Hytale server: DDoS protection and help during attacks
Hytale communicates over QUIC and UDP, not over TCP like Minecraft. What that means for DDoS mitigation and how to proceed when an attack hits.
Do you run a Hytale server and want it to stay reachable even while it is under fire? DDoS protection has top priority at KernelHost and is permanently active in every server package, at no extra cost and with nothing to set up.
Why Hytale needs its own filtering logic
Hytale uses a different network protocol than Minecraft. While Minecraft Java Edition communicates primarily over TCP, Hytale relies heavily on the QUIC protocol over UDP (usually on port 5520). That delivers fast connections and smooth gameplay, but it asks something different of DDoS mitigation.
QUIC encrypts large parts of the connection setup. That is good for privacy, but it makes telling real players apart from forged connection attempts far more demanding: a filter cannot simply read the plaintext of the handshake. On top of that, UDP is connectionless, so source addresses are easy to spoof. Taken together, both properties turn Hytale servers into an attractive target for UDP floods and connection flood attacks. The basics are covered in the article What is a DDoS attack?.
How KernelHost protects your Hytale server
DDoS protection at KernelHost is built in two layers and is active around the clock:
- Layer 1: 17 Tbps of global filtering capacity. Volumetric attacks are absorbed close to their source, before they ever reach the datacenter in Frankfurt am Main.
- Layer 2: 3.2 Tbps of Arbor real-time filtering on site in Frankfurt. Directly in front of the server, protocol-specific patterns are identified and packets are dropped one by one.
Attacked IP addresses are never taken off the network: no null-routing means your players can keep playing while the attack is filtered in the background. Depending on the intensity and the type of attack, fine-tuning the filter profiles can be worthwhile so that not a single real player gets blocked. That is exactly what our network team is here for.
To see how filtering works for other game titles, read the article Real-time DDoS protection for game servers.
What to do when you are under attack right now
If you notice dropped connections, high ping or timeouts on your Hytale server that point to a DDoS attack, please get in touch with us straight away. We will then activate and tune the Hytale-specific filter profiles for your IP address.
- Log in to the customer panel.
- Open "Support" and then "Tickets".
- Create a new ticket with the subject "Hytale DDoS attack".
- State the IP address of the affected server, along with the port and the time you first noticed something unusual.
Our network engineers analyze the traffic and adjust the protection rules so that the attack is filtered and your server stays reachable for players. While an attack is running, you can also reach us through the WhatsApp emergency chat at +43 650 8209883.
Frequently asked questions
Why is DDoS mitigation different for Hytale than for Minecraft?
Is protection for Hytale servers included in the price?
What do I do during an ongoing attack?
Do real players get blocked during an attack?
2026 KernelHost GmbH. All rights reserved. This guide is protected by copyright. Republishing it on other websites, in whole, in part or in edited form, is not permitted without our written consent. Quoting with a source credit and a link is expressly welcome.

