nerdexam
CWNP

CWSP-206 · Question #50

During 802.1X/LEAP authentication, the username is passed across the wireless medium in clear text. From a security perspective, why is this significant?

The correct answer is D. The username is an input to the LEAP challenge/response hash that is exploited, so the username. See the full explanation below for the reasoning.

Question

During 802.1X/LEAP authentication, the username is passed across the wireless medium in clear text. From a security perspective, why is this significant?

Options

  • AThe username can be looked up in a dictionary file that lists common username/password
  • BThe username is needed for Personal Access Credential (PAC) and X.509 certificate validation.
  • C4-Way Handshake nonces are based on the username in WPA and WPA2 authentication.
  • DThe username is an input to the LEAP challenge/response hash that is exploited, so the username

How the community answered

(27 responses)
  • A
    4% (1)
  • B
    4% (1)
  • C
    11% (3)
  • D
    81% (22)

Community Discussion

No community discussion yet for this question.

Full CWSP-206 Practice