220-802 · Question #896
For added security, a network administrator has decided to lock down the wireless network. Which of the following are ways to accomplish this? (Select TWO).
The correct answer is B. Disable the SSID from broadcasting E. Change the default admin password. Disabling SSID broadcast and changing the default admin password are two practical steps to harden a wireless network without disabling it.
Question
For added security, a network administrator has decided to lock down the wireless network. Which of the following are ways to accomplish this? (Select TWO).
Options
- ADisable all 802.11 traffic
- BDisable the SSID from broadcasting
- CDisable WPA
- DEnable Bluetooth only communication
- EChange the default admin password
- FDisable WEP
How the community answered
(49 responses)- A2% (1)
- B76% (37)
- C6% (3)
- D12% (6)
- F4% (2)
Why each option
Disabling SSID broadcast and changing the default admin password are two practical steps to harden a wireless network without disabling it.
Disabling all 802.11 traffic would completely shut down the wireless network, not merely lock it down.
Disabling SSID broadcasting prevents the network name from appearing in wireless scans, reducing visibility to casual attackers.
Disabling WPA removes a strong encryption protocol, which would decrease security rather than increase it.
Bluetooth-only communication is not a feature of standard wireless routers and does not apply to Wi-Fi security hardening.
Changing the default admin password closes one of the most exploited vulnerabilities - default credentials are publicly known and are the first thing attackers try when accessing a router.
Disabling WEP without a replacement would eliminate even the weakest encryption layer, reducing security.
Concept tested: Wireless network security hardening techniques
Source: https://www.cisa.gov/news-events/news/securing-wireless-networks
Topics
Community Discussion
No community discussion yet for this question.