nerdexam
Cisco

350-050 · Question #222

You were hired as a wireless consultant to plan and design a secure WLAN on a Cisco Unified Wireless Network, allowing access only by the employees of the company. The requirements are as follows…

The correct answer is B. PEAPv0/EAP-MS-CHAPv2 with WPA2-AES. See the full explanation below for the reasoning.

Question

You were hired as a wireless consultant to plan and design a secure WLAN on a Cisco Unified Wireless Network, allowing access only by the employees of the company. The requirements are as follows:

  • Authenticate employees based on their existing Active Directory user

domain credentials.

  • The username/password credentials need to be protected during the

authentication handshake by using a PKI.

  • Encrypt data traffic using the strongest encryption method defined by

the 802.11i standard.

  • Implement a standard authentication method that is supported by most

wireless clients and RADIUS servers What option meets these requirements?

Options

  • AEAP-TLS with WPA2-AES
  • BPEAPv0/EAP-MS-CHAPv2 with WPA2-AES
  • CEAP-FAST/EAP-MS-CHAPv2 (anonymous PAC provisioning) with WPA2-TKIP
  • DEAP-FAST/EAP-MS-CHAPv2 (anonymous PAC provisioning) with WPA2-AES

How the community answered

(47 responses)
  • A
    2% (1)
  • B
    83% (39)
  • C
    9% (4)
  • D
    6% (3)

Community Discussion

No community discussion yet for this question.

Full 350-050 Practice