The CSG 3100 is a transparent, fully streams-based gateway device designed to operate at Gigabit speeds within carrier networks.
Hardware TCP processing and protocol parsing allows comprehensive analysis of content in transit while maintaining deterministic performance and introducing minimal latency. Operating as a gateway, the CSG 3100 allows active threat mitigation through content blocking or filtering while maintaining true transparency at both layers 2 and 3.
Designed in common with all StreamShield products to combine flexibility with performance, the CSG 3100 twins custom traffic processing hardware with efficient execution of software content analysis algorithms, enabling best-of-breed content security applications to be embedded into high speed networks.
Service Operation
The CSG is designed for deployment at a suitable
location in the network e.g. aggregation point, point of presence,
cable head-end or in front of the email server farm.
The CSG operates as a transparent device in the
network through which the traffic flows. Traffic entering the device is
classified as either subscriber traffic or non-subscriber traffic, with
non-subscriber traffic being immediately forwarded on the out-bound
port.
Subscriber traffic is transparently terminated and a
corresponding upstream TCP connection set-up. StreamShield utilizes an
ASIC-based TCP processing architecture to deliver large numbers of
concurrent TCP connections and TCP flows through the system in addition
to very high speed TCP connection set-ups and tear-downs.
The CSG provides full layers 5 to 7 content
processing and manipulation within the service provider's network.
Subscriber traffic is scanned in real-time for threats and if a threat
is detected the content is either allowed through, modified, replaced
or blocked depending on the service provider's policies and the
specific subscriber's preferences.