nerdexam
Juniper

JN0-253 · Question #6

Your organization currently uses Access Assurance for 802.1X authentication of wireless users using user certificates. All users are currently placed in the same VLAN after authentication. There are…

The correct answer is C. Configure user authentication using EAP-TLS and assign WxLAN roles based on AD user group. EAP-TLS provides secure certificate-based user authentication. By assigning WxLAN roles based on Active Directory user groups, Access Assurance can dynamically place users into different VLANs according to their role, improving network security and segmentation compared to…

Wireless LAN (WLAN) Configuration

Question

Your organization currently uses Access Assurance for 802.1X authentication of wireless users using user certificates. All users are currently placed in the same VLAN after authentication. There are multiple VLANs at your sites. In this scenario, how would you configure Access Assurance to make the network more secure?

Options

  • AConfigure host (machine) authentication using EAP-TLS and assign WxLAN roles based on AD
  • BConfigure MAC Authentication Bypass (MAB) and assign WxLAN roles based on groups of MAC
  • CConfigure user authentication using EAP-TLS and assign WxLAN roles based on AD user group.
  • DConfigure user authentication using EAP-TTLS and assign WxLAN roles based on AD user

How the community answered

(20 responses)
  • A
    15% (3)
  • B
    5% (1)
  • C
    70% (14)
  • D
    10% (2)

Explanation

EAP-TLS provides secure certificate-based user authentication. By assigning WxLAN roles based on Active Directory user groups, Access Assurance can dynamically place users into different VLANs according to their role, improving network security and segmentation compared to placing all users in the same VLAN.

Topics

#Access Assurance#EAP-TLS#WxLAN roles#AD group-based VLAN

Community Discussion

No community discussion yet for this question.

Full JN0-253 Practice