In a new environment one of the projects left behind by a predecessor was to upgrade the encryption on their DMVPN from 3DES to AES 256. That's a good goal to be up to modern standards. But I see a lot of other areas of greater vulnerability. And the update and verification of hundreds of spoke sites will take considerable time. My question: how vulnerable is a 3DES encrypted DMVPN network?
That's really helpful. Thanks Noci. I didn't realize there could be a speed enhancement there. That would be a big bonus as they send a lot of VDI traffic over these links and we're trying to reduce some grumbles on that performance.