nerdexam
CompTIA

SY0-301 · Question #594

Which of the following is a step in deploying a WPA2-Enterprise wireless network?

The correct answer is D. Install a digital certificate on the authentication server. WPA2-Enterprise uses IEEE 802.1X with a RADIUS (Remote Authentication Dial-In User Service) server for centralized authentication. A critical deployment step is installing a digital certificate on the RADIUS/authentication server so that wireless clients can verify the server's…

Security architecture

Question

Which of the following is a step in deploying a WPA2-Enterprise wireless network?

Options

  • AInstall a token on the authentication server
  • BInstall a DHCP server on the authentication server
  • CInstall an encryption key on the authentication server
  • DInstall a digital certificate on the authentication server

How the community answered

(28 responses)
  • A
    4% (1)
  • D
    96% (27)

Explanation

WPA2-Enterprise uses IEEE 802.1X with a RADIUS (Remote Authentication Dial-In User Service) server for centralized authentication. A critical deployment step is installing a digital certificate on the RADIUS/authentication server so that wireless clients can verify the server's identity and establish a secure EAP (Extensible Authentication Protocol) tunnel-preventing rogue server attacks. Without the certificate, EAP-PEAP and EAP-TLS cannot function correctly. Installing a token (A) applies to token-based MFA, not the server setup. A DHCP server (B) handles IP address assignment and is not part of authentication. Installing a generic encryption key (C) is not a standard step; certificates are the correct mechanism.

Topics

#WPA2-Enterprise#digital certificates#wireless security#RADIUS authentication

Community Discussion

No community discussion yet for this question.

Full SY0-301 Practice