VPN Flashcards

(27 cards)

1
Q

What does VPN stand for?

A

Virtual Private Network

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is the main purpose of a VPN?

A

To securely connect remote users or sites over an untrusted network like the internet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are the two main types of VPNs?

A

Remote Access VPN and Site-to-Site VPN

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Which VPN type is used for connecting a single user to a private network?

A

Remote Access VPN

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Which VPN type is used to connect two networks together securely?

A

Site-to-Site VPN

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What are two protocols used to establish VPNs at Layer 3?

A

IPsec and GRE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What does IPsec stand for?

A

Internet Protocol Security

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What are the three main functions of IPsec?

A

Confidentiality; Integrity; and Authentication

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Which protocol in IPsec provides encryption?

A

Encapsulating Security Payload (ESP)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Which protocol in IPsec provides authentication and integrity?

A

Authentication Header (AH)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What are the two main IPsec tunnel modes?

A

Tunnel mode and Transport mode

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What mode is typically used in Site-to-Site VPNs?

A

Tunnel mode

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What mode is typically used in host-to-host VPNs?

A

Transport mode

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Which ports does IKE (Internet Key Exchange) use?

A

UDP 500 and UDP 4500 (for NAT traversal)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is the purpose of IKE in IPsec?

A

To negotiate and establish secure keys for the VPN

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is a GRE tunnel?

A

A tunneling protocol that encapsulates a wide variety of network layer protocols

17
Q

What is a disadvantage of GRE?

A

It does not provide encryption or security by itself

18
Q

How can you add security to a GRE tunnel?

A

Combine GRE with IPsec

19
Q

What is DMVPN?

A

Dynamic Multipoint VPN – a Cisco solution for scalable; secure VPNs

20
Q

What technology does DMVPN rely on?

A

NHRP (Next Hop Resolution Protocol) and multipoint GRE

21
Q

What is the function of NHRP in DMVPN?

A

It maps public IP addresses to tunnel IPs

22
Q

What is the benefit of DMVPN over traditional Site-to-Site VPNs?

A

It allows spoke-to-spoke tunnels without static configurations

23
Q

What is SSL VPN?

A

A VPN that uses the SSL/TLS protocol to secure the connection; often through a web browser

24
Q

What is a common use case for SSL VPNs?

A

Secure remote access via web browser without a full VPN client

25
Which VPN protocol is commonly supported natively in Windows?
PPTP (though outdated) and L2TP/IPsec
26
What is split tunneling?
A method that allows VPN traffic and local internet traffic to coexist
27
What is the risk of split tunneling?
It can expose the internal network to threats from the user's local network