A network engineer is configuring a high-security wireless LAN on a Cisco Wireless LAN Controller (WLC) that must strictly comply with WPA3-Enterprise 192-bit mode requirements. Which cryptographic suite and management security setting must be enabled on the WLC profile to meet this standard?
- GCMP-256 encryption, EAP-TLS authentication with SHA-384, and mandatory Protected Management Frames (PMF)Cevap
- BCCMP-128 encryption, Simultaneous Authentication of Equals (SAE), and optional Protected Management Frames (PMF)
- CTKIP encryption, 802.1X with PEAP-MSCHAPv2 authentication, and disabled Protected Management Frames (PMF)
- DGCMP-128 encryption, Pre-Shared Key (PSK) authentication, and mandatory Protected Management Frames (PMF)
Cevap
GCMP-256 encryption, EAP-TLS authentication with SHA-384, and mandatory Protected Management Frames (PMF)
WPA3-Enterprise 192-bit mode mandates the 256-bit Galois/Counter Mode Protocol (GCMP-256) for wireless frame encryption, EAP-TLS with HMAC-SHA384 for robust key derivation and authentication, and mandatory Protected Management Frames (PMF / IEEE 802.11w) to prevent unicast/multicast management frame spoofing.
Adım Adım Çözüm
Anahtar Kavram
WPA3-Enterprise 192-bit Mode Requirements