Cisco Certified Support Technician (CCST) NetworkingSecurity FundamentalsEasy
A small business wants to protect its internal network from unauthorized access while allowing employees to securely access company resources when working remotely. Which network security technology is primarily designed to create a secure, encrypted connection over a public network?
- AIntrusion Detection System (IDS)
- BVirtual Private Network (VPN)
- CDemilitarized Zone (DMZ)
- DFirewall
Show answer & explanationAnswer & explanation
Correct answer: B. Virtual Private Network (VPN)
A Virtual Private Network (VPN) creates a secure, encrypted tunnel over an unsecure network like the internet, allowing remote users to access internal resources as if they were physically present on the local network.
Why the other options are wrong
- A. An IDS monitors network traffic for suspicious activity and alerts, but doesn't establish secure remote connections.
- C. A DMZ is a buffer zone for public-facing servers, not a technology for secure remote client access.
- D. A firewall filters traffic based on rules but doesn't inherently provide encrypted remote access over public networks.
Virtual Private Network (VPN)
A technology that creates a secure, encrypted connection (a 'tunnel') over a less secure network, such as the internet, to provide remote access to private network resources.
- Encrypts data in transit
- Establishes a secure tunnel
- Enables remote access
- Uses protocols like IPsec or SSL/TLS
Memory trick: VPN: Virtual Path for Nifty access.