SY0-301 · Question #675
While setting up a secure wireless corporate network, which of the following should Pete, an administrator, avoid implementing?
The correct answer is C. WEP. WEP (Wired Equivalent Privacy) is a critically flawed and deprecated wireless security protocol that should never be implemented on a corporate network.
Question
While setting up a secure wireless corporate network, which of the following should Pete, an administrator, avoid implementing?
Options
- AEAP-TLS
- BPEAP
- CWEP
- DWPA
How the community answered
(28 responses)- B7% (2)
- C89% (25)
- D4% (1)
Why each option
WEP (Wired Equivalent Privacy) is a critically flawed and deprecated wireless security protocol that should never be implemented on a corporate network.
EAP-TLS is a strong certificate-based authentication method widely recommended for enterprise wireless deployments.
PEAP (Protected EAP) tunnels EAP inside a TLS session and is a secure, widely accepted enterprise wireless authentication method.
WEP uses RC4 with static, easily crackable keys and has well-documented vulnerabilities including weak IV (Initialization Vector) reuse, making it possible to crack WEP encryption within minutes using freely available tools. Any modern corporate wireless deployment must use WPA2 or WPA3 instead.
WPA (Wi-Fi Protected Access) introduced TKIP and improved on WEP significantly; while WPA2/WPA3 are preferred, WPA is not inherently dangerous to implement.
Concept tested: Deprecated and insecure wireless security protocols
Source: https://www.cisa.gov/sites/default/files/publications/Securing_Wireless_Networks_508.pdf
Topics
Community Discussion
No community discussion yet for this question.