities before being sent through our network. DNSME uses a proprietary cleaning algorithm to scrub malicious traffic.

3. Query traffic is redirected to many Points of Precense (PoP) to distribute the load (We like to think of an incoming bandwidth connection as a pipe. The larger the pipe, the larger the data the network can receive).

4. Each PoP then filters query traffic through our comprehensive system of firewalls.

5. Clean traffic is then pushed to our name servers which direct and answer query traffic. DNSME has hundreds of these servers with up to 60 per PoP.

"We constantly monitor our network performance from dozens of locations around the world, so we can confidently assure our users that they are receiving top quality services"

