nerdexam
CompTIA

N10-005 · Question #929

A new employee was given the following information to connect to the corporate wireless network for the first time: SSID:CorporateWiFi Encryption:WPA2 Password:SuperSecret! The user enters the…

The correct answer is C. A rogue access point was installed by a company employee. The key clue is that no encryption or password was required in the office - yet the legitimate CorporateWiFi network uses WPA2. This strongly indicates that a rogue (unauthorized) access point broadcasting the same SSID 'CorporateWiFi' was placed in the office area, but without…

Network security

Question

A new employee was given the following information to connect to the corporate wireless network for the first time:

SSID:CorporateWiFi Encryption:WPA2 Password:SuperSecret! The user enters the correct SSID and notices that encryption type or password are not required when configuring the laptop in the office, and the laptop successfully connects to the Internet. When the user brings the laptop to the conference room, a pop-up asks for the CorporateWiFi password. Which of the following is the MOST likely cause of this behavior?

Options

  • AThe laptop wireless network card is incompatible with the conference room WAP.
  • BThe office walls prevent the employee from making a full connection.
  • CA rogue access point was installed by a company employee.
  • DMAC filtering is only enabled in the conference room.

How the community answered

(22 responses)
  • A
    9% (2)
  • B
    5% (1)
  • C
    82% (18)
  • D
    5% (1)

Explanation

The key clue is that no encryption or password was required in the office - yet the legitimate CorporateWiFi network uses WPA2. This strongly indicates that a rogue (unauthorized) access point broadcasting the same SSID 'CorporateWiFi' was placed in the office area, but without any security configured. The laptop silently associated with it. In the conference room, the rogue AP's signal is absent, so the laptop finds only the real corporate AP, which correctly demands WPA2 credentials. This is a classic evil-twin / rogue AP scenario and represents a serious security threat.

Topics

#rogue access point#wireless security#SSID#WPA2

Community Discussion

No community discussion yet for this question.

Full N10-005 Practice