
DDoSDefenderLite
Injects a sophisticated custom network handler into the network pipeline to protect your server from Malicious Clients.
📖About DDoSDefenderLite
DDoSDefenderLite provides high-performance mitigation by injecting an optimised network handler directly into the server’s Netty pipeline. By inspecting incoming handshake packets and source IPs in real time, it applies dynamic rate limiting and selective packet cancellation to neutralise malicious bursts. This ensures your server remains resilient against floods without impacting the connection quality for legitimate players.
While it is the lightweight entry point to our premium suite (DDoSDefender), DDoSDefenderLite delivers robust protection against individual client attacks, ensuring that no single Client can disrupt your server's availability.



DDoSDefenderLite focuses exclusively on managing and filtering application-level connection attempts. It is important to note that it does not—and cannot—protect your physical network infrastructure, as no software-level plugin can mitigate volumetric attacks at the ISP level.
For comprehensive protection, we strongly recommend a layered security strategy: pair DDoSDefender/DDoSDefenderLite with a network-level proxy like TCPShield. While TCPShield shields your IP and absorbs massive network-layer floods, DDoSDefender provides the "last mile" of defence by intelligently filtering the complex, Minecraft-specific handshake exploits that proxies might pass through.