HPE7-A01 · Question #62
A customer is looking for a wireless authentication solution for all of their loT devices that meet the following requirements: - The wireless traffic between the IoT devices and the Access Points…
The correct answer is A. MPSK and an internal RADIUS server C. ClearPass Policy Manager. MPSK is a feature that allows device-specific or group-specific passphrases for WPA2 PSK- based deployments. The passphrases are generated by a RADIUS server such as ClearPass Policy Manager and sent to the APs. The wireless traffic between the IoT devices and the APs is…
Question
A customer is looking for a wireless authentication solution for all of their loT devices that meet the following requirements:
- The wireless traffic between the IoT devices and the Access Points
must be encrypted
- Unique passphrase per device
- Use fingerprint information to perform role-based access
Which solutions will address the customer's requirements? (Select two.)
Options
- AMPSK and an internal RADIUS server
- BMPSK Local with MAC Authentication
- CClearPass Policy Manager
- DMPSK Local with EAP-TLS
- ELocal User Derivation Rules
How the community answered
(30 responses)- A77% (23)
- B13% (4)
- D7% (2)
- E3% (1)
Explanation
MPSK is a feature that allows device-specific or group-specific passphrases for WPA2 PSK- based deployments. The passphrases are generated by a RADIUS server such as ClearPass Policy Manager and sent to the APs. The wireless traffic between the IoT devices and the APs is encrypted using the passphrases. The passphrases can also be used to perform role-based access by mapping them to different VLANs and user roles. ClearPass Policy Manager is a network access control solution that can provide device fingerprinting and profiling for IoT devices based on various attributes such as MAC address, DHCP options, HTTP user agents, etc. ClearPass Policy Manager can also integrate with other IoT platforms and services to enhance the visibility and security of IoT devices.
Topics
Community Discussion
No community discussion yet for this question.