Gateway Sentry

Solutions / Game Servers / Rust

Rust DDoS Protection

Raid nights and wipe days attract attacks. Volumetric UDP floods drop at the edge while your high-tick server stays responsive.

28015 default game portwipe day stays onlineUDP protocol-aware

How Rust Servers Are Protected

Raid-Night Floods

Attack traffic timed to raids and wipes is filtered at line rate, so the server holds its tick when it matters most. Wipe day stays wipe day.

Query Ports

Query traffic is covered too, and with Game Query Caching the edge answers browsers on your behalf, so refresh storms cost you nothing.

RCON & Tools

Protect admin and tool ports alongside the game port, and declare your own infrastructure as trusted networks so your tooling is never mistaken for an attacker.

Setup in Practice

Move port 28015 behind a protected IP and update your server’s public address; players connect exactly as before. Cover RCON and tool ports alongside the game port, and let Game Query Caching answer wipe-day browser storms so they never cost your box a cycle.

Host It on the Edge

Or skip the forwarding hop entirely: run the server on Sentry Compute and it lives behind its anycast address inside the perimeter, with the same filtering in front and nothing public between the edge and the game.

Frequently Asked Questions

Can Gateway Sentry stop a Rust DDoS attack?
Yes. Gateway Sentry's protocol-aware edge filtering protects Rust dedicated servers from raid-night DDoS attacks and targeted griefing, dropping volumetric UDP floods at the edge so your wipe day keeps running smoothly.

Keep the Server Up

Provision a protected IP and point your record at it; setup takes minutes