Integrations
Connect Flowtriq to your stack
DDoS detection and automated mitigation for firewalls, hosting panels, and routers. Install ftagent directly or receive NetFlow exports from your network gear.
pfSense
Export NetFlow from pfSense via softflowd to Flowtriq for real-time DDoS detection. Works with pfSense CE and pfSense Plus.
OPNsense
OPNsense has built-in NetFlow export with no plugins required. Enable it, point it at ftagent, and DDoS detection starts immediately.
cPanel / WHM
Install ftagent directly on your cPanel server for per-server DDoS detection. Protect every site on your shared hosting node.
Plesk
Direct agent install on Plesk servers. Real-time DDoS detection, automated firewall rules, and instant alerts for all hosted sites.
VyOS
Two deployment modes: install ftagent directly on VyOS, or export NetFlow from VyOS to an external ftagent host. Your choice.
WHMCS
Sell DDoS protection through your WHMCS storefront. Auto-provisioning, client area status, billing integration, and white-label support.
Blesta
Provision DDoS protection automatically when Blesta services are created. Client-facing status tab, incident history, and white-label dashboard access.
DirectAdmin
Hook-based provisioning for DirectAdmin. Every new user gets DDoS monitoring set up automatically, with per-package control.
Virtualizor
Auto-discover VPS instances from your Virtualizor panel and provision DDoS monitoring for each one. No plugin install needed.
SolusVM v2
Connect your SolusVM v2 panel to auto-discover servers and provision monitoring. Pull-based integration with no SolusVM plugins required.
Pterodactyl Panel
Automatic port sync, game-aware protocol classification, and on-node firewall rules for every game server your panel manages.
Docker / Kubernetes
Run ftagent as a Docker container or Kubernetes DaemonSet. Official image on Docker Hub with docker-compose and DaemonSet examples.
Agones GameServers
Detect DDoS attacks on individual GameServer pods and label them via the Agones SDK sidecar REST API for automated fleet response.
Proxmox VE
Deploy ftagent on Proxmox hosts for aggregate visibility, or inside individual VMs and LXC containers for per-tenant monitoring.
Vultr Cloud
Deploy ftagent on any Vultr instance. One-click Marketplace image or manual pip install with auto-setup via user-data.
DigitalOcean
Deploy ftagent on DigitalOcean Droplets. 1-Click Marketplace app or manual install with auto-setup via user-data.
Linode / Akamai Cloud
Deploy ftagent on Linode instances. Marketplace app, StackScript provisioning, or manual pip install on Akamai cloud infrastructure.
Splunk
Receive DDoS incident data in Splunk via HTTP Event Collector. Pre-built dashboard, CIM-compliant field mappings, and real-time attack visibility.
MISP
Share DDoS attack intelligence with MISP. Export attacker IPs as structured events and enrich indicators with Flowtriq threat data.
CrowdSec
Feed DDoS attacker IPs into CrowdSec as ban decisions. Share threat intelligence with the CrowdSec community network and enforce blocks via bouncers.
Elastic / Kibana
Ingest DDoS incidents into Elasticsearch with ECS-mapped fields. Pre-built Kibana dashboards for real-time attack visibility and SIEM correlation.
Microsoft Sentinel
Forward DDoS incidents to Microsoft Sentinel via Syslog CEF or direct API ingestion. Correlate network attacks with your broader SIEM workflow.
Flow Ingestion
Works with any router
The Flowtriq agent ingests NetFlow v5/v9, sFlow, and IPFIX (RFC 7011) from any router or switch that exports standard flow telemetry. Built-in config snippets for Juniper, Cisco IOS-XE, MikroTik, and VyOS.
For BGP mitigation: ExaBGP, GoBGP, BIRD2, or FRRouting. Works with any BGP-speaking router including Juniper, Cisco, MikroTik, VyOS, Arista, and Nokia.
Coming Soon
More integrations on the way
We are building integrations for more platforms. Let us know what you need.
Start protecting your infrastructure
Real-time DDoS detection starting at $9.99/node/month. Free 14-day trial with no credit card required.
FAQ