A sanitation department must ensure WAN Edge to controller sessions cannot be trivially spoofed or read on the underlay. Which control-plane security property should they verify?
Select an answer to reveal the explanation.
Short Explanation
Control connections are the private radio channel between Edges and controllers—they need crypto and identity checks, not cleartext Telnet. DTLS/TLS with the SD-WAN certificate trust model keeps sanitation sites from getting spoofed on the underlay. Broadcasting OMP in the clear on the ISP handoff would be a civic disaster.
Full Explanation
Cisco SD-WAN control connections between WAN Edges and controllers are protected with authenticated, encrypted DTLS/TLS sessions grounded in the controller/Edge certificate trust model. That prevents trivial interception or impersonation of control-plane exchanges on untrusted underlays. Cleartext Telnet or certificate-free HTTP control channels violate that model. OMP is carried over those secured control connections, not as unauthenticated ISP broadcasts.