A network technician is configuring a SOHO wireless router for a small law firm. The firm wants to upgrade its wireless security to protect against offline password dictionary attacks and packet eavesdropping, but lacks the infrastructure to deploy a RADIUS server for central authentication. Which of the following wireless security standards should the technician implement?
- WPA3-PersonalCevap
- BWPA2-Personal
- CWPA2-Enterprise
- DWPA-TKIP
Cevap
WPA3-Personal should be implemented because it utilizes Simultaneous Authentication of Equals (SAE) to protect against offline dictionary attacks while operating in pre-shared key mode without requiring a RADIUS server.
WPA3-Personal introduces Simultaneous Authentication of Equals (SAE) to replace the Pre-Shared Key (PSK) mechanism. SAE ensures forward secrecy and prevents offline dictionary attacks against captured handshake frames, fulfilling the firm's security goals without requiring an 802.1X/RADIUS server deployment.
Adım Adım Çözüm
Anahtar Kavram
WPA3-Personal authentication mechanisms and Simultaneous Authentication of Equals (SAE)