CWSP-205 Exam Details

  • Exam Code
    :CWSP-205
  • Exam Name
    :Certified Wireless Security Professional
  • Certification
    :CWNP Certifications
  • Vendor
    :CWNP
  • Total Questions
    :119 Q&As
  • Last Updated
    :May 31, 2026

CWNP CWSP-205 Online Questions & Answers

  • Question 71:

    Given: You have implemented strong authentication and encryption mechanisms for your enterprise 802.11 WLAN using 802.1X/EAP with AES-CCMP.

    For users connecting within the headquarters office, what other security solution will provide continuous monitoring of both clients and APs with 802.11-specific tracking?

    A. IPSec VPN client and server software
    B. Internet firewall software
    C. Wireless intrusion prevention system
    D. WLAN endpoint agent software
    E. RADIUS proxy server

  • Question 72:

    You are using a utility that takes input and generates random output. For example, you can provide the input of a known word as a secret word and then also provide another known word as salt input. When you process the input it generates a secret code which is a combination of letters and numbers with case sensitivity. For what is the described utility used? (Choose 3)

    A. Generating passwords for WLAN infrastructure equipment logins
    B. Generating PMKs that can be imported into 802.11 RSN-compatible devices
    C. Generating secret keys for RADIUS servers and WLAN infrastructure devices
    D. Generating passphrases for WLAN systems secured with WPA2-Personal
    E. Generating dynamic session keys used for IPSec VPNs

  • Question 73:

    What wireless authentication technologies may build a TLS tunnel between the supplicant and the authentication server before passing client authentication credentials to the authentication server? (Choose 3)

    A. EAP-MD5
    B. EAP-TLS
    C. LEAP
    D. PEAPv0/MSCHAPv2
    E. EAP-TTLS

  • Question 74:

    What are the three roles of the 802.1X framework, as defined by the 802.1X standard, that are performed by the client STA, the AP (or WLAN controller), and the RADIUS server? (Choose 3)

    A. Enrollee
    B. Registrar
    C. AAA Server
    D. Authentication Server
    E. Supplicant
    F. Authenticator
    G. Control Point

  • Question 75:

    Given: XYZ Company has recently installed an 802.11ac WLAN. The company needs the ability to control access to network services, such as file shares, intranet web servers, and Internet access based on an employee's job responsibilities. What WLAN security solution meets this requirement?

    A. An autonomous AP system with MAC filters
    B. WPA2-Personal with support for LDAP queries
    C. A VPN server with multiple DHCP scopes
    D. A WLAN controller with RBAC features
    E. A WLAN router with wireless VLAN support

  • Question 76:

    Given: Mary has just finished troubleshooting an 802.11g network performance problem using a laptop- based WLAN protocol analyzer. The wireless network implements 802.1X/PEAP and the client devices are authenticating properly. When Mary disables the WLAN protocol analyzer, configures her laptop for PEAP authentication, and then tries to connect to the wireless network, she is unsuccessful. Before using the WLAN protocol analyzer, Mary's laptop connected to the network without any problems.

    What statement indicates why Mary cannot access the network from her laptop computer?

    A. The nearby WIPS sensor categorized Mary's protocol analyzer adapter as a threat and is performing a deauthentication flood against her computer.
    B. The PEAP client's certificate was voided when the protocol analysis software assumed control of the wireless adapter.
    C. The protocol analyzer's network interface card (NIC) drivers are still loaded and do not support the version of PEAP being used.
    D. Mary's supplicant software is using PEAPv0/EAP-MSCHAPv2, and the access point is using PEAPv1/ EAP-GTC.

  • Question 77:

    What software and hardware tools are used together to hijack a wireless station from the authorized wireless network onto an unauthorized wireless network? (Choose 2)

    A. RF jamming device and a wireless radio card
    B. A low-gain patch antenna and terminal emulation software
    C. A wireless workgroup bridge and a protocol analyzer
    D. DHCP server software and access point software
    E. MAC spoofing software and MAC DoS software

  • Question 78:

    What statement is true regarding the nonces (ANonce and SNonce) used in the IEEE 802.11 4 Way Handshake?

    A. Both nonces are used by the Supplicant and Authenticator in the derivation of a single PTK.
    B. The Supplicant uses the SNonce to derive its unique PTK and the Authenticator uses the ANonce to derive its unique PTK, but the nonces are not shared.
    C. Nonces are sent in EAPoL frames to indicate to the receiver that the sending station has installed and validated the encryption keys.
    D. The nonces are created by combining the MAC addresses of the Supplicant, Authenticator, and Authentication Server into a mixing algorithm.

  • Question 79:

    While performing a manual scan of your environment using a spectrum analyzer on a laptop computer, you notice a signal in the real time FFT view. The signal is characterized by having peak power centered on channel 11 with an

    approximate width of 20 MHz at its peak. The signal widens to approximately 40 MHz after it has weakened by about 30 dB.

    What kind of signal is displayed in the spectrum analyzer?

    A. A frequency hopping device is being used as a signal jammer in 5 GHz
    B. A low-power wideband RF attack is in progress in 2.4 GHz, causing significant 802.11 interference
    C. An 802.11g AP operating normally in 2.4 GHz
    D. An 802.11a AP operating normally in 5 GHz

  • Question 80:

    You have been recently hired as the wireless network administrator for an organization spread across seven locations. They have deployed more than 100 APs, but they have not been managed in either an automated or manual process for more than 18 months. Given this length of time, what is one of the first things you should evaluate from a security perspective?

    A. The channel widths configured
    B. The channels in use
    C. The VLANs in use
    D. The firmware revision

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CWNP exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your CWSP-205 exam preparations and CWNP certification application, do not hesitate to visit our Vcedump.com to find your solutions here.