HPE7-A01 · Question #33
A company recently deployed new Aruba Access Points at different branch offices Wireless 802.1X authentication will be against a RADIUS server in the cloud. The security team is concerned that the…
The correct answer is D. Configure RadSec on the AP and the RADIUS server. This is the appropriate solution for this scenario where wireless 802.1X authentication will be against a RADIUS server in the cloud and the security team is concerned that the traffic between the AP and the RADIUS server will be exposed. RadSec, also known as RADIUS over TLS…
Question
A company recently deployed new Aruba Access Points at different branch offices Wireless 802.1X authentication will be against a RADIUS server in the cloud. The security team is concerned that the traffic between the AP and the RADIUS server will be exposed.. What is the appropriate solution for this scenario?
Options
- AEnable EAP-TLS on all wireless devices
- BConfigure RadSec on the AP and Aruba Central.
- CEnable EAP-TTLS on all wireless devices.
- DConfigure RadSec on the AP and the RADIUS server
How the community answered
(44 responses)- A16% (7)
- B5% (2)
- C7% (3)
- D73% (32)
Explanation
This is the appropriate solution for this scenario where wireless 802.1X authentication will be against a RADIUS server in the cloud and the security team is concerned that the traffic between the AP and the RADIUS server will be exposed. RadSec, also known as RADIUS over TLS, is a protocol that provides encryption and authentication for RADIUS traffic over TCP and TLS. RadSec can be configured on both the AP and the RADIUS server to establish a secure tunnel for exchanging RADIUS packets. The other options are incorrect because they either do not provide encryption or authentication for RADIUS traffic or do not involve RadSec.
Topics
Community Discussion
No community discussion yet for this question.