
CWNP Exam 2023 CWSP-206 Dumps Updated Questions UPDATED Dec-2023
Get The Most Updated CWSP-206 Dumps To CWSP Certification Certification
The CWSP-206 certification exam is challenging and requires extensive knowledge and experience in wireless networking. CWSP Certified Wireless Security Professional certification exam consists of 60 multiple-choice questions that must be answered within 90 minutes. Candidates must score at least 70% to pass the exam and earn the CWSP certification. CWSP Certified Wireless Security Professional certification is valid for three years, after which the candidate must renew their certification by passing a recertification exam or earning continuing education credits.
NEW QUESTION # 47
Which of the following encryption methods uses AES technology?
- A. CCMP
- B. Dynamic WEP
- C. TKIP
- D. Static WEP
Answer: A
NEW QUESTION # 48
What EAP type supports using MS-CHAPv2, EAP-GTC or EAP-TLS for wireless client authentication?
- A. LEAP
- B. EAP-TTLS
- C. H-REAP
- D. PEAP
- E. EAP-GTC
Answer: D
Explanation:
Explanation/Reference:
NEW QUESTION # 49
Your Company is receiving false and abusive e-mails from the e-mail address of your partner company. When you complain, the partner company tells you that they have never sent any such e-mails. Which of the following types of cyber crimes involves this form of network attack?
- A. Man-in-the-middle attack
- B. Cyber squatting
- C. Cyber Stalking
- D. Spoofing
Answer: D
NEW QUESTION # 50
Which of the following protocols is used for authentication in an 802.1X framework?
- A. EAP
- B. IPSec
- C. TKIP
- D. L2TP
Answer: A
NEW QUESTION # 51
The following numbered items show some of the contents of each of the four frames exchanged during the
4-way handshake.
* Encrypted GTK sent
* Confirmation of temporal key installation
* ANonce sent from authenticator to supplicant
* SNonce sent from supplicant to authenticator, MIC included
Arrange the frames in the correct sequence beginning with the start of the 4-way handshake.
- A. 1, 2, 3, 4
- B. 4, 3, 1, 2
- C. 3, 4, 1, 2
- D. 2, 3, 4, 1
Answer: C
NEW QUESTION # 52
XYZ Company has recently installed a controller-based WLAN and is using a RADIUS server to query authentication requests to an LDAP server. XYZ maintains user-based access policies and would like to use the RADIUS server to facilitate network authorization. What RADIUS feature could be used by XYZ to assign the proper network permissions to users during authentications?
- A. RADIUS can send a DO-NOT-AUTHORIZE demand to the authenticator to prevent the STA from gaining access to specific files, but may only employ this in relation to Linux servers.
- B. RADIUS can reassign a client's 802.11 association to a new SSID by referencing a username-to-SSID mapping table in the LDAP user database.
- C. The RADIUS server can communicate with the DHCP server to issue the appropriate IP address and VLAN assignment to users.
- D. The RADIUS server can support vendor-specific attributes in the ACCESS-ACCEPT response, which can be used for user policy assignment.
Answer: D
NEW QUESTION # 53
Peter works as a Network Administrator for the uCertify Inc. The company has a Windows-based network. All client computers run the Windows XP operating system. The employees of the company complain that suddenly all of the client computers have started working slowly. Peter finds that a malicious hacker is attempting to slow down the computers by flooding the network with a large number of requests. Which of the following attacks is being implemented by the malicious hacker?
- A. SQL injection attack
- B. Denial-of-Service (DoS) attack
- C. Man-in-the-middle attack
- D. Buffer overflow attack
Answer: B
NEW QUESTION # 54
ABC Company has a WLAN controller using WPA2-Enterprise with PEAPv0/MS-CHAPv2 and AES-CCMP to secure their corporate wireless data. They wish to implement a guest WLAN for guest users to have Internet access, but want to implement some security controls. The security requirements for the hotspot include:
* Cannot access corporate network resources
* Network permissions are limited to Internet access
* All stations must be authenticated
What security controls would you suggest? (Choose the single best answer.)
- A. Implement separate controllers for the corporate and guest WLANs.
- B. Configure access control lists (ACLs) on the guest WLAN to control data types and destinations.
- C. Use a WIPS to deauthenticate guest users when their station tries to associate with the corporate WLAN.
- D. Require guest users to authenticate via a captive portal HTTPS login page and place the guest WLAN and the corporate WLAN on different VLANs.
- E. Force all guest users to use a common VPN protocol to connect.
Answer: D
NEW QUESTION # 55
Which of the following are the security measures that are needed to maintain the security of wireless LAN?
Each correct answer represents a complete solution. Choose all that apply.
- A. Firewalls
- B. WLAN controller
- C. WIPS
- D. WIDS
Answer: A,C,D
NEW QUESTION # 56
Which of the following types of attacks entices a user to disclose personal information such as social security number, bank account details, or credit card number?
- A. Replay attack
- B. Phishing
- C. Password guessing attack
- D. Spoofing
Answer: B
NEW QUESTION # 57
Which of the following is designed to detect bit-flipping and forgery attacks that are used against WEP?
