Wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

A+ - 16B - Compare Wireless Security Protocols

Total questions: 2

Worksheet time: 14mins

Name
Class
Date
1-23.

Wireless LANs require secure configurations due to their susceptibility to interception and unauthorized access. Wi-Fi Protected Access (WPA) addresses vulnerabilities found in the Wired Equivalent Privacy (WEP) standard. WPA2 enhances security using the Advanced Encryption Standard (AES) cipher, while WPA3 further strengthens security with Simultaneous Authentication of Equals (SAE) and updated cryptographic protocols.

Wi-Fi authentication includes open, personal, and enterprise methods. WPA2-PSK authentication uses a passphrase to generate encryption keys, while WPA3-SAE replaces the 4-way handshake for key exchange. Enterprise authentication, such as WPA2-Enterprise or WPA3-Enterprise, uses Extensible Authentication Protocol (EAP) and allows more advanced authentication methods like EAP-TLS, utilizing digital certificates for multifactor authentication.

Enterprise authentication requires an Authentication, Authorization, and Accounting (AAA) server, which can be implemented using protocols like RADIUS, TACACS+, or Kerberos. RADIUS forwards authentication data securely between the access point and server, while TACACS+ is used for administrative access control. Kerberos facilitates single sign-on (SSO) but is typically used in conjunction with RADIUS or TACACS+ for wireless authentication.

1.

Which mechanism does WPA use to mitigate attacks against WEP?

a)

Temporal Key Integrity Protocol (TKIP)

b)

Extensible Authentication Protocol (EAP)

c)

Advanced Encryption Standard (AES)

d)

Counter Mode with Cipher Block Chaining Message Authentication Code Protocol (CCMP)

2.

What cipher does WPA2 use to replace RC4 for encryption?

a)

Advanced Encryption Standard (AES)

b)

Temporal Key Integrity Protocol (TKIP

c)

Counter Mode with Cipher Block Chaining Message Authentication Code Protocol (CCMP)

d)

Simultaneous Authentication of Equals (SAE)

3.

Which feature does WPA3 introduce to replace the 4-way handshake in WPA2?

a)

Simultaneous Authentication of Equals (SAE)

b)

Counter Mode with Cipher Block Chaining Message Authentication Code Protocol (CCMP)

c)

Advanced Encryption Standard (AES)

d)

Temporal Key Integrity Protocol (TKIP)

4.

What type of authentication does WPA2-PSK use?

a)

Open

b)

Personal

c)

Enterprise

d)

Shared

5.

What protocol does WPA3 use to replace AES CCMP for encryption?

a)

Temporal Key Integrity Protocol (TKIP)

b)

Simultaneous Authentication of Equals (SAE)

c)

AES Galois Counter Mode Protocol (GCMP)

d)

PMK

6.

How long must a passphrase be in WPA2 to mitigate passphrase recovery attacks?

a)

At least 8 characters

b)

At least 10 characters

c)

At least 14 characters

d)

At least 16 characters

7.

What is the primary advantage of using WPA3 over WPA2 in an open Wi-Fi network?

a)

Enhanced encryption

b)

Simultaneous Authentication of Equals (SAE)

c)

Protected management frames

d)

Wi-Fi Enhanced Open

8.

What does EAP stand for in enterprise authentication?

a)

Enhanced Authorization Protocol

b)

Extensible Authentication Protocol

c)

Encrypted Access Protocol

d)

Enterprise Authorization Process

9.

Which authentication method supports multifactor authentication using digital certificates?

a)

WPA2-PSK

b)

WPA3-SAE

c)

WPA2-Enterprise

d)

WPA3-Enterprise

10.

What protocol allows an access point to forward authentication data securely to an AAA server?

a)

RADIUS

b)

TACACS+

c)

Kerberos

d)

EAPoW

11.

What is the main advantage of using TACACS+ for authentication?

a)

Enhanced encryption

b)

Multifactor authentication

c)

Administrative access control

d)

Single sign-on (SSO)

12.

What protocol does WPA3 use to replace AES CCMP for encryption?

a)

TKIP

b)

SAE

c)

AES Galois Counter Mode Protocol (GCMP)

d)

PMK

13.

Which authentication method is typically used for administrative access to routers and switches?

a)

WPA2-PSK

b)

WPA3-SAE

c)

WPA2-Enterprise

d)

TACACS+

14.

What is the primary function of Kerberos in enterprise authentication?

a)

Secure distribution of passphrases

b)

Forwarding authentication data

c)

Single sign-on (SSO)

d)

Enhanced encryption

15.

Which protocol allows a user to authenticate to a domain controller (DC) on Windows networks?

a)

RADIUS

b)

TACACS+

c)

Kerberos

d)

EAPoW

16.

What is the purpose of using digital certificates in EAP-TLS authentication?

a)

To establish a trust relationship

b)

To forward authentication data

c)

To generate encryption keys

d)

To store passphrases securely

17.

Which WPA3 authentication method allows the access point to forward authentication data without allowing other network access?

a)

RADIUS

b)

TACACS+

c)

EAPoW

d)

Kerberos

18.

What mechanism does WPA3 use to protect against key recovery attacks and DoS attacks?

a)

AES Galois Counter Mode Protocol (GCMP)

b)

Simultaneous Authentication of Equals (SAE)

c)

Protected management frames

d)

Wi-Fi Enhanced Open

19.

How does WPA2-Enterprise authentication differ from WPA2-PSK authentication?

a)

It uses a passphrase for authentication.

b)

It requires a digital certificate for authentication.

c)

It supports multifactor authentication.

d)

It does not involve an AAA server.

20.

What advantage does WPA3-SAE offer over WPA2-PSK in terms of passphrase security?

a)

It requires a shorter passphrase.

b)

It mitigates risks from passphrase recovery attacks.

c)

It uses a different encryption algorithm.

d)

It supports open authentication.

21.

How does WPA3-SAE differ from WPA2-PSK in terms of key exchange?

a)

It uses a 4-way handshake.

b)

It uses a pairwise master key (PMK).

c)

It uses the SAE protocol.

d)

It uses the RC4 symmetric cipher.

22.

What is the primary purpose of an AAA server in enterprise authentication?

a)

To store passphrases securely

b)

To generate encryption keys

c)

To authenticate wireless clients

d)

To forward authentication data

23.

How does WPA3-SAE authentication differ from WPA2-PSK authentication?

a)

It uses a different encryption algorithm.

b)

It uses a shorter passphrase.

c)

It replaces the 4-way handshake with SAE.

d)

It does not involve a group of users.

24.

Have you submitted your standup form yet?

Click the link below

https://airtable.com/appg2CeX4DA9Y7hDi/shrUyD9aoryvXZgfu

a)

Not yet

b)

I have now.