nerdexam
CompTIA

N10-005 · Question #896

A SOHO had their wireless network breached on several occasions. The user turned off the SSID and enabled WEP encryption, but breaches are still occurring. Which of the following will improve…

The correct answer is D. Enable WPA2 encryption. WEP encryption is fundamentally broken and can be cracked in minutes regardless of SSID visibility, so upgrading to WPA2 is required to prevent unauthorized access.

Network security

Question

A SOHO had their wireless network breached on several occasions. The user turned off the SSID and enabled WEP encryption, but breaches are still occurring. Which of the following will improve security and MOST likely prevent future breaches?

Options

  • ATurn down the signal strength
  • BReplace the WAP and enable WEP
  • CChange both the SSID and WEP key
  • DEnable WPA2 encryption

How the community answered

(34 responses)
  • A
    9% (3)
  • B
    6% (2)
  • C
    15% (5)
  • D
    71% (24)

Why each option

WEP encryption is fundamentally broken and can be cracked in minutes regardless of SSID visibility, so upgrading to WPA2 is required to prevent unauthorized access.

ATurn down the signal strength

Turning down signal strength reduces the coverage area slightly but does not address the fundamental cryptographic weakness of WEP encryption.

BReplace the WAP and enable WEP

Replacing the WAP but keeping WEP encryption still uses a broken protocol and will not prevent breaches caused by WEP's inherent cryptographic flaws.

CChange both the SSID and WEP key

Changing the SSID and WEP key provides no lasting protection because WEP keys can be recovered by capturing a sufficient number of packets regardless of the key value used.

DEnable WPA2 encryptionCorrect

WPA2 uses AES (Advanced Encryption Standard) with CCMP, which is cryptographically strong and not subject to the RC4 stream cipher vulnerabilities that make WEP trivially crackable. Enabling WPA2 replaces the broken WEP protocol entirely, providing robust encryption that protects the wireless network against the passive traffic analysis attacks used to crack WEP.

Concept tested: WPA2 AES encryption as replacement for broken WEP

Source: https://learn.microsoft.com/en-us/windows/security/operating-system-security/network-security/wifi-security

Topics

#WPA2#wireless security#WEP#SOHO security

Community Discussion

No community discussion yet for this question.

Full N10-005 Practice