VPN
Encrypted tunnel
SSL/TLS VPN (Secure Sockets Layer VPN)
Uses common SSL/TLS protocol (tcp/443)– (Almost) No firewall issues!
* No big VPN clients– Usually remote access communication
* Authenticate users– No requirement for digital certificates or shared
passwords (like IPSec)
* Can be run from a browser or from a (usually light)
VPN client– Across many operating systems
SSL/TLS VPN
Site-to-site IPsec VPN
SD-WAN
Secure Access Service Edge (SASE)
Selection of effective controls
Many different security options– Selecting the right choice can be challenging
* VPN– SSL/TLS VPN for user access– IPsec tunnels for site-to-site access
SSL/TLS VPN
2
* SD-WAN– Manage the network connectivity to the cloud– Does not adequately address security concerns
* SASE– A complete network and security solution– Requires planning and implementation
SSL/TLS VPN process.
Site to Site IPsec VPN process.
Secure Access Service Edge (SASE) See course notes example