Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

CWNP CWSP-207 Exam - Topic 2 Question 39 Discussion

Given: In XYZ's small business, two autonomous 802.11ac APs and 12 client devices are in use with WPA2-Personal.What statement about the WLAN security of this company is true?
B) A successful attack against all unicast traffic on the network would require a weak passphrase dictionary attack and the capture of the latest 4-Way Handshake for each client.
A) Intruders may obtain the passphrase with an offline dictionary attack and gain network access, but will be unable to decrypt the data traffic of other users.
C) An unauthorized wireless client device cannot associate, but can eavesdrop on some data because WPA2-Personal does not encrypt multicast or broadcast traffic.
D) An unauthorized WLAN user with a protocol analyzer can decode data frames of authorized users if he captures the BSSID, client MAC address, and a user's 4-Way Handshake.
E) Because WPA2-Personal uses Open System authentication followed by a 4-Way Handshake, hijacking attacks are easily performed.

CWNP CWSP-207 Exam - Topic 2 Question 39 Discussion

Actual exam question for CWNP's CWSP-207 exam
Question #: 39
Topic #: 2
[All CWSP-207 Questions]

Given: In XYZ's small business, two autonomous 802.11ac APs and 12 client devices are in use with WPA2-Personal.

What statement about the WLAN security of this company is true?

Show Suggested Answer Hide Answer
Suggested Answer: B

Contribute your Thoughts:

0/2000 characters
A) is true, they can get the passphrase easily.
upvoted 0 times
...
Vesta
5 days ago
D) is definitely possible, but it requires some serious skills.
upvoted 0 times
...
Ramonita
10 days ago
B) is misleading, you don't need to capture every handshake.
upvoted 0 times
...
Annett
15 days ago
Wait, can unauthorized users really eavesdrop? Sounds sketchy.
upvoted 0 times
...
Arlie
2 months ago
Totally agree, WPA2-Personal has its flaws.
upvoted 0 times
...
Johnetta
2 months ago
A) is true, they can get the passphrase easily.
upvoted 0 times
...
Lucy
3 months ago
I’m a bit confused about option D. I thought capturing the BSSID and MAC address was important, but does that really allow decoding of all data frames?
upvoted 0 times
...
Shawn
3 months ago
I feel like option C might be correct since I recall that WPA2-Personal doesn't encrypt multicast or broadcast traffic, allowing some eavesdropping.
upvoted 0 times
...
Arthur
3 months ago
I think option B sounds familiar from practice questions. It mentioned needing the 4-Way Handshake, which is crucial for attacks on unicast traffic.
upvoted 0 times
...
Dominga
3 months ago
I remember studying that WPA2-Personal can be vulnerable to dictionary attacks, but I'm not sure if that means intruders can decrypt all traffic.
upvoted 0 times
...

Save Cancel