nerdexam
EC-Council

212-82 · Question #161

Hotel Grande offers luxury accommodations and emphasizes top-notch service for its guests. One such service is secure, high-speed Wi-FI access In every room. The hotel wishes to deploy an…

The correct answer is C. EAP-TLS (Extensible Authentication Protocol-Transport Layer Security). EAP-TLS is the ideal choice because it provides enterprise-grade, certificate-based mutual authentication, meaning both the server and the client verify each other's identity. This creates a seamless yet highly secure experience for individual guests, as each user gets unique…

Submitted by parkjh· Mar 6, 2026Cloud Security Architecture

Question

Hotel Grande offers luxury accommodations and emphasizes top-notch service for its guests. One such service is secure, high-speed Wi-FI access In every room. The hotel wishes to deploy an authentication method that would give individual guests a seamless experience without compromising security. This method should ideally provide a balance between convenience and strong security. Which of the following should Hotel Grande use?

Options

  • APSK (Pre-Shared Key)
  • BOpen Authentication
  • CEAP-TLS (Extensible Authentication Protocol-Transport Layer Security)
  • DMAC address filtering

How the community answered

(20 responses)
  • A
    5% (1)
  • B
    15% (3)
  • C
    75% (15)
  • D
    5% (1)

Explanation

EAP-TLS is the ideal choice because it provides enterprise-grade, certificate-based mutual authentication, meaning both the server and the client verify each other's identity. This creates a seamless yet highly secure experience for individual guests, as each user gets unique credentials rather than sharing a common password - perfectly balancing convenience and strong security for a luxury hotel environment.

Why the distractors are wrong:

  • A (PSK): Pre-Shared Key uses a single password shared among all users, which is convenient but lacks individual accountability and is easy to compromise if the key leaks.
  • B (Open Authentication): Requires no credentials at all, making it extremely convenient but completely insecure - unacceptable for a luxury hotel promising security.
  • D (MAC Address Filtering): Only checks a device's hardware address, which can be easily spoofed, and is administratively burdensome - neither truly secure nor seamless.

Memory Tip: Think of EAP-TLS as a digital VIP keycard - just like a luxury hotel gives each guest their own room key rather than a master key shared by everyone, EAP-TLS gives each user their own certificate for secure, personalized access. When you see "individual + secure + seamless," think EAP-TLS.

Topics

#Wi-Fi Authentication#Network Security#EAP-TLS#Identity and Access Management

Community Discussion

No community discussion yet for this question.

Full 212-82 Practice