nerdexam
GIAC

GAWN · Question #53

Which is MOST likely to indicate a misconfigured "Enterprise" WLAN that is vulnerable to credential interception?

The correct answer is B. PEAP with MSCHAPv2, no cert validation, and users allowed to accept new cert prompts. You've hit your limit · resets 1pm (America/New_York)

Wireless Network Attacks - Wi-Fi and Bluetooth

Question

Which is MOST likely to indicate a misconfigured "Enterprise" WLAN that is vulnerable to credential interception?

Options

  • AEAP-TLS only, strict cert validation
  • BPEAP with MSCHAPv2, no cert validation, and users allowed to accept new cert prompts
  • CWPA3-SAE only
  • DPMF required

How the community answered

(41 responses)
  • A
    5% (2)
  • B
    78% (32)
  • C
    12% (5)
  • D
    5% (2)

Explanation

You've hit your limit · resets 1pm (America/New_York)

Topics

#PEAP#MSCHAPv2#certificate validation#credential interception

Community Discussion

No community discussion yet for this question.

Full GAWN Practice