When I did the Clavister VPN class we tested around ten thousand different ways (felt like it at least

The question is... Which one does Clavister "officially" recommend to use?
I guess all these options differ in
- Performance (lower data overhead, packet overhead)
- Simplicity (easy to setup, easy to roll-out, easy to maintain e.g. automatic client updating)
- Security ("secure" in terms of not breakable with the available amount of computing power on earth within a reasonable amount of time would be sufficient)
Are there probably any comparing documents available that cover these bullet points?
Thanks,
Michael