In a split-tunnel VPN, only corporate traffic is sent through the VPN tunnel, while public internet traffic goes directly through the user’s local ISP. This reduces bandwidth use on the corporate VPN concentrator and improves performance for non-work traffic.
B. Separate tunnels for encrypted traffic describes multi-tunnel VPNs, not split tunneling.
C. All traffic routed through on-site servers is a full-tunnel VPN, not split-tunnel.
D. ACLs balancing traffic relates to routing or load balancing, not VPN split tunneling.
References (CompTIA Network+ N10-009):
Domain: Networking Concepts — VPN types, split vs. full tunnel, remote access.