nerdexam
GIAC

GSNA · Question #69

Mark works as a Network Administrator for NetTech Inc. The company has a Windows 2003 Active Directory domain-based network. The domain consists of a domain controller, two Windows 2003 member servers

The correct answer is C. Use PEAP. In order to provide the best level of security for the kind of authentication used by the company, Mark will have to use the PEAP protocol. This protocol will provide the strongest password-based authentication for a WEP solution with 802.1x. Implementing 802.1x authentication fo

Network & Perimeter Auditing

Question

Mark works as a Network Administrator for NetTech Inc. The company has a Windows 2003 Active Directory domain-based network. The domain consists of a domain controller, two Windows 2003 member servers, and one hundred client computers. The company employees use laptops with Windows XP Professional. These laptops are equipped with wireless network cards that are used to connect to access points located in the Marketing department of the company. The company employees log on to the domain by using a user name and password combination. The wireless network has been configured with WEP in addition to 802.1x. Mark wants to provide the best level of security for the kind of authentication used by the company. What will Mark do to accomplish the task?

Options

  • AUse IPSec
  • BUse MD5
  • CUse PEAP
  • DUse EAP-TLS

How the community answered

(13 responses)
  • B
    8% (1)
  • C
    77% (10)
  • D
    15% (2)

Explanation

In order to provide the best level of security for the kind of authentication used by the company, Mark will have to use the PEAP protocol. This protocol will provide the strongest password-based authentication for a WEP solution with 802.1x. Implementing 802.1x authentication for wireless security requires using an Extensible Authentication Protocol (EAP)- based method for authentication. There are two EAP-based methods: 1.EAP-Transport Layer Security (EAP-TLS) 2.Protected EAP (PEAP) Answer: A is incorrect. IPSec has nothing to do with this issue.

Topics

#PEAP#EAP-TLS#wireless authentication#WEP weakness

Community Discussion

No community discussion yet for this question.

Full GSNA Practice