H12-311_V3.0 · Question #403
In the WLAN network with the WIDS function enabled, which of the following statements is correct about the anti-illegal device function? (Multiple choice)
The correct answer is A. When the AC determines that the device is a rogue AP, it will notify the monitoring AP of the rogue C. When the AC judges that the device is an illegal user terminal, it monitors that the AP uses the. In Huawei WLAN WIDS architecture, the AC (Access Controller) acts as the central decision-maker, classifying detected devices and then instructing monitoring APs to take countermeasures. A is correct because the proper Huawei term for a harmful unauthorized AP - one that is…
Question
In the WLAN network with the WIDS function enabled, which of the following statements is correct about the anti-illegal device function? (Multiple choice)
Options
- AWhen the AC determines that the device is a rogue AP, it will notify the monitoring AP of the rogue
- BWhen the AC judges that the device is an illegal AP, it will notify the monitoring AP of the illegal
- CWhen the AC judges that the device is an illegal user terminal, it monitors that the AP uses the
- DWhen the AC judges that the device is an illegal user terminal, it monitors that the AP uses the
How the community answered
(42 responses)- A74% (31)
- B7% (3)
- D19% (8)
Explanation
In Huawei WLAN WIDS architecture, the AC (Access Controller) acts as the central decision-maker, classifying detected devices and then instructing monitoring APs to take countermeasures. A is correct because the proper Huawei term for a harmful unauthorized AP - one that is actively malicious or connected to the wired network - is a "rogue AP"; the AC correctly notifies monitoring APs to contain it using deauthentication frames. C is correct because when the AC identifies an illegal user terminal (unauthorized STA/client), it instructs the monitoring AP to send containment frames (typically 802.11 deauthentication) to disconnect that terminal from any AP it is associated with.
B is wrong because it uses "illegal AP" rather than the correct classification term "rogue AP" - Huawei WIDS distinguishes between untrusted, interfering, and rogue APs, and only rogue APs trigger active countermeasures. D is wrong because it describes an incorrect countermeasure mechanism for handling illegal user terminals (the correct action is sending deauthentication frames, not what D describes).
Memory tip: Think of the AC as the "judge" and the monitoring AP as the "enforcer" - the AC always makes the classification call (rogue AP vs. illegal terminal), then delegates the physical countermeasure to the monitoring AP. If the terminology doesn't say "rogue AP," it's likely the wrong answer for AP-related choices.
Topics
Community Discussion
No community discussion yet for this question.