Continue your lesson
Tie every forwarding decision to interface state, Layer 2 state, addressing, routing, and policy.
Block 1 of 1Compare Site-to-site VPN · Remote-access VPN · IPsec tunnel mode · VPN encryption domain
Current · 10 min
Compare Site-to-site VPN · Remote-access VPN · IPsec tunnel mode · VPN encryption domain
Optional concept notes
Site-to-site VPN
Protects traffic between network gateways across an untrusted network.
Remote-access VPN
Protects an individual endpoint's connection to an organization.
IPsec tunnel mode
Protects an entire original IP packet inside a new packet.
VPN encryption domain
Defines which source and destination traffic should be protected.
Complete one provider lesson, then answer four related questions. That is enough for today; more practice is optional.
Your lesson stays open here while the provider opens in another tab. Choose one source; the notes above are optional.
Practice the reasoning here
Write or inspect a small Cisco configuration, name the expected show-command evidence, and explain how a frame or packet crosses it.
- State the expected result before changing or testing anything.
- Name the observation, command, log, or report that would confirm it.
- Explain why the closest alternative does not fit the same requirement.
Check the whole objective
This unlocks objective 5.5 for recall. The latest checkpoint needs 70% or higher; a lower result puts the lesson back near the front of your timeline.