nerdexam
Cisco

352-001 · Question #396

Which VPN technology supports multivendor interoperability on a network design?

The correct answer is D. IPsec VPN. IPsec VPN is defined by open IETF standards (RFC 4301 and related RFCs), making it interoperable across equipment from different vendors, unlike Cisco-proprietary VPN solutions.

Designing Security

Question

Which VPN technology supports multivendor interoperability on a network design?

Options

  • AVTI
  • BDMVPN
  • CEasy VPN
  • DIPsec VPN

How the community answered

(57 responses)
  • B
    4% (2)
  • C
    2% (1)
  • D
    95% (54)

Why each option

IPsec VPN is defined by open IETF standards (RFC 4301 and related RFCs), making it interoperable across equipment from different vendors, unlike Cisco-proprietary VPN solutions.

AVTI

Virtual Tunnel Interface (VTI) is a Cisco IOS-specific construct for simplifying IPsec configuration and is not a standard supported natively by other vendors.

BDMVPN

Dynamic Multipoint VPN (DMVPN) is a Cisco-proprietary technology combining GRE, NHRP, and IPsec and requires Cisco devices at spoke and hub sites.

CEasy VPN

Easy VPN (EzVPN) is a Cisco-proprietary remote-access VPN solution based on Cisco Unity protocol extensions and is not interoperable with non-Cisco devices.

DIPsec VPNCorrect

IPsec is an open, standards-based framework defined by IETF RFCs (4301, 4302, 4303, IKEv2 RFC 7296, etc.) that any vendor can implement compatibly. Because the key exchange (IKE) and encapsulation (AH/ESP) protocols are fully specified in open standards, a Cisco router can form an IPsec tunnel with a Juniper, Palo Alto, or Check Point device without vendor-specific extensions.

Concept tested: Multivendor VPN interoperability with open standards

Source: https://www.rfc-editor.org/rfc/rfc4301

Topics

#IPsec VPN#multivendor interoperability#VPN standards#site-to-site VPN

Community Discussion

No community discussion yet for this question.

Full 352-001 Practice