220-1002 · Question #802
A technician is setting up a new corporate wireless network. One of the requirements for the network is that connections must only be allowed for current domain accounts without giving users a…
The correct answer is B. RADUIS. RADIUS provides 802.1X authentication for wireless networks, allowing users to authenticate using existing domain credentials without a shared wireless key.
Question
A technician is setting up a new corporate wireless network. One of the requirements for the network is that connections must only be allowed for current domain accounts without giving users a wireless key. Which of the following should the technician use?
Options
- AMAC filtering
- BRADUIS
- CMFA
- DWPA2
How the community answered
(54 responses)- A4% (2)
- B72% (39)
- C9% (5)
- D15% (8)
Why each option
RADIUS provides 802.1X authentication for wireless networks, allowing users to authenticate using existing domain credentials without a shared wireless key.
MAC filtering restricts access by hardware address, not by domain account credentials, and does not authenticate users against a directory service.
RADIUS (Remote Authentication Dial-In User Service) integrates with Active Directory via 802.1X/EAP to authenticate wireless clients using domain usernames and passwords. This eliminates the need for a pre-shared key (PSK) and restricts access strictly to valid domain accounts, satisfying both requirements in the scenario.
MFA adds an additional authentication factor but is not a wireless authentication protocol and does not replace the need for a key or RADIUS infrastructure.
WPA2 alone in Personal mode uses a pre-shared key, which contradicts the requirement of not giving users a wireless key; domain account authentication requires WPA2-Enterprise with RADIUS.
Concept tested: RADIUS 802.1X wireless domain authentication
Source: https://learn.microsoft.com/en-us/windows-server/networking/technologies/nps/nps-top
Topics
Community Discussion
No community discussion yet for this question.