nerdexam
CompTIA

SY0-301 · Question #566

A computer supply company is located in a building with three wireless networks. The system security team implemented a quarterly security scan and saw the following. Which of the following is this…

The correct answer is A. Rouge access point. The company has three known wireless networks but the scan reveals four SSIDs, with 'Computer AreUs4' being an unauthorized access point not belonging to the organization. This is a classic rogue access point scenario where an unauthorized AP appears on the network.

Threats, vulnerabilities, and mitigations

Question

A computer supply company is located in a building with three wireless networks. The system security team implemented a quarterly security scan and saw the following. Which of the following is this an example of? SSID State Channel Level Computer AreUs1 connected 1 70dbm Computer AreUs2 connected 5 80dbm Computer AreUs3 connected 3 75dbm Computer AreUs4 connected 6 95dbm

Options

  • ARouge access point
  • BNear field communication
  • CJamming
  • DPacket sniffing

How the community answered

(54 responses)
  • A
    76% (41)
  • B
    6% (3)
  • C
    15% (8)
  • D
    4% (2)

Why each option

The company has three known wireless networks but the scan reveals four SSIDs, with 'Computer AreUs4' being an unauthorized access point not belonging to the organization. This is a classic rogue access point scenario where an unauthorized AP appears on the network.

ARouge access pointCorrect

A rogue access point is an unauthorized wireless access point that has been installed or connected to a network without the administrator's knowledge. The scan reveals four SSIDs when only three are authorized, meaning 'Computer AreUs4' is operating in the same building and could be used to intercept traffic or provide unauthorized network access. This is identified by comparing the known authorized SSIDs against those discovered during the wireless scan.

BNear field communication

Near field communication (NFC) operates at very short range (a few centimeters) and would not appear as a Wi-Fi SSID in a wireless network scan.

CJamming

Jamming involves deliberately interfering with wireless signals to disrupt communication, not creating an additional SSID on a wireless scan.

DPacket sniffing

Packet sniffing is a passive technique for capturing network traffic and would not result in an additional SSID appearing in a wireless scan.

Concept tested: Rogue access point detection via wireless scanning

Source: https://www.cisco.com/c/en/us/support/docs/wireless/aironet-1200-series/100063-rogue-ap-detect.html

Topics

#rogue access point#wireless security#SSID#network scanning

Community Discussion

No community discussion yet for this question.

Full SY0-301 Practice