The Cloud Security Connector Multiplex (CSC Mux 1, 2, 4 and 8) allows you to protect your Internet traffic in compliance with the best practices for Zscaler Internet Access (ZIA) and and communicate private Cloud Workloads.


Attached the Administrator Guide for version 4.1




The Key Benefits of the CSC Mux are:
  • Solves the limitation of speed to Zscaler (ZIA) when using IPsec tunnels. The CSC Mux comes in four models:
    • CSC Mux 1 (1 x IPsec, 400 Mbps to Zscaler, 1 Gbps PriCPA)
    • CSC Mux 2 (2 x IPsec, 800 Mbps to Zscaler, 1 Gbps PriCPA)
    • CSC Mux 4 (4 x IPsec, 1.6 Gbps to Zscaler, 1 Gbps PriCPA)
    • CSC Mux 8 (8 x IPsec, 3.2 Gbps to Zscaler, 1 Gbps PriCPA)
  • The CSC Mux provides outstanding value for money. The CSC Mux is multiple devices "all in one": a Load Balancer, a Firewall, a VPN Concentrator, a Router and a Proxy.
  • Includes Private Cloud Private Access (PriCPA) functionality that allows you to create a full mesh among the CSCs communicating your private traffic on a Zero Trust model at Gigabit speeds.
  • The primary purpose of the CSC Mux family is simplicity. The CSC comes with the optimal values to work with Zscaler (ZIA).
  • Full tunnel redundancy.

  • High Availability with automatic "Next-Hop" selection on multiple routes.

  • All traffic steering options supported:

    • Route all traffic to Zscaler (or http/s only).

    • Use of PAC files.

    • Use of Explicit Proxy.

    • No default Route scenarios.

  • Multiple options to Bypass Traffic via dedicated Public IP:

    • Layer 7 Proxy Bypass to Trusted Web Sites.

    • Layer 4 Routed Bypass: TCP, UDP and ICMP per source/destination Network and Port (UDP/TCP)

  • Cloud Firewall and Cloud Web Security.

  • Complete visibility of internal IPs on Zscaler Console.

  • No operational burden for Administrators: You can pass main configuration parameters via User Data during initial deployment.

  • Full hardened device.

  • Supports integration with Azure Load Balancer.

  • SIEM / Syslog integration: You can send all user IP traffic and CSC's system logs to a SIEM/Syslog server.

  • Radius authentication for Admin users.

  • SNMP v2c and v3.

  • Multiple tools for testing and troubleshooting included: Traffic Logs. TCPDump, Speed Test, MTR (MyTraceRoute), Keepalives statuses, Etc.

  • Management via SSH, AWS Systems Manager, Rundeck or similar. (i.e. Ansible)