A network administrator is deploying a new wireless network for corporate laptops at a financial services firm. Corporate policy requires that every employee authenticate individually using their corporate domain credentials and that the network use the highest available encryption standard without relying on a shared passphrase. Which TWO of the following configurations should the administrator implement?
- WPA3-Enterprise security modeAnswer
- 802.1X authentication backed by a RADIUS serverAnswer
- CWPA3-Personal mode with Simultaneous Authentication of Equals (SAE)
- DWPA2-Personal mode with TKIP encryption
Answer
WPA3-Enterprise security mode and 802.1X authentication backed by a RADIUS server
Selecting WPA3-Enterprise security mode alongside 802.1X authentication backed by a RADIUS server fulfills all corporate requirements. WPA3-Enterprise provides modern enterprise-class encryption, while 802.1X with RADIUS passes authentication requests to centralized identity stores like Active Directory so each user logs in with unique individual credentials.
Step-by-Step Solution
Key Concept
WPA3-Enterprise and 802.1X/RADIUS authentication for corporate wireless networks