Given: An 802.1X/EAP implementation includes an Active Directory domain controller running Windows Server 2012 and an AP from a major vendor. A Linux server is running RADIUS and it queries the domain controller for user credentials. A Windows client is accessing the network.
What device functions as the EAP Supplicant?
A. An unlisted WLAN controller
B. Windows server
C. Windows client
D. An unlisted switch
E. Linux server
F. Access point
正解:C
質問 2:
Given: ABC Company has recently installed a WLAN controller and configured it to support WPA2-Enterprise security. The administrator has configured a security profile on the WLAN controller for each group within the company (Marketing, Sales, and Engineering).
How are authenticated users assigned to groups so that they receive the correct security profile within the WLAN controller?
A. The RADIUS server sends a group name return list attribute to the WLAN controller during every successful user authentication.
B. The WLAN controller polls the RADIUS server for a complete list of authenticated users and groups after each user authentication.
C. The RADIUS server sends the list of authenticated users and groups to the WLAN controller as part of a 4-Way Handshake prior to user authentication.
D. The RADIUS server forwards the request for a group attribute to an LDAP database service, and LDAP sends the group attribute to the WLAN controller.
正解:A
質問 3:
Wireless Intrusion Prevention Systems (WIPS) provide what network security services? (Choose 2)
A. Wireless vulnerability assessment
B. Application-layer traffic inspection
C. Analysis and reporting of AP CPU utilization
D. Configuration distribution for autonomous APs
E. Policy enforcement and compliance management
正解:A,E
質問 4:
In an effort to optimize WLAN performance, ABC Company has upgraded their WLAN infrastructure from 802.11a/g to 802.11n. 802.11a/g clients are still supported and are used throughout ABC's facility. ABC has always been highly security conscious, but due to budget limitations, they have not yet updated their overlay WIPS solution to 802.11n or 802.11ac.
Given ABC's deployment strategy, what security risks would not be detected by the 802.11a/g WIPS?
A. 802.11a STA performing a deauthentication attack against 802.11n APs
B. Hijacking attack performed by using a rogue 802.11n AP against an 802.11a client
C. 802.11n client spoofing the MAC address of an authorized 802.11n client
D. Rogue AP operating in Greenfield 40 MHz-only mode
正解:D
質問 5:
Given: XYZ Hospital plans to improve the security and performance of their Voice over Wi-Fi implementation and will be upgrading to 802.11n phones with 802.1X/EAP authentication. XYZ would like to support fast secure roaming for the phones and will require the ability to troubleshoot reassociations that are delayed or dropped during inter-channel roaming.
What portable solution would be recommended for XYZ to troubleshoot roaming problems?
A. WIPS sensor software installed on a laptop computer
B. Laptop-based protocol analyzer with multiple 802.11n adapters
C. Spectrum analyzer software installed on a laptop computer
D. An autonomous AP mounted on a mobile cart and configured to operate in monitor mode
正解:B
質問 6:
What security vulnerabilities may result from a lack of staging, change management, and installation procedures for WLAN infrastructure equipment? (Choose 2)
A. Management interface exploits due to the use of default usernames and passwords for AP management
B. Authentication cracking of 64-bit Hex WPA-Personal PSK
C. WIPS may not classify authorized, rogue, and neighbor APs accurately
D. AES-CCMP encryption keys may be decrypted
E. The WLAN system may be open to RF Denial-of-Service attacks
正解:A,C



0 お客様のコメント