Appendix D

Memory Tables Answer Key

Chapter 2

Table 2-3 Comparing VPN Options

Network Design

DMVPN (mGRE)

GETVPN (tunnel-less)

SSL VPN (TLS)

FlexVPN (DVTI, IKEv2)

EasyVPN (dynamic Crypto Map/DVTI, IKEv1)

Static IPsec (Crypto Map, SVTI, IPsec/GRE)

Remote access (software client)

N/A

N/A

Supported

Supported

Not supported

N/A

Hub-and-spoke only (hardware client)

Supported

N/A

N/A

Supported

Not supported

Not supported

Hub-and-spoke with spoke-and-spoke

Dynamic mesh supported

Any to any (full-mesh) supported

N/A

Not supported

N/A

Not supported

Chapter 3

Table 3-2 Comparison of IKEv1 and IKEv2

Parameter

IKEv1

IKEv2

Number of exchange modes

Two: main and aggressive

One

Exchange messages

Nine for main mode; six for aggressive ...

Get CCNP Security Virtual Private Networks SVPN 300-730 Official Cert Guide now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.