Remote county clinicians work from hotel and coffee-shop Wi-Fi to reach clinic EHR apps. Link crypto on those foreign SSIDs is unknown. What additional control should the WLAN security design require for application traffic?
Select an answer to reveal the explanation.
Short Explanation
Hotel Wi-Fi is someone else’s driveway—you do not control the lock on the gate. A VPN wraps the clinician’s EHR traffic in a tunnel you do trust, on top of whatever (or nothing) the coffee-shop AP provides. Hiding SSIDs or hoping for WEP is not a remote-access design.
Full Explanation
When clients use untrusted third-party WLANs, organizational application traffic needs protection beyond hoping the foreign SSID uses strong link encryption. A VPN concentrates and encrypts those sessions to enterprise gateways under organizational policy. Disabling encryption, adopting WEP, or relying on SSID cloaking does not secure clinical application paths. VPN complements WLAN design for remote and untrusted access scenarios.