Which statement regarding GETVPN is correct?
The GETVPN key server defines and distributes the policy that identifies the traffic to protect, including the traffic encryption policy received by group members. Pseudotime is maintained by the key server and distributed in rekey messages; it is not synchronized through NTP. Rekey acknowledgments are configurable, and cooperative key servers are used for redundancy rather than TEK-rekey load balancing.
Community Discussion