OPS-1 through OPS-10, OS-2, OS-3 went from 5 → 15. OS-1, OS-4 through OS-11, SEC-1 through SEC-11, TRB-1 through TRB-4 went from 7 → 15. Questions cover exam-weight scenarios not duplicated from original content. Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
2.7 KiB
SEC-3 Quiz: Wireless Security
Take this after studying notes/SEC-3-wireless-security.md.
Reply with answers like:
1B 2A 3D 4C 5B 6A 7D
Questions
- Which wireless security option should be avoided because it is obsolete and insecure?
A. WPA3
B. WPA2-AES
C. WPA3-Enterprise
D. WEP
- Which encryption method is stronger and commonly associated with WPA2?
A. AES
B. TKIP
C. WEP
D. APIPA
- Which wireless mode uses one shared Wi-Fi password for all users?
A. Enterprise
B. Kerberos
C. Personal/PSK
D. TACACS+
- Which wireless mode authenticates users individually with 802.1X?
A. Open
B. Enterprise
C. Personal
D. WEP
- Which authentication service is commonly used for 802.1X wireless and VPN authentication?
A. FAT32
B. APFS
C. ReFS
D. RADIUS
- Which authentication protocol is commonly associated with Microsoft domain environments?
A. TKIP
B. WEP
C. Kerberos
D. exFAT
- Which protocol is commonly associated with network device administration, especially Cisco environments?
A. WPA2-Personal
B. TACACS+
C. BitLocker
D. EFS
- Which wireless standard is the most current and provides the strongest security?
A. WEP
B. WPA
C. WPA2
D. WPA3
- What is the purpose of MAC address filtering on a wireless network?
A. Encrypt all data in transit
B. Restrict connections to devices whose MAC addresses are on an approved list
C. Replace the need for a Wi-Fi password
D. Increase wireless range
- Why is MAC address filtering alone considered a weak security measure?
A. It slows down the access point
B. MAC addresses can be spoofed by attackers
C. It requires WEP
D. It disables SSID broadcast
- What does WPA2-Enterprise require that WPA2-Personal does not?
A. A pre-shared key (password)
B. An authentication server (RADIUS)
C. WEP as a fallback
D. Kerberos tickets only
- A hotel guest connects to "FREE_HOTEL_WIFI" which is not an official network. What attack is this?
A. Dictionary attack
B. Evil twin
C. Kerberos overflow
D. Supply chain attack
- Which wireless configuration reduces the risk of rogue device connections on a corporate network?
A. Hiding the SSID only
B. 802.1X authentication with certificates
C. MAC filtering only
D. Disabling all encryption
- A company wants to ensure wireless clients each receive individual encryption keys rather than a shared key. Which mode achieves this?
A. WPA2-Personal
B. WEP
C. WPA2-Enterprise
D. Open
- Which protocol provides encrypted authentication for RADIUS-based wireless and is commonly used with EAP?
A. TKIP
B. WEP
C. 802.1X
D. APIPA
Answer Key For Instructor
- D
- A
- C
- B
- D
- C
- B
- D
- B
- B
- B
- B
- B
- C
- C