Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

CWNP Exam CWSP-208 Topic 1 Question 4 Discussion

Actual exam question for CWNP's CWSP-208 exam
Question #: 4
Topic #: 1
[All CWSP-208 Questions]

Given: ABC Corporation is evaluating the security solution for their existing WLAN. Two of their supported solutions include a PPTP VPN and 802.1X/LEAP. They have used PPTP VPNs because of their wide support in server and desktop operating systems. While both PPTP and LEAP adhere to the minimum requirements of the corporate security policy, some individuals have raised concerns about MS-CHAPv2 (and similar) authentication and the known fact that MS-CHAPv2 has proven vulnerable in improper implementations.

As a consultant, what do you tell ABC Corporation about implementing MS-CHAPv2 authentication? (Choose 2)

Show Suggested Answer Hide Answer
Suggested Answer: B, D

Contribute your Thoughts:

Jovita
8 days ago
D) MS-CHAPv2 is only appropriate for WLAN security when used inside a TLS-encrypted tunnel. This helps mitigate the security risks associated with MS-CHAPv2.
upvoted 0 times
...
Hubert
10 days ago
B) MS-CHAPv2 is subject to offline dictionary attacks. This is a well-known vulnerability that makes it a poor choice for secure authentication.
upvoted 0 times
Audra
5 days ago
A) MS-CHAPv2 is compliant with WPA-Personal, but not WPA2-Enterprise.
upvoted 0 times
...
...
Joesph
15 days ago
I'm not sure about option E, MS-CHAPv2 uses AES authentication, and is therefore secure. Can someone explain this further?
upvoted 0 times
...
Torie
16 days ago
I agree with Samira, but we should also consider option D, MS-CHAPv2 is only appropriate for WLAN security when used inside a TLS-encrypted tunnel.
upvoted 0 times
...
Samira
19 days ago
I think we should go with option B, MS-CHAPv2 is subject to offline dictionary attacks.
upvoted 0 times
...

Save Cancel