A company needs to implement stronger authentication by addi - CompTIA-N10-009

Question

A company needs to implement stronger authentication by adding an authentication factor to its wireless system. The wireless system only supports WPA (Wi-Fi Protected Access) with pre-shared keys, but the backend authentication system supports EAP (Extensible Authentication Protocol) and TTLS (Tunneled Transport Layer Security).

What should the network administrator implement?

Answers
  1. correct
Explanation

Correct Answer: D. 802.1x using EAP (Extensible Authentication Protocol) with MSCHAPv2 (Microsoft Challenge Handshake Authentication Protocol version 2)

  • 802.1x with EAP and MSCHAPv2 enables enterprise-grade wireless authentication by requiring users to authenticate using credentials (e.g., username and password) instead of relying solely on a pre-shared key (PSK).
  • EAP (Extensible Authentication Protocol) provides flexibility for various authentication methods, and MSCHAPv2 is commonly used for secure password-based authentication within EAP.
  • This solution integrates with the backend authentication system that supports EAP and TTLS, allowing for stronger authentication mechanisms than the existing WPA with PSK setup.

Why the other options are incorrect:

  • WPA2 with a complex shared key:

    • While WPA2 improves upon WPA by adding AES encryption, using a complex shared key does not introduce an additional authentication factor. It still relies on a single pre-shared key (PSK), which does not meet the requirement for stronger, user-based authentication.
  • MAC address filtering with IP filter:

    • MAC address filtering adds a layer of control but does not provide strong authentication because MAC addresses can easily be spoofed. IP filtering is unrelated to user authentication and only restricts traffic by IP addresses.
  • PKI (Pre-Shared Key) with user authentication:

    • The term PKI refers to a Public Key Infrastructure, which is unrelated to pre-shared keys. This option is ambiguous and does not directly relate to the scenario's need for EAP or TTLS-based user authentication.

No Payment Cards Needed

Related Courses

Discover a range of courses designed to provide you with the knowledge and skills needed to excel in your chosen field.

a prepsaret exam featured image
CompTIA Prep

220-1201 - CompTIA A+ Exam Core 1

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

220-1202 - CompTIA A+ Exam Core 2

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA SecurityX CAS-005

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Cloud Essentials+ CLO-002

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Security+ SY0-701

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Data + DA0-001

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Pentest+

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Linux+ XK0-005

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA CySA+ CSO-003

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA DataSys+ DS0-001

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Tech+ FC0-U71

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Cloud+ CV0-004

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Server+ SK0-005

Start Course Prep

Easy way to pass your test within a week with prepsaret

You don’t need one month to study and pass your test.
With Prepsaret, it takes you a few days to grasp all the concepts needed to pass your exams

View Courses Offered