Sauter au contenu principal
| Mon–Fri 8:30am–4:30pm
WEB PERFORMANCE & PROTECTION

Your website faster, more secure, worldwide

Three complementary services: DNS management, global acceleration, and advanced protection, integrated directly into your Horizon-Cumulus client area.

DNS managed by HCU Global CDN WAF Protection Integrated client area Real-time statistics

DNS management integrated into your client area

No more accessing third-party panels to modify your DNS records. Our team manages your DNS zone directly from our global Anycast infrastructure.

Every domain hosted or transferred to Horizon-Cumulus benefits from complete DNS management: fast resolution, high availability, and optimal configuration for email and security.

Anycast Network

Your DNS queries are resolved by the geographically closest server, delivering resolution in milliseconds anywhere in the world.

GeoDNS

Differentiated DNS responses based on visitor location. Ideal for directing traffic to the best-performing server for each region.

Automatic Failover

In the event of a server failure, DNS automatically switches to a backup server, with no manual intervention and no downtime.

All record types

A, AAAA, CNAME, MX, TXT, SRV, CAA. Complete management of all record types from our interface or by our team.

DNSSEC

Cryptographic signing of your DNS zone to prevent cache poisoning and ensure DNS response integrity.

SPF / DKIM / DMARC

Optimal configuration of email authentication records to protect your domain against spoofing and improve deliverability.

Resolution in milliseconds

DNS is the first step of every visit. Slow DNS adds delay before your page even starts loading. Our Anycast network ensures ultra-fast resolution from anywhere in the world, directly contributing to your Core Web Vitals and user experience.

Zero downtime during migrations

When migrating a site to Horizon-Cumulus, our integrated DNS management lets you switch records instantly from the same panel. No coordination between two providers, no forgotten TTL. The transition is seamless for your visitors.

Your content, delivered everywhere

A global network of cache servers that brings your site closer to every visitor (images, scripts, full pages) for drastically reduced load times.

120+ global points of presence

Your static content is replicated across 120+ servers on 6 continents. Every visitor connects to the nearest point, dramatically reducing latency whether your audience is in Montreal, Paris, Tokyo, or São Paulo.

Perma-Cache

Unlike traditional caching, your files remain at the edge indefinitely. Cache hit rate near 100%, even for rarely visited pages.

BunnyOptimizer

Automatic image optimization: WebP/AVIF conversion, adaptive resizing, and intelligent compression with no perceptible quality loss.

HTTP/3 and Brotli

Next-generation protocol with Brotli compression for transfers up to 20% lighter than gzip. Native QUIC support for even faster connections.

Origin Shield

An intermediate cache layer that protects your origin server. Instead of receiving requests from 120+ POPs, your server only communicates with a single Shield node, massively reducing load and bandwidth consumption.

Real-time statistics

Dashboard with traffic, cache hit rate, bandwidth, errors, and performance by region. Complete visibility into your CDN usage.

The real-world impact on your site

CDN benefits are not abstract. They translate directly into your performance metrics, search rankings, and hosting bill.

Up to 80% faster

Drastically reduced load times through edge caching and static resource optimization.

Core Web Vitals and SEO

Direct improvement to LCP, FID, and CLS — Google ranking factors since 2021.

60–90% bandwidth reduction

Your origin server handles a fraction of the traffic. Less bandwidth consumed, less server load.

Integrated management

Configuration, cache purge, and statistics: everything is accessible from your Horizon-Cumulus client area.

Filter threats before they reach your server

Shield adds a security layer upstream of your hosting. Malicious traffic is identified and blocked at the network level, before even reaching your infrastructure, with no impact on legitimate visitor performance.

Web Application Firewall (WAF)

Real-time filtering rules against SQL injection, XSS, directory traversal, and OWASP Top 10 vulnerabilities. Automatic updates.

DDoS Protection

Automatic mitigation of volumetric and application-layer attacks (layers 3/4/7). Absorption of illegitimate traffic without service interruption.

Bot Management

Identification of malicious bots vs legitimate crawlers (Googlebot, Bing). Blocking of scraping, credential stuffing, and automated spam.

Rate Limiting

Request limiting per IP and per interval. Protection against brute force attacks on login pages and sensitive endpoints.

Geo-blocking

Access restriction by country or region. Block traffic from geographic areas irrelevant to your business.

Hotlink Protection

Prevent other sites from directly embedding your images and media. Protect your bandwidth and original content.

Invisible threats blocked

Thousands of malicious requests are filtered daily without any intervention on your part.

Reduced server load

Fewer requests reach your origin server, improving performance for legitimate traffic.

Simplified compliance

WAF and detailed access logs simplify security audits and regulatory compliance.

