QuestionQ39

Site-to-Site VPN

The gateways must mutually authenticate during the IPsec negotiation phase. The two methods for doing this are:

Explanation

IPsec gateways can authenticate IKE peers with either a pre-shared secret or PKI-based digital certificates. Certificates support identity validation through a trusted certificate authority, while a shared secret is configured on both peers.

Community Discussion

No comments yet. Be the first to start the discussion!