Question 1
Multiple choice
ABC Company requires the ability to identify and quickly locate rogue devices. ABC has chosen an overlay WIPS solution with sensors that use dipole antennas to perform this task. Use your knowledge of location tracking techniques to answer the question. In what ways can this 802.11-based WIPS platform determine the location of rogue laptops or APs? (Choose 3)
-
A
Time Difference of Arrival (TDoA)
-
B
-
C
Trilateration of RSSI measurements
-
D
-
E
Reveal answer details
Close answer details
Question 2
Multiple choice
A WLAN is implemented using WPA-Personal and MAC filtering. To what common wireless network attacks is this network potentially vulnerable? (Choose 3)
-
A
Offline dictionary attacks
-
B
-
C
-
D
Reveal answer details
Close answer details
Given: XYZ Hospital plans to improve the security and performance of their Voice over Wi-Fi implementation and will be upgrading to 802.11n phones with 802.1X/EAP authentication. XYZ would like to support fast secure roaming for the phones and will require the ability to troubleshoot reassociations that are delayed or dropped during inter-channel roaming. What portable solution would be recommended for XYZ to troubleshoot roaming problems?
-
A
WIPS sensor software installed on a laptop computer
-
B
Spectrum analyzer software installed on a laptop computer
-
C
An autonomous AP mounted on a mobile cart and configured to operate in monitor mode
-
D
Laptop-based protocol analyzer with multiple 802.11n adapters
Reveal answer details
Close answer details
The following numbered items show some of the contents of each of the four frames exchanged during the 4-way handshake: 1. Encrypted GTK sent 2. Confirmation of temporal key installation 3. Anonce sent from authenticator to supplicant 4. Snonce sent from supplicant to authenticator, MIC included Arrange the frames in the correct sequence beginning with the start of the 4-way handshake.
-
A
-
B
-
C
-
D
Reveal answer details
Close answer details
Given: ABC Company is an Internet Service Provider with thousands of customers. ABC's customers are given login credentials for network access when they become a customer. ABC uses an LDAP server as the central user credential database. ABC is extending their service to existing customers in some public access areas and would like to use their existing database for authentication. How can ABC Company use their existing user database for wireless user authentication as they implement a large-scale WPA2-Enterprise WLAN security solution?
-
A
Import all users from the LDAP server into a RADIUS server with an LDAP-to-RADIUS conversion tool.
-
B
Implement an X.509 compliant Certificate Authority and enable SSL queries on the LDAP server.
-
C
Mirror the LDAP server to a RADIUS database within a WLAN controller and perform daily backups to synchronize the user databases.
-
D
Implement a RADIUS server and query user authentication requests through the LDAP server.
Reveal answer details
Close answer details
Given: You are using a Wireless Aggregator utility to combine multiple packet captures. One capture exists for each of channels 1, 6 and 11. What kind of troubleshooting are you likely performing with such a tool?
-
A
Wireless adapter failure analysis.
-
B
Interference source location.
-
C
Fast secure roaming problems.
-
D
Narrowband DoS attack detection.
Reveal answer details
Close answer details
You have an AP implemented that functions only using 802.11-2012 standard methods for the WLAN communications on the RF side and implementing multiple SSIDs and profiles on the management side configured as follows: 1. SSID: Guest VLAN 90 Security: Open with captive portal authentication 2 current clients 2. SSID: ABCData VLAN 10 Security: PEAPv0/EAP-MSCHAPv2 with AES-CCMP 5 current clients 3. SSID: ABCVoice VLAN 60 Security: WPA2-Personal 2 current clients Two client STAs are connected to ABCData and can access a media server that requires authentication at the Application Layer and is used to stream multicast video streams to the clients. What client stations possess the keys that are necessary to decrypt the multicast data packets carrying these videos?
-
A
Only the members of the executive team that are part of the multicast group configured on the media server
-
B
All clients that are associated to the AP using the ABCData SSID
-
C
All clients that are associated to the AP using any SSID
-
D
All clients that are associated to the AP with a shared GTK, which includes ABCData and ABCVoice.
Reveal answer details
Close answer details
Question 8
Multiple choice
Given: You manage a wireless network that services 200 wireless users. Your facility requires 20 access points, and you have installed an IEEE 802.11-compliant implementation of 802.1X/LEAP with AES-CCMP as an authentication and encryption solution. In this configuration, the wireless network is initially susceptible to what type of attacks? (Choose 2)
-
A
-
B
Offline dictionary attacks
-
C
-
D
Application eavesdropping
-
E
-
F
Reveal answer details
Close answer details
Given: ABC Company secures their network with WPA2-Personal authentication and AES-CCMP encryption. What part of the 802.11 frame is always protected from eavesdroppers by this type of security?
-
A
-
B
-
C
-
D
Reveal answer details
Close answer details
Question 10
Single choice
When using the 802.1X/EAP framework for authentication in 802.11 WLANs, why is the 802.1X Controlled Port still blocked after the 802.1X/EAP framework has completed successfully?
-
A
The 802.1X Controlled Port is always blocked, but the Uncontrolled Port opens after the EAP authentication process completes.
