Free CWSP-207 Exam Braindumps (page: 12)

Page 11 of 31

Given: ABC Company has 20 employees and only needs one access point to cover their entire facility. Ten of ABC Company's employees have laptops with radio cards capable of only WPA security. The other ten employees have laptops with radio cards capable of WPA2 security. The network administrator wishes to secure all wireless communications (broadcast and unicast) for each laptop with its strongest supported security mechanism, but does not wish to implement a RADIUS/AAA server due to complexity.

What security implementation will allow the network administrator to achieve this goal?

  1. Implement an SSID with WPA2-Personal that allows both AES-CCMP and TKIP clients to connect.
  2. Implement an SSID with WPA-Personal that allows both AES-CCMP and TKIP clients to connect.
  3. Implement two separate SSIDs on the AP--one for WPA-Personal using TKIP and one for WPA2- Personal using AES-CCMP.
  4. Implement an SSID with WPA2-Personal that sends all broadcast traffic using AES-CCMP and unicast traffic using either TKIP or AES-CCMP.

Answer(s): C



What disadvantage does EAP-TLS have when compared with PEAPv0 EAP/MSCHAPv2 as an 802.11 WLAN security solution?

  1. Fast/secure roaming in an 802.11 RSN is significantly longer when EAP-TLS is in use.
  2. EAP-TLS does not protect the client's username and password inside an encrypted tunnel.
  3. EAP-TLS cannot establish a secure tunnel for internal EAP authentication.
  4. EAP-TLS is supported only by Cisco wireless infrastructure and client devices.
  5. EAP-TLS requires extensive PKI use to create X.509 certificates for both the server and all clients, which increases administrative overhead.

Answer(s): E



Given: You are using WEP as an encryption solution. You are using VLANs for network segregation.

Why can you not establish an RSNA?

  1. RSNA connections require TKIP or CCMP.
  2. RSNA connections require BIP and do not support TKIP, CCMP or WEP.
  3. RSNA connections require CCMP and do not support TKIP or WEP.
  4. RSNA connections do not work in conjunction with VLANs.

Answer(s): A



When used as part of a WLAN authentication solution, what is the role of LDAP?

  1. A data retrieval protocol used by an authentication service such as RADIUS
  2. An IEEE X.500 standard compliant database that participates in the 802.1X port-based access control process
  3. A SQL compliant authentication service capable of dynamic key generation and distribution
  4. A role-based access control protocol for filtering data to/from authenticated stations.
  5. An Authentication Server (AS) that communicates directly with, and provides authentication for, the Supplicant.

Answer(s): A






Post your Comments and Discuss CWNP CWSP-207 exam with other Community members:

CWSP-207 Exam Discussions & Posts