






Cloud-native enforcement for AWS and Azure workloads. Bi-directional. In-line. No agent. Powered by the Global Threat Engine. 1 Gbps and up.
Cloud-native. GA on AWS and Azure Marketplace.
Powered by 25 years of IP and DNS reputation. 8.5 billion combinations.
Bi-directional inspection across every flow. No sampling. No baselining.

Shield Stratus is the cloud-native enforcement platform for your AWS and Azure workloads. Today live on AWS and Azure Marketplace. GCP support on the roadmap.
Shield Stratus sits in-line in your cloud network and blocks malicious connections at the connection layer. No firewall rules to maintain. No agents on workloads. Just bi-directional enforcement powered by the Global Threat Engine.
Pick the cloud where your workloads live. Deploy Stratus in minutes from the AWS or Azure Marketplace.
AWS | Azure | GCP | |
|---|---|---|---|
| Availability | Generally Available on AWS Marketplace | Generally Available on Azure Marketplace | On the roadmap |
| Deployment Method | AWS Gateway Load Balancer target. Deploy from AWS Marketplace. | Azure load balancer integration. Deploy from Azure Marketplace. | Coming soon |
| Throughput | 1 Gbps and up | 1 Gbps and up | Coming soon |
| Setup Time | Minutes | Minutes | Coming soon |
| Bi-Directional Enforcement | ✓ | ✓ | Coming soon |
| Observe Mode | ✓ | ✓ | Coming soon |
| Protect Mode | ✓ | ✓ | Coming soon |
| Global Threat Engine | ✓ | ✓ | Coming soon |
| Shield Command Hub Integration | ✓ | ✓ | Coming soon |
| Fixed Hourly Pricing | ✓ | ✓ | Coming soon |
No. Shield Stratus inspects and enforces in both directions. Depending on deployment mode (Observe or Protect), administrators can monitor or actively block both inbound and outbound traffic for full bi-directional security visibility and control.
Shield Stratus is powered by the Global Threat Engine. 25 years of IP and DNS reputation data, 8.5 billion combinations built since 2001. Owned by Intrusion, not licensed, not aggregated. Managed through Shield Command Hub for unified visibility and control across all enforcement platforms.
Shield Stratus software updates can be performed by launching a new AMI of the updated version, or by an on-demand user-requested software update via Shield Command Hub.
Customers select the vertical scaling (instance size) when Shield Stratus is launched. The underlying technology supports Auto Scaling Groups for horizontal scaling. Management of Shield Stratus instances in auto-scaled groups via Shield Command Hub is on the roadmap.
Shield Stratus follows a fixed hourly pricing model based on instance size. Simplifies billing for both direct customers and MSP partners.
On AWS, Shield Stratus natively integrates with AWS Gateway Load Balancer using the GENEVE protocol for seamless in-line traffic inspection. On Azure, Shield Stratus integrates with Azure load balancing for the same in-line deployment pattern. GCP integration is on the roadmap.