A wireless network engineer is reviewing protocol requirements to transition an enterprise Wi-Fi infrastructure from WPA2 to WPA3 across corporate and guest SSIDs. Which TWO statements correctly describe key structural and operational differences between WPA3 and legacy WPA2 standards?
- WPA3-Personal mandates the use of Simultaneous Authentication of Equals (SAE) for initial key exchange to mitigate offline password guessing and dictionary attacks.Cevap
- BWPA3-Enterprise deprecates 802.1X/EAP authentication frameworks, replacing them with centralized RADIUS pre-shared key management.
- Protected Management Frames (PMF / IEEE 802.11w) are strictly mandatory for all native WPA3 connections.Cevap
- DWPA3 uses Temporal Key Integrity Protocol (TKIP) as its primary encryption cipher to maintain backward compatibility with legacy 802.11a/b/g devices.
Cevap
The correct statements are that WPA3-Personal mandates Simultaneous Authentication of Equals (SAE) to protect against offline dictionary attacks, and Protected Management Frames (PMF) are mandatory across all native WPA3 network connections.
WPA3 introduces key improvements over WPA2: Simultaneous Authentication of Equals (SAE) replaces WPA2-Personal's Pre-Shared Key (PSK) 4-way handshake to protect against offline dictionary attacks and provide forward secrecy. Additionally, Protected Management Frames (PMF / IEEE 802.11w) are mandatory across all native WPA3 network connections to secure control and management traffic against spoofing.
Adım Adım Çözüm
Anahtar Kavram
WPA3 Security Enhancements (SAE and Mandatory PMF)