SSCP Systems Security Certified PractitionerNetwork and Communications SecurityMedium

A network administrator needs to implement a secure solution for remote access to the corporate network for employees working from home. The solution must ensure confidentiality and integrity of all transmitted data and support a wide range of client operating systems without requiring specialized client software beyond what is typically available in modern browsers. Which VPN technology would be the most suitable?

  1. ASSL/TLS VPN
  2. BPPTP VPN
  3. CIPsec VPN (Client-to-Site)
  4. DL2TP/IPsec VPN
Show answer & explanation

Correct answer: A. SSL/TLS VPN

SSL/TLS VPNs are ideal for remote access as they can be accessed via a standard web browser, eliminating the need for specialized client software. They provide strong encryption (confidentiality) and integrity, and are widely supported across various operating systems.

Why the other options are wrong

  • B. PPTP VPN is an older, insecure protocol with known vulnerabilities and does not meet the requirement for 'secure solution' ensuring confidentiality and integrity.
  • C. IPsec VPN (Client-to-Site) typically requires dedicated client software to establish the tunnel, which goes against the 'no specialized client software' requirement.
  • D. L2TP/IPsec VPNs usually require client software and are more complex to configure than SSL/TLS VPNs, making them less suitable for broad client OS support without specialized software.

SSL/TLS VPN

A Virtual Private Network (VPN) solution that uses the SSL/TLS protocol to create secure, encrypted tunnels over public networks.

  • Often accessed via a web browser (clientless) or lightweight client.
  • Provides secure remote access to corporate resources.
  • Widely compatible with various operating systems.

Memory trick: VPN Choices: IPsec needs Install, SSL is Browser, PPTP is Poor, L2TP needs IPsec.

More Network and Communications Security questions