A network administrator is configuring a remote access VPN for external contractors who need access to internal web-based applications. To comply with corporate security policies, the solution must allow access directly through a standard web browser over TCP port 443 without requiring the installation of dedicated endpoint client software on contractor devices. Which VPN technology should the administrator deploy?
- Clientless SSL/TLS VPNAnswer
- BClient-based IPsec VPN in Tunnel Mode
- CL2TP/IPsec VPN
- DGRE over IPsec VPN
Answer
Clientless SSL/TLS VPN is the correct solution because it operates via web browsers over TCP port 443 without requiring dedicated client software installation.
The choice specifying a Clientless SSL/TLS VPN is correct because it uses standard web technologies (HTTPS on TCP port 443) through the user's browser, satisfying the requirement to grant access to internal web applications without installing software on the client device.
Step-by-Step Solution
Key Concept
Clientless SSL/TLS Remote Access VPNs