nerdexam
Cisco

200-301 · Question #1699

Refer to the exhibit. An engineer must document all Wi-Fi services on a new wireless LAN controller. The Wi-Fi SSID "Office_WLan" has Layer 2 Security. What is determined by this configuration?

The correct answer is C. There is an extra layer of security that ensures only authorized devices with known MAC. The exhibit shows the configuration of a Wi-Fi SSID with Layer 2 Security. This security mechanism involves key features such as WPA2/WPA3, encryption ciphers, and optional MAC Key Elements in the Configuration: WPA2 + WPA3 Security: - Both WPA2 and WPA3 protocols are enabled, en

Submitted by yasin.bd· Mar 5, 2026Security Fundamentals

Question

Refer to the exhibit. An engineer must document all Wi-Fi services on a new wireless LAN controller. The Wi-Fi SSID "Office_WLan” has Layer 2 Security. What is determined by this configuration?

Exhibits

200-301 question #1699 exhibit 1
200-301 question #1699 exhibit 2

Options

  • AThere is Galois cache algorithm configured that provides strong encryption and authentication.
  • BThere is a strong mutual authentication used between NAC and the network devices using x.509
  • CThere is an extra layer of security that ensures only authorized devices with known MAC
  • DThere is a robust security mechanism configured to protect against various Layer 2 and Layer 3

How the community answered

(25 responses)
  • A
    8% (2)
  • C
    88% (22)
  • D
    4% (1)

Explanation

The exhibit shows the configuration of a Wi-Fi SSID with Layer 2 Security. This security mechanism involves key features such as WPA2/WPA3, encryption ciphers, and optional MAC Key Elements in the Configuration: WPA2 + WPA3 Security: - Both WPA2 and WPA3 protocols are enabled, ensuring strong encryption and authentication. WPA3 provides enhanced security compared to WPA2, using stronger encryption methods like - The configuration includes MAC filtering, which adds an extra layer of security by restricting network access to devices with authorized MAC addresses. Encryption Cipher: - The configuration uses GCMP256, a robust encryption method that provides stronger data integrity and confidentiality than older ciphers. Protected Management Frames (PMF): - PMF is set to Optional, adding protection against management frame attacks like deauthentication and disassociation attacks.

Topics

#WLAN security#MAC address filtering#Layer 2 security

Community Discussion

No community discussion yet for this question.

Full 200-301 Practice