- A. Message authentication code (MAC)
- B. Initialization vector (IV)
- C. Cyclic redundancy check (CRC)
- D. Message integrity code (MIC)
Answer: D
NEW QUESTION # 58
As the primary security engineer for a large corporate network, you have been asked to author a new securitypolicy for the wireless network. While most client devices support 802.1X authentication, some legacy devices still only support passphrase/PSK-based security methods. When writing the 802.11 security policy, what password-related items should be addressed?
- A. MS-CHAPv2 passwords used with EAP/PEAPv0 should be stronger than typical WPA2-PSK passphrases.
- B. EAP-TLS must be implemented in such scenarios.
- C. Password complexity should be maximized so that weak WEP IV attacks are prevented.
- D. Certificates should always be recommended instead of passwords for 802.11 client authentication.
- E. Static passwords should be changed on a regular basis to minimize the vulnerabilities of a PSK-based authentication.
Answer: E
NEW QUESTION # 59
You have a Windows laptop computer with an integrated, dual-band, Wi-Fi compliant adapter. Your laptop computer has protocol analyzer softwareinstalled that is capable of capturing and decoding 802.11ac data.
What statement best describes the likely ability to capture 802.11ac frames for security testing purposes?
- A. Integrated 802.11ac adapters are not typically compatible with protocol analyzers in Windows laptops. It is often best to use a USB adapter or carefully select a laptop with an integrated adapter that will work.
- B. Only Wireshark can be used tocapture 802.11ac frames as no other protocol analyzer has implemented the proper frame decodes.
- C. All integrated 802.11ac adapters will work with most protocol analyzers for frame capture, including the Radio Tap Header.
- D. Laptops cannot be used to capture 802.11ac frames because they do not support MU-MIMO.
- E. The only method available to capture 802.11ac frames is to perform a remote capture with a compatible access point.
Answer: A
NEW QUESTION # 60
Which of the following is the most secure protocol used for encryption in a wireless network?
- A. WEP
- B. IPSec
- C. WPA
- D. WPA2
Answer: D
NEW QUESTION # 61
XYZ Hospital plans to improve the security and performance of their Voice over Wi-Fi implementation and will be upgrading to 802.11n phones with 802.1X/EAP authentication. XYZ would like to support fast secure roaming for the phones and will require the ability to troubleshoot reassociations that are delayed or dropped during inter-channel roaming. What portable solution would be recommended for XYZ to troubleshoot roaming problems?
- A. WIPS sensor software installed on a laptop computer.
- B. Laptop-based protocol analyzer with multiple 802.11n adapters.
- C. An autonomous AP mounted on a mobile cart and configured to operate in monitor mode.
- D. Spectrum analyzer software installed on a laptop computer.
Answer: B
NEW QUESTION # 62
Your company has just completed installation of an IEEE 802.11 WLAN controller with 20 controller-based APs. The CSO has specified PEAPv0/EAP-MSCHAPv2 as the only authorized WLAN authentication mechanism. Since an LDAP-compliant user database was already in use, a RADIUS server was installed and is querying authentication requeststo the LDAP server. Where must the X.509 server certificate and private key be installed in this network?
- A. LDAP server
- B. WLAN controller
- C. Controller-based APs
- D. RADIUS server
- E. Supplicant devices
Answer: D
NEW QUESTION # 63
Which of the following types of attacks is performed by Adam?
- A. Reverse social engineering attack
- B. Man-in-the-middle attack
- C. DoS attack that involves crashing a network or system
- D. DDoS attack that involves flooding a network or system
Answer: C
NEW QUESTION # 64
Which of the following components are normally required to secure wireless 802.11 networks?
Each correct answer represents a complete solution. Choose all that apply.
- A. Segmentation
- B. Accessibility
- C. Authentication
- D. Strong encryption
Answer: A,C,D
NEW QUESTION # 65
Your client has a brand new laptop. He is trying to connect to his home network, which is using an older (802.11b) wireless router. The router is set for encryption but not MAC filtering. What is the most likely problem?
- A. The laptop does not have a wireless NIC.
- B. His physical address for the laptop is not in the router.
- C. His laptop has a newer operating system that cannot communicate with the router.
- D. His laptop is using the WPA encryption protocol.
Answer: D
NEW QUESTION # 66
Which of the following is a security access control technique that allows or prevents specific network devices from accessing the network?
- A. MAC filtering
- B. Route filtering
- C. Packet filtering
- D. Ingress filtering
Answer: A
NEW QUESTION # 67
Which of the following attacks are considered as authentication attacks? Each correct answer represents a complete solution. Choose all that apply.
- A. Jamming attack
- B. Man-in-the-middle attack
- C. Denial-of-Service (DoS) attack
- D. Eavesdropper attack
Answer: B,D
NEW QUESTION # 68
......
CWNP Certified CWSP-206 Dumps Questions Valid CWSP-206 Materials: https://actualtests.crampdf.com/CWSP-206-exam-prep-dumps.html