A systems administrator is upgrading a corporate wireless network to enhance security for enterprise workstations connecting to internal domain resources. The administrator needs to ensure individual user authentication, centralized credential management, and protection against legacy wireless vulnerabilities. Which of the following security configurations should the administrator implement? (Select TWO.)
- Deploy WPA3-Enterprise mode using 802.1X authentication backed by a RADIUS serverCevap
- BConfigure WPA2-Personal with a complex 64-character Pre-Shared Key (PSK) shared among all users
- Disable TKIP support and mandate AES-based CCMP or GCMP encryption algorithms across all access pointsCevap
- DEnable Wi-Fi Protected Setup (WPS) using PIN authentication to streamline client device onboarding
Cevap
The administrator should deploy WPA3-Enterprise using 802.1X authentication with a RADIUS server and disable legacy TKIP encryption in favor of AES-based CCMP/GCMP algorithms.
Deploying WPA3-Enterprise with 802.1X authentication connects wireless clients to a centralized RADIUS server, granting unique per-session encryption keys for every user. Additionally, disabling legacy TKIP and enforcing AES-based CCMP or GCMP ciphers ensures the wireless traffic is protected by modern, uncompromised encryption standards.
Adım Adım Çözüm
Anahtar Kavram
Enterprise Wireless Security (802.1X/RADIUS) and Encryption Protocols
Tahmini Süre:1m 30s