Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

CWNP CWSP-207 Exam - Topic 1 Question 34 Discussion

What disadvantage does EAP-TLS have when compared with PEAPv0 EAP/MSCHAPv2 as an 802.11 WLAN security solution?
E) EAP-TLS requires extensive PKI use to create X.509 certificates for both the server and all clients, which increases administrative overhead.
A) Fast/secure roaming in an 802.11 RSN is significantly longer when EAP-TLS is in use.
B) EAP-TLS does not protect the client's username and password inside an encrypted tunnel.
C) EAP-TLS cannot establish a secure tunnel for internal EAP authentication.
D) EAP-TLS is supported only by Cisco wireless infrastructure and client devices.

CWNP CWSP-207 Exam - Topic 1 Question 34 Discussion

Actual exam question for CWNP's CWSP-207 exam
Question #: 34
Topic #: 1
[All CWSP-207 Questions]

What disadvantage does EAP-TLS have when compared with PEAPv0 EAP/MSCHAPv2 as an 802.11 WLAN security solution?

Show Suggested Answer Hide Answer
Suggested Answer: E

Contribute your Thoughts:

0/2000 characters
Sherrell
3 months ago
I’d go with E. Managing all those certificates is a hassle.
upvoted 0 times
...
Katina
3 months ago
True, but EAP-TLS is still more secure overall.
upvoted 0 times
...
Avery
3 months ago
But isn't B a concern too? No protection for usernames and passwords?
upvoted 0 times
...
My
3 months ago
I feel like A is also a problem. Roaming delays can frustrate users.
upvoted 0 times
...
Stanford
4 months ago
Yeah, option E makes sense. The overhead is a pain.
upvoted 0 times
...
Rebbeca
4 months ago
I think EAP-TLS has a big issue with PKI.
upvoted 0 times
...
Jimmie
4 months ago
EAP-TLS is great, but the admin overhead is a real pain!
upvoted 0 times
...
Krissy
5 months ago
D) I thought EAP-TLS was more widely supported than just Cisco.
upvoted 0 times
...
Shelton
5 months ago
Wait, does EAP-TLS really not protect usernames and passwords?
upvoted 0 times
...
Wade
5 months ago
Totally agree, EAP-TLS needs a lot of PKI setup.
upvoted 0 times
...
Dominic
5 months ago
A) Fast/secure roaming is definitely slower with EAP-TLS.
upvoted 0 times
...
Henriette
5 months ago
Hmm, I wonder if the exam question is trying to trick us. Better double-check my answers.
upvoted 0 times
...
Eleni
5 months ago
I'm just glad I don't have to manage the PKI infrastructure. That sounds like a nightmare!
upvoted 0 times
...
Albert
6 months ago
Wow, I thought EAP-TLS was the ultimate security solution. Guess I need to brush up on my 802.11 WLAN knowledge.
upvoted 0 times
...
Fanny
6 months ago
E) is the right answer. The extensive PKI use for X.509 certificates increases administrative overhead.
upvoted 0 times
...
Pamela
6 months ago
I thought EAP-TLS was more secure overall, but I guess the administrative overhead with certificates could be a significant downside.
upvoted 0 times
...
Isaac
6 months ago
I'm not entirely sure, but I remember something about EAP-TLS not protecting usernames and passwords like PEAP does.
upvoted 0 times
...
Ena
6 months ago
Hmm, I'm pretty confident I know the answer to this one. The disadvantage of EAP-TLS is that it doesn't protect the client's username and password, unlike PEAPv0 EAP/MSCHAPv2. That's a key security difference between the two.
upvoted 0 times
...
Vinnie
6 months ago
I'm a bit confused on the details here. I'll need to review my notes on the strengths and weaknesses of these 802.11 security protocols to determine the best answer.
upvoted 0 times
...
Wenona
7 months ago
B) is correct. EAP-TLS does not protect the client's username and password inside an encrypted tunnel.
upvoted 0 times
...
Herminia
7 months ago
Ah, I remember learning about these protocols in class. I think the main issue with EAP-TLS is the increased overhead from the PKI requirements. That could be a significant disadvantage compared to the simpler PEAPv0 approach.
upvoted 0 times
...
Martina
7 months ago
I think EAP-TLS has a disadvantage because it requires a lot of PKI setup, which can be a hassle for admins.
upvoted 0 times
...
Kerry
7 months ago
I practiced a question similar to this, and I feel like the fast roaming issue with EAP-TLS was mentioned as a drawback.
upvoted 0 times
...
Tamekia
8 months ago
Okay, let's see. I know EAP-TLS uses certificates, so that's probably the key difference. I'll need to compare the security and administrative aspects of the two approaches.
upvoted 0 times
...
Dorsey
8 months ago
Hmm, this looks like a tricky one. I'll need to think carefully about the differences between EAP-TLS and PEAPv0 EAP/MSCHAPv2 to figure out the key disadvantage.
upvoted 0 times
Theresia
2 months ago
I’d go with PEAPv0 for easier setup and less admin work.
upvoted 0 times
...
Talia
2 months ago
True, but it can slow down deployment.
upvoted 0 times
...
Ronny
3 months ago
Yeah, the certificate management can be a hassle.
upvoted 0 times
...
Bobbye
3 months ago
I think EAP-TLS has a lot of overhead with PKI.
upvoted 0 times
...
Jeannetta
7 months ago
But isn't security worth the extra effort?
upvoted 0 times
...
...

Save Cancel