A network administrator is designing a wireless infrastructure upgrade to implement WPA3-Enterprise across corporate headquarters. The design must ensure individual user accountability, centralized authentication, and protection against management frame spoofing attacks. Which of the following technical specifications and security mechanisms are required for this deployment? (Select TWO.)
- 802.1X authentication integrated with a RADIUS server for centralized credential validationAnswer
- Mandatory Protected Management Frames (PMF / 802.11w) enabled for all connecting clientsAnswer
- CSimultaneous Authentication of Equals (SAE) protocol for initial key exchange
- DTemporal Key Integrity Protocol (TKIP) dynamic key rotation for legacy client fallback
Answer
The required components for a WPA3-Enterprise implementation are 802.1X authentication integrated with a RADIUS server and mandatory Protected Management Frames (PMF).
WPA3-Enterprise requires 802.1X RADIUS authentication to manage distinct user credentials centrally and mandates Protected Management Frames (PMF) to safeguard network management frames against tampering and disassociation attacks.
Step-by-Step Solution
Key Concept
WPA3-Enterprise Architecture and Baseline Security Requirements