Integrated management

Configuration, reports, and alerts: everything is centralized in your Horizon-Cumulus client area.

Clear plans for every service

No billing surprises. Choose the services you need, combine them for complete protection.

DNS Plans
DNS Essential
Included
with any managed hosting
INCLUDED
  • Global Anycast network
  • Complete record management
  • SPF, DKIM, DMARC configured
  • Automatic Failover
  • Support by our team
Already included
Additional DNS
$5 $4 /month
per additional DNS zone
Billed $48/year — you save $12
  • Everything in DNS Essential
  • Advanced GeoDNS
  • DNSSEC
  • Domains not hosted at HCU
  • Unlimited record management
Add to my plan
CDN Plans
CDN Starter
$10 $8 /month
ideal for brochure sites
Billed $96/year — you save $24
  • 120+ points of presence
  • 500 GB bandwidth
  • HTTP/3 et Brotli
  • SSL certificate included
  • Basic statistics
Choose Starter
CDN Volume
$60 $50 /month
high volume and multi-site
Billed $600/year — you save $120
  • Everything in CDN Business
  • 10 TB bandwidth
  • Unlimited sites
  • Advanced API purge
  • Priority support
Contact Us
Shield Plans
Shield Essential
$25 $21 /month
basic protection + performance
Billed $252/year — you save $48
Includes CDN Starter
  • WAF — OWASP rules
  • DDoS Protection (L3/L4)
  • Basic Rate Limiting
  • SSL Certificate
  • CDN Starter included ($10 value)
  • Monthly reports
Choose Essential
Shield Complete
$85 $72 /month
maximum security + performance
Billed $864/year — you save $156
Includes CDN Volume
  • Everything in Shield Advanced
  • CDN Volume included ($60 value)
  • Advanced Rate Limiting
  • Custom WAF rules
  • Priority support
Choose Complete

Complete your infrastructure

Professional email

Email addresses on your domain with antispam, shared calendar, and mobile sync. Hosted in Canada with in-transit encryption.

Transactional email

Reliable automated email delivery: order confirmations, password resets, and notifications. High delivery rate guaranteed.

Managed WordPress hosting

Servers optimized for WordPress with automatic updates, daily backups, staging, and expert technical support. Canadian servers.

On répond à vos questions

Yes. If your domain is registered or transferred to Horizon-Cumulus, DNS management is included in your hosting plan. You don't need to access an external panel. Our team configures and updates your records directly from our Anycast infrastructure.
Yes. The CDN works as a reverse proxy. You simply modify your DNS records to route traffic through the distribution network. The origin host doesn't matter. Our team handles the complete configuration.
On a traditional CDN, files are temporarily cached and removed if rarely accessed. Perma-Cache keeps your files at the edge indefinitely, until explicit manual purge. Result: even rarely visited pages are always served from the CDN without returning to your origin server, with a cache hit rate consistently near 100%.
No, it complements them at a different level. Our hosting plans already include server-level security tools (fail2ban, WP Activity Log, per-user system isolation, etc.). Shield adds a filtering layer upstream in the network, before the request even reaches your server. Both levels together form a defense-in-depth strategy.
No, when properly configured. Dynamic pages (cart, checkout, client area, forms) are excluded from cache via bypass rules. Only static files (images, CSS, JS) go through the CDN. Our team configures these exclusions during activation so WordPress functions normally.
Yes, each Shield plan includes the CDN at its corresponding tier. Shield Essential includes CDN Starter, Shield Advanced includes CDN Business, and Shield Complete includes CDN Volume. Traffic is first filtered by Shield (security), then distributed by the CDN (performance). Both services share the same network layer, so there is no additional latency. It's the simplest and most effective configuration.
Anycast DNS is active immediately if your domain points to our servers. CDN and Shield activation requires a DNS change and a few minutes of propagation. Our team handles the complete configuration, typically in less than one business hour. For Shield in full proxy mode, a validation test is performed before going live.

Need more information?

Our team is available to answer your questions about DNS, CDN, and Shield, or to help you choose the right combination for your site.

Complete configuration by our team. No external panel to manage.

Brief Generator AI

3 questions. Our AI generates a preliminary scope document sent to your email within minutes.

Step of 3

Describe in a few sentences the problem or need you are looking to address.

Who are the primary users? What is their context?

Describe the concrete result you hope for.

To receive the generated scope document.

Generating...

Our AI is analyzing your answers and preparing your preliminary scope document.

This usually takes less than 30 seconds.

Your brief is ready!

A preliminary scope document has been sent to .

This document is a preliminary AI-generated analysis. It does not constitute a quote or a commitment.

An Error Occurred