Gateway Sentry
Sentry Compute

Anycast Routed VMs. Untouchable.

Live on the bleeding edge of our anycast network and DDoS mitigation stack. Every packet scrubbed at line rate while you operate inside the security perimeter.

Anycast
Native IP Address
2.1+ Tbps
DDoS Protected Mitigation Capacity
In + Out
Bidirectional Filtering
Full Root
KVM Console Included

DDoS Protected VPS Hosting on Our Edge

Most DDoS protection sits in front of someone else's server. Sentry Compute puts your workload directly on our anycast network, so attack traffic never has to traverse a public path to reach you.

Anycast IP, Out of the Box

Every Sentry Compute VM is provisioned with a native anycast IP from our global anycast edge network. Players, customers, and clients reach the closest edge automatically. No DNS tricks, no proxying, no extra hops.

Global Routing

Always-On DDoS Protected Hosting

The same line-rate filtering that powers our Network Protection product runs in front of every VM. Volumetric floods, SYN floods, and amplification attacks are dropped at the edge before they ever touch your hypervisor.

2.1+ Tbps Capacity

Inbound & Outbound on Anycast

Both directions of traffic ride our anycast IP range. Outbound responses, replies, and connections stay inside the perimeter end-to-end, on the same path packets came in on.

Bidirectional

Minimal Added Latency

Because the VM lives inside our edge, there's no scrubbing detour, no GRE tunnel, no upstream provider. Your workload runs on the same edge that filters its traffic, measured in single-digit milliseconds.

Edge-Native

Modern Hardware

Powerful CPUs and locally-attached NVMe storage. Tuned for high-throughput workloads: game servers, real-time backends, latency-sensitive APIs.

CPU + NVMe

Full Root & Admin Access

You get the keys. Run any kernel module, install any package, configure the OS however you want. Sentry Compute is yours to manage. No managed-service lockdown.

Self-Managed

Built for Demanding Workloads

Sentry Compute is engineered around the workloads our customers actually run: game servers, real-time backends, and latency-sensitive infrastructure. Every layer of the stack is tuned for throughput.

Modern high-clock CPU cores
Locally-attached NVMe storage
Native anycast IP, included
Linux or Windows, your choice
Full root or administrator access
sentry-compute
# Provision a Sentry Compute VM
image:    ubuntu-24.04 | debian-12 | windows-2022
cpu:      high-frequency, multi-core CPUs
memory:   you choose
storage:  NVMe, locally attached
network:  anycast # native, included

# Connect once it's online
ssh root@your-anycast-ip
rdp Administrator@your-anycast-ip

# DDoS mitigation from the start,
# always on and always protecting.

Manage Everything from One Place

A purpose-built control panel for Sentry Compute. Power your VM, open a console, configure firewall rules, all without ever leaving the dashboard.

Power Controls

Boot, reboot, shut down, and hard-reset your VM directly from the dashboard. Recover from a kernel panic or a misconfigured service in seconds.

Instant

KVM Console

Browser-based KVM access for true out-of-band management. Watch the boot sequence, drop into single-user mode, or fix a broken network config without SSH.

Out-of-Band

Network Firewall

Define ingress rules for your VM at the edge, before traffic ever reaches the hypervisor. Simple, fast, and managed alongside your DDoS protection.

Edge-Filtered

Frequently Asked Questions

What is DDoS protected compute?
DDoS protected compute is a virtual machine that runs directly inside Gateway Sentry's anycast edge network, so attack traffic is scrubbed at line rate before it reaches your hypervisor. Always-on 2.1 Tbps mitigation drops volumetric floods, SYN floods, and amplification attacks at the edge.
Is Sentry Compute a DDoS protected VPS?
Yes. Every Sentry Compute VM is provisioned with a native anycast IP and always-on DDoS protection, giving you a DDoS protected VPS with full root or administrator access on Linux or Windows.
How is this different from typical secure cloud hosting?
Most DDoS protection sits in front of someone else's server. Sentry Compute hosts your workload on our own anycast network, so there is no scrubbing detour, no GRE tunnel, and no upstream provider, keeping added latency in single-digit milliseconds.
What hardware and OS options does DDoS protected hosting include?
You choose high-clock multi-core CPUs, the memory you need, and locally-attached NVMe storage, on Ubuntu, Debian, or Windows. A native anycast IP and a KVM console for out-of-band management are included.
How do I get a DDoS protected compute instance?
Pick your CPU, memory, storage, and operating system, then send us your configuration through the contact page and we will provision it on the edge network.

You Pick the Specs. You Pick the OS.

Choose the CPU, memory, storage, and operating system that fit your workload. Send us your config and we'll get it provisioned. For mitigation cost context, see our usage-based DDoS protection pricing.

Talk to Sales