nerdexam
CompTIA

SY0-501 · Question #560

A systems administrator wants to provide balance between the security of a wireless network and usability. The administrator is concerned with wireless encryption compatibility of older devices used…

The correct answer is B. WPA using a preshared key. This question tests knowledge of wireless security protocols and their balance between encryption strength and device compatibility. WPA with PSK provides stronger security than WEP while maintaining broad compatibility with older hardware.

Submitted by jian89· Mar 4, 2026Security architecture

Question

A systems administrator wants to provide balance between the security of a wireless network and usability. The administrator is concerned with wireless encryption compatibility of older devices used by some employees. Which of the following would provide strong security and backward compatibility when accessing the wireless network?

Options

  • AOpen wireless network and SSL VPN
  • BWPA using a preshared key
  • CWPA2 using a RADIUS back-end for 802.1x authentication
  • DWEP with a 40-bit key

How the community answered

(26 responses)
  • A
    4% (1)
  • B
    73% (19)
  • C
    8% (2)
  • D
    15% (4)

Why each option

This question tests knowledge of wireless security protocols and their balance between encryption strength and device compatibility. WPA with PSK provides stronger security than WEP while maintaining broad compatibility with older hardware.

AOpen wireless network and SSL VPN

An open wireless network provides zero encryption, and while SSL VPN adds application-layer security, it does not protect the wireless transmission itself and introduces significant usability friction for all users.

BWPA using a preshared keyCorrect

WPA (Wi-Fi Protected Access) with a preshared key uses TKIP encryption, which is significantly stronger than WEP while being backward compatible with older wireless devices that may not support WPA2. TKIP was specifically designed as a transitional protocol to improve security on legacy hardware without requiring full hardware replacement. This makes it the best balance between usability for older devices and providing meaningful wireless encryption security.

CWPA2 using a RADIUS back-end for 802.1x authentication

WPA2 with 802.1x/RADIUS provides the strongest security but requires a RADIUS infrastructure and uses AES/CCMP encryption that older legacy devices may not support, failing the backward compatibility requirement.

DWEP with a 40-bit key

WEP with a 40-bit key is cryptographically broken and can be cracked in minutes using readily available tools, providing negligible security and making it an unacceptable choice despite its compatibility with older devices.

Concept tested: Wireless security protocol selection for legacy compatibility

Source: https://learn.microsoft.com/en-us/windows/security/operating-system-security/network-security/wifi-security

Topics

#WPA#wireless security#preshared key#backward compatibility

Community Discussion

No community discussion yet for this question.

Full SY0-501 Practice