nerdexam
CompTIA

N10-005 · Question #659

Jeff, a customer, has a wireless network and has reported that the network traffic from the wireless access points seems high compared to the limited number of wireless devices used. Jeff believes…

The correct answer is A. WPA encryption C. MAC filtering. WPA encryption and MAC address filtering are the two controls that directly restrict which devices can authenticate and connect to a wireless network.

Network security

Question

Jeff, a customer, has a wireless network and has reported that the network traffic from the wireless access points seems high compared to the limited number of wireless devices used. Jeff believes that other non-employees are using the wireless network to access the Internet. Which of the following could be used to limit the access to the wireless network? (Select TWO).

Options

  • AWPA encryption
  • BChanging wireless channels
  • CMAC filtering
  • DChanging wireless speed standards
  • ESSID disable

How the community answered

(27 responses)
  • A
    93% (25)
  • B
    4% (1)
  • D
    4% (1)

Why each option

WPA encryption and MAC address filtering are the two controls that directly restrict which devices can authenticate and connect to a wireless network.

AWPA encryptionCorrect

WPA encryption requires clients to possess the correct pre-shared key or credentials before the AP will allow network access, preventing unauthorized users from successfully authenticating even if they can see the SSID.

BChanging wireless channels

Changing wireless channels affects interference and performance but does not restrict which users can connect to the network.

CMAC filteringCorrect

MAC filtering creates an explicit allowlist of hardware addresses on the AP, so only devices whose MAC addresses are pre-approved can associate with the network, blocking unknown devices regardless of whether they know the passphrase.

DChanging wireless speed standards

Changing wireless speed standards (e.g., switching from 802.11n to 802.11g) alters performance characteristics but places no access restriction on unauthorized users.

ESSID disable

Disabling (hiding) the SSID provides only security through obscurity - the network is still visible to a wireless scanner and does not prevent an unauthorized user from connecting if they know the network name.

Concept tested: Wireless network access control methods

Source: https://learn.microsoft.com/en-us/windows/security/operating-system-security/network-security/wifi-security

Topics

#WPA encryption#MAC filtering#wireless security#unauthorized access prevention

Community Discussion

No community discussion yet for this question.

Full N10-005 Practice