Appendix B
Deployment Examples
Use with the CSS
Figure B-3
Secure Content Accelerator In-Line Installation
The CSS is used to front-end one or more Secure Content Accelerator devices.
Because the Secure Content Accelerator is a Layer 2 device, it must be configured
to ensure that bridge loops are not created. If multiple Secure Content Accelerator
devices are used, each must be attached to a separate VLAN on the CSS and/or
the upstream Layer 2 switch. The Secure Content Accelerator intercepts all port
443 traffic for the IP addresses configured on it, decrypts the traffic, and forwards
it as clear text on another TCP service port to the CSS. All port 80 traffic is bridged
transparently to the CSS. Table B-1 shows basic configuration actions for both the
CSS and Secure Content Accelerator.
Cisco 11000 Series Secure Content Accelerator Configuration Guide
B-5
78-13124-05