Moving from private, leased lines to IP networks is more than a
trend – it's the new reality of networking. IP networks have indisputable benefits, including lower cost, higher speeds and
greater flexibility. However, these benefits come at a price–increased network vulnerability due to the inherent vulnerabilities of IP.
The CipherOptics SG1002 data protection gateway is designed specifically to protect your proprietary information and intellectual property throughout your high-speed IP network. With its exclusive TILEA™ encryption architecture, the CipherOptics SG1002 can do what other solutions cannot: deliver wire-speed data protection with complete network transparency and virtually no latency. This combination of performance and ease-of-implementation is what sets the CipherOptics SG1002 apart from routers, VPN blades and firewall extensions, and what makes it the best choice for data protection at high-speed.
| Feature Benefit | Benefit |
| Gigabit Ethernet wire-speed throughput |
No encryption bottlenecks; enables up to 1.9 Gbps full-duplex Gigabit Ethernet with AES encryption |
| Virtually no latency (2-17 microseconds) for encryption and decryption cycle |
Ideal for latency-intolerant applications, such as voice-over-IP, video conferencing and storage
networking |
| Ease-of installation; "bump-in-the-wire" implementation |
Ease of setup, policy definition and network installation. No complicated router or network
re-configuration, or programming, required
Complete network transparency; the unit does not affect network traffic and doesn't require intensive
management or maintenance |
| Network compatibility |
Easily integrates into existing IP networks |
| Streamlined IPSec policy definition |
Single-screen policy configuration and centralized policy management |
| Jumbo frame support |
Encrypts jumbo frames without degrading network performance |
| Coarse packet filtering |
Can be set up to drop all packets not coming from encryption counterpart, protecting against
denial-of-service attacks and potentially obviating the need for additional perimeter security devices |
| MPLS and VLAN tag support |
Transparent operation in a service provider or corporate environment |
| Data authentication |
Protects from "man-in-the-middle" attacks. Data that started in clear text is hashed to insure data has
not been altered, manipulated or corrupted in transport. Key in financial and medical imaging applications |
| Role-based management |
Allows for granularity of device and security policy management |
| Purpose-built appliance |
Low cost of ownership; low maintenance |