nerdexam
GIAC

GSNA · Question #192

The employees of EWS Inc. require remote access to the company's Web servers. In order to provide solid wireless security, the company uses EAP-TLS as the authentication protocol. Which of the…

The correct answer is B. It uses a public key certificate for server authentication. C. It is supported by all manufacturers of wireless LAN hardware and software. EAP-TLS can use only a public key certificate as the authentication technique. It is supported by all manufacturers of wireless LAN hardware and software. The requirement for a client-side certificate, however unpopular it may be, is what gives EAP-TLS its authentication…

Network & Perimeter Auditing

Question

The employees of EWS Inc. require remote access to the company's Web servers. In order to provide solid wireless security, the company uses EAP-TLS as the authentication protocol. Which of the following statements are true about EAP-TLS?

Options

  • AIt uses password hash for client authentication.
  • BIt uses a public key certificate for server authentication.
  • CIt is supported by all manufacturers of wireless LAN hardware and software.
  • DIt provides a moderate level of security.

How the community answered

(50 responses)
  • A
    18% (9)
  • B
    72% (36)
  • D
    10% (5)

Explanation

EAP-TLS can use only a public key certificate as the authentication technique. It is supported by all manufacturers of wireless LAN hardware and software. The requirement for a client-side certificate, however unpopular it may be, is what gives EAP-TLS its authentication strength and illustrates the classic convenience vs. security trade-off. Answer: D is incorrect. EAP- TLS provides the highest level of security. Answer: A is incorrect. EAP-TLS uses a public key certificate for server authentication.

Topics

#EAP-TLS#wireless security#PKI#certificate authentication

Community Discussion

No community discussion yet for this question.

Full GSNA Practice