Detection, Mitigation & Response

Detect and mitigate DDoS attacks in under 1 second, respond automatically, and keep your users informed.

All features →
Learn
Documentation Quick Start API Reference Agent Setup DDoS Protection Landscape Free Certifications NEW
Popular Guides
memcached Amplification Dynamic Baselines PCAP Forensics PagerDuty Setup
Company
About Us Partners White Label Referral Program Pay with Crypto System Status
Legal & Support
Contact Us Terms Privacy SLA
Who Uses Flowtriq

From indie hosts to ISPs — see how teams like yours use Flowtriq to detect and stop DDoS attacks.

Talk to Us →
Infrastructure
Hosting Providers ISPs MSPs Small Operators
Gaming
Game Server Hosting Game Studios
Business
SaaS Platforms E-Commerce Financial Services

Analytics

See your traffic clearly.
In real time.

Flowtriq gives you live PPS and BPS dashboards that update every second, historical views from 15 minutes to 24 hours, and protocol breakdowns that show exactly what kind of traffic is flowing through your infrastructure. No guessing, no waiting.

1s
Dashboard Refresh
24h
Historical Retention
5
Protocol Layers Tracked

Live Dashboards

Streaming charts that keep pace with your traffic.

The Flowtriq dashboard shows packets per second and bits per second as they happen. Every data point arrives within one second of being measured on the server, so what you see on screen is what your infrastructure is handling right now.

Charts auto-scale to match your traffic volume. Whether you normally see 500 PPS or 500,000, the visualization adjusts so that spikes and dips are always visible at a glance.

Threshold lines overlay the live chart so you can see exactly how close your current traffic is to triggering a detection. When an incident opens, the chart highlights the affected time range automatically.

Refresh interval1 second (streaming)
Primary metricsPPS, BPS
Overlay indicatorsThreshold line, incidents
Auto-scaleYes, based on traffic volume
ScopePer-node or workspace-wide
flowtriq: live dashboard
PPS |
4.8k | **
3.6k | ** **
2.4k | ** ** **
1.2k |** **** **
0 |______________________________
10:01 10:02 10:03 10:04

BPS: 168 Mbps | PPS: 4,812
Threshold: 12,306 PPS (3x p99)
Status: NORMAL
_

Historical Analysis

Zoom out to see the bigger picture.

Switch between 15-minute, 1-hour, 6-hour, and 24-hour views to analyze traffic patterns over time. Each time window aggregates data points into clean, readable charts without losing the detail that matters.

Historical views make it easy to spot recurring patterns. Maybe your traffic peaks every day at 2 PM, or maybe there is a weekly spike every Monday morning. Flowtriq helps you see those rhythms so you can plan capacity and set better thresholds.

Incidents are annotated directly on the historical timeline, making it simple to correlate traffic spikes with detected events. Click any incident marker to jump straight to its detail page.

Time windows15m, 1h, 6h, 24h
Data granularity1s (15m), 5s (1h), 30s (6h), 2m (24h)
Incident annotationsClickable markers on timeline
Trend indicatorsRolling average overlay
flowtriq: 24h traffic overview
Traffic Overview: Last 24 Hours

Peak PPS 12,491 at 14:22
Avg PPS 2,307
Min PPS 418 at 04:10

Peak BPS 412 Mbps
Avg BPS 78 Mbps

Incidents: 1 (14:22, UDP Flood)
Trend: +4.2% vs previous 24h

Protocol Breakdown

Know exactly what kind of traffic is flowing.

Flowtriq breaks down your traffic by protocol: TCP, UDP, and ICMP. This gives you a clear picture of your traffic composition at any point in time, and makes it obvious when the mix shifts unexpectedly.

A sudden jump in UDP percentage might indicate an amplification attack. An unusual ICMP spike could signal reconnaissance. Protocol breakdowns turn raw numbers into actionable context.

The breakdown is available on both live and historical views, so you can compare how your traffic composition changes throughout the day or during an incident.

flowtriq: protocol breakdown
Protocol Distribution: Now

TCP ████████████████████ 68.4% 3,292 PPS
UDP ████████ 26.1% 1,256 PPS
ICMP ██ 5.5% 264 PPS

Total: 4,812 PPS | 168 Mbps

Compared to 1h avg:
TCP 71.2% (-2.8%)
UDP 23.8% (+2.3%)
ICMP 5.0% (+0.5%)

Analytics Workflow

From raw data to clear insights

Collect: per-second metrics from every node

The FTAgent on each server reports PPS, BPS, and protocol stats every second. Data flows to the Flowtriq cloud where it is stored, indexed, and ready for visualization.

1 sample/second/node

Visualize: live charts and protocol breakdowns

Data appears on your dashboard within one second of collection. Streaming charts, protocol pie charts, and per-node comparisons update continuously.

Analyze: spot trends and compare time windows

Switch between time ranges to compare today against yesterday. Overlay rolling averages to smooth out noise and reveal the underlying trends in your traffic.

Scope: per-node or workspace-wide views

View analytics for a single server, a group of nodes, or your entire workspace. Aggregated views make it easy to spot which node is handling the most traffic or which region is seeing unusual activity.

Export: download reports for your team

Export traffic data as CSV or JSON for use in your own tools, reports, or compliance documentation. Filter by time range, node, and protocol before exporting.

Why It Matters

Visibility changes everything

Flying blind

  • No idea what normal traffic looks like
  • Spikes discovered after users complain
  • No protocol context during incidents
  • Capacity decisions based on gut feeling
  • No historical data for post-mortems

Flowtriq Analytics

  • Clear picture of normal traffic baselines
  • Spikes visible the second they happen
  • Protocol breakdown reveals attack composition
  • Capacity planning backed by real data
  • 24-hour history for post-incident review

FAQ

Common questions about analytics

How quickly does data appear on the dashboard?

Within one second. The FTAgent sends metrics every second, and the dashboard uses streaming updates so charts reflect the current state of your traffic with minimal delay.

Can I view analytics for all my nodes at once?

Yes. The workspace-wide view aggregates traffic across all nodes so you can see total PPS and BPS for your entire infrastructure. You can also filter down to individual nodes or compare them side by side.

What export formats are supported?

You can export traffic data as CSV or JSON. Both formats include timestamps, PPS, BPS, and protocol breakdowns. Filters for time range, node, and protocol are applied before export so you get exactly the data you need.

How far back does historical data go?

The dashboard provides views up to 24 hours. Data granularity scales with the time window: 1-second resolution for the 15-minute view, 5 seconds for 1 hour, 30 seconds for 6 hours, and 2-minute intervals for the full 24-hour view.

Does analytics add any overhead to my servers?

No additional overhead. The FTAgent already collects PPS, BPS, and protocol stats for detection purposes. Analytics reuses the same data, so there is no extra sampling, no extra CPU usage, and no impact on your applications.

Get Started

See your traffic. Understand your patterns.

Start at $9.99/node/month. Free 7-day trial, no credit card required.