-
B
The 802.1X Controlled Port remains blocked until an IP address is requested and accepted by the Supplicant.
-
C
The 4-Way Handshake must be performed before the 802.1X Controlled Port changes to the unblocked state.
-
D
The 802.1X Controlled Port is blocked until Vender Specific Attributes (VSAs) are exchanged inside a RADIUS packet between the Authenticator and Authentication Server.
Reveal answer details
Close answer details
Question 11
Single choice
What field in the RSN information element (IE) will indicate whether PSK-or Enterprise-based WPA or WPA2 is in use?
-
A
-
B
-
C
-
D
Pairwise Cipher Suite List
Reveal answer details
Close answer details
Question 12
Single choice
A single AP is configured with three separate WLAN profiles, as follows: 1. SSID: ABCData BSSID: 00:11:22:00:1F:C3 VLAN 10 Security: PEAPv0/EAP- MSCHAPv2 with AES- CCMP 3 current clients 2. SSID: ABCVoice BSSID: 00:11:22:00:1F:C4 VLAN 60 Security: WPA2-Personal with AES-CCMP 2 current clients 3. SSID: Guest BSSID: 00:11:22:00:1F:C5 VLAN 90 Security: Open with captive portal authentication 3 current clients Three STAs are connected to ABCData. Three STAs are connected to Guest. Two STAs are connected to ABCVoice. How many unique GTKs and PTKs are currently in place in this scenario?
-
A
-
B
-
C
-
D
Reveal answer details
Close answer details
Question 13
Single choice
What 802.11 WLAN security problem is directly addressed by mutual authentication?
-
A
Wireless hijacking attacks
-
B
-
C
-
D
-
E
Offline dictionary attacks
-
F
Weak Initialization Vectors
Reveal answer details
Close answer details
Question 14
Single choice
Given: You have implemented strong authentication and encryption mechanisms for your enterprise 802.11 WLAN using 802.1X/EAP with AES-CCMP. For users connecting within the headquarters office, what other security solution will provide continuous monitoring of both clients and APs with 802.11-specific tracking?
-
A
IPSec VPN client and server software
-
B
Internet firewall software
-
C
Wireless intrusion prevention system
-
D
WLAN endpoint agent software
-
E
Reveal answer details
Close answer details
Question 15
Single choice
Given: You are using WEP as an encryption solution. You are using VLANs for network segregation. Why can you not establish an RSNA?
-
A
RSNA connections require TKIP or CCMP.
-
B
RSNA connections require BIP and do not support TKIP, CCMP or WEP.
-
C
RSNA connections require CCMP and do not support TKIP or WEP.
-
D
RSNA connections do not work in conjunction with VLANs.
Reveal answer details
Close answer details
Question 16
Single choice
Joe's new laptop is experiencing difficulty connecting to ABC Company's 802.11 WLAN using 802.1X/EAP PEAPv0. The company's wireless network administrator assured Joe that his laptop was authorized in the WIPS management console for connectivity to ABC's network before it was given to him. The WIPS termination policy includes alarms for rogue stations, roque APs, DoS attacks and unauthorized roaming. What is a likely reason that Joe cannot connect to the network?
-
A
Joe disabled his laptop's integrated 802.11 radio and is using a personal PC card radio with a different chipset, drivers, and client utilities.
-
B
Joe's integrated 802.11 radio is sending multiple Probe Request frames on each channel.
-
C
An ASLEAP attack has been detected on APs to which Joe's laptop was trying to associate. The WIPS responded by disabling the APs.
-
D
Joe configured his 802.11 radio card to transmit at 100 mW to increase his SNR. The WIPS is detecting this much output power as a DoS attack.
Reveal answer details
Close answer details
Question 17
Single choice
What policy would help mitigate the impact of peer-to-peer attacks against wireless-enabled corporate laptop computers when the laptops are also used on public access networks such as wireless hot-spots?
-
A
Require Port Address Translation (PAT) on each laptop.
-
B
Require secure applications such as POP, HTTP, and SSH.
-
C
Require VPN software for connectivity to the corporate network.
-
D
Require WPA2-Enterprise as the minimal WLAN security solution.
Reveal answer details
Close answer details
Question 18
Single choice
Given: In XYZ's small business, two autonomous 802.11ac APs and 12 client devices are in use with WPA2-Personal. What statement about the WLAN security of this company is true?
-
A
Intruders may obtain the passphrase with an offline dictionary attack and gain network access, but will be unable to decrypt the data traffic of other users.
-
B
A successful attack against all unicast traffic on the network would require a weak passphrase dictionary attack and the capture of the latest 4-Way Handshake for each client.
-
C
An unauthorized wireless client device cannot associate, but can eavesdrop on some data because WPA2-Personal does not encrypt multicast or broadcast traffic.
-
D
An unauthorized WLAN user with a protocol analyzer can decode data frames of authorized users if he captures the BSSID, client MAC address, and a user's 4-Way Handshake.
-
E
Because WPA2-Personal uses Open System authentication followed by a 4-Way Handshake, hijacking attacks are easily performed.
Reveal answer details
Close answer details
|