Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

CWNP CWSP-207 Exam - Topic 2 Question 39 Discussion

Given: In XYZ's small business, two autonomous 802.11ac APs and 12 client devices are in use with WPA2-Personal.What statement about the WLAN security of this company is true?
B) A successful attack against all unicast traffic on the network would require a weak passphrase dictionary attack and the capture of the latest 4-Way Handshake for each client.
A) Intruders may obtain the passphrase with an offline dictionary attack and gain network access, but will be unable to decrypt the data traffic of other users.
C) An unauthorized wireless client device cannot associate, but can eavesdrop on some data because WPA2-Personal does not encrypt multicast or broadcast traffic.
D) An unauthorized WLAN user with a protocol analyzer can decode data frames of authorized users if he captures the BSSID, client MAC address, and a user's 4-Way Handshake.
E) Because WPA2-Personal uses Open System authentication followed by a 4-Way Handshake, hijacking attacks are easily performed.

CWNP CWSP-207 Exam - Topic 2 Question 39 Discussion

Actual exam question for CWNP's CWSP-207 exam
Question #: 39
Topic #: 2
[All CWSP-207 Questions]

Given: In XYZ's small business, two autonomous 802.11ac APs and 12 client devices are in use with WPA2-Personal.

What statement about the WLAN security of this company is true?

Show Suggested Answer Hide Answer
Suggested Answer: B

Contribute your Thoughts:

0/2000 characters
Marquetta
13 hours ago
E is misleading. Open System isn't the main issue here.
upvoted 0 times
...
Laurel
6 days ago
D sounds right. Analyzing data frames is risky for users.
upvoted 0 times
...
Dustin
11 days ago
C makes sense too. Eavesdropping is possible without association.
upvoted 0 times
...
Catalina
16 days ago
I lean towards B. Capturing the 4-Way Handshake is crucial.
upvoted 0 times
...
Quentin
21 days ago
I think option A is true. Offline attacks are a real threat.
upvoted 0 times
...
Edelmira
26 days ago
D) is definitely possible, but it requires some serious skills.
upvoted 0 times
...
Veronika
1 month ago
B) is misleading, you don't need to capture every handshake.
upvoted 0 times
...
Dalene
1 month ago
Wait, can unauthorized users really eavesdrop? Sounds sketchy.
upvoted 0 times
...
Sherill
1 month ago
Totally agree, WPA2-Personal has its flaws.
upvoted 0 times
...
Elsa
2 months ago
A) is true, they can get the passphrase easily.
upvoted 0 times
...
Vesta
2 months ago
D) is definitely possible, but it requires some serious skills.
upvoted 0 times
...
Ramonita
2 months ago
B) is misleading, you don't need to capture every handshake.
upvoted 0 times
...
Annett
2 months ago
Wait, can unauthorized users really eavesdrop? Sounds sketchy.
upvoted 0 times
...
Arlie
4 months ago
Totally agree, WPA2-Personal has its flaws.
upvoted 0 times
...
Johnetta
4 months ago
A) is true, they can get the passphrase easily.
upvoted 0 times
...
Lucy
4 months ago
I’m a bit confused about option D. I thought capturing the BSSID and MAC address was important, but does that really allow decoding of all data frames?
upvoted 0 times
...
Shawn
4 months ago
I feel like option C might be correct since I recall that WPA2-Personal doesn't encrypt multicast or broadcast traffic, allowing some eavesdropping.
upvoted 0 times
...
Arthur
5 months ago
I think option B sounds familiar from practice questions. It mentioned needing the 4-Way Handshake, which is crucial for attacks on unicast traffic.
upvoted 0 times
...
Dominga
5 months ago
I remember studying that WPA2-Personal can be vulnerable to dictionary attacks, but I'm not sure if that means intruders can decrypt all traffic.
upvoted 0 times
...

Save Cancel