nerdexam
CompTIA

SY0-301 · Question #675

While setting up a secure wireless corporate network, which of the following should Pete, an administrator, avoid implementing?

The correct answer is C. WEP. WEP (Wired Equivalent Privacy) is a critically flawed and deprecated wireless security protocol that should never be implemented on a corporate network.

Security architecture

Question

While setting up a secure wireless corporate network, which of the following should Pete, an administrator, avoid implementing?

Options

  • AEAP-TLS
  • BPEAP
  • CWEP
  • DWPA

How the community answered

(28 responses)
  • B
    7% (2)
  • C
    89% (25)
  • D
    4% (1)

Why each option

WEP (Wired Equivalent Privacy) is a critically flawed and deprecated wireless security protocol that should never be implemented on a corporate network.

AEAP-TLS

EAP-TLS is a strong certificate-based authentication method widely recommended for enterprise wireless deployments.

BPEAP

PEAP (Protected EAP) tunnels EAP inside a TLS session and is a secure, widely accepted enterprise wireless authentication method.

CWEPCorrect

WEP uses RC4 with static, easily crackable keys and has well-documented vulnerabilities including weak IV (Initialization Vector) reuse, making it possible to crack WEP encryption within minutes using freely available tools. Any modern corporate wireless deployment must use WPA2 or WPA3 instead.

DWPA

WPA (Wi-Fi Protected Access) introduced TKIP and improved on WEP significantly; while WPA2/WPA3 are preferred, WPA is not inherently dangerous to implement.

Concept tested: Deprecated and insecure wireless security protocols

Source: https://www.cisa.gov/sites/default/files/publications/Securing_Wireless_Networks_508.pdf

Topics

#WEP#wireless security#encryption protocols

Community Discussion

No community discussion yet for this question.

Full SY0-301 Practice