What is the purpose of configuring multiple crypto ACLs when building a VPN connection between remote sites?

Last Updated on April 30, 2021 by Admin

What is the purpose of configuring multiple crypto ACLs when building a VPN connection between remote sites?

  • By applying the ACL on a public interface, multiple crypto ACLs can be built to prevent public users from connecting to the VPN-enabled router.
  • Multiple crypto ACLs can be configured to deny specific network traffic from crossing a VPN.
  • When multiple combinations of IPsec protection are being chosen, multiple crypto ACLs can define different traffic types.
  • Multiple crypto ACLs can define multiple remote peers for connecting with a VPN-enabled router across the Internet or network.
    Answers Explanation & Hints:

    A crypto ACL can define “interesting traffic” that is used to build a VPN, and forward that “interesting traffic” across the VPN to another VPN-enabled router. Multiple crypto ACLs are used to define multiple different types of traffic and utilize different IPsec protection corresponding to the different types of traffic.