Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Eccouncil Exam 312-50 Topic 9 Question 99 Discussion

Actual exam question for Eccouncil's 312-50 exam
Question #: 99
Topic #: 9
[All 312-50 Questions]

A new wireless client is configured to join a 802.11 network. This client uses the same hardware and software as many of the other clients on the network. The client can see the network, but cannot connect. A wireless packet sniffer shows that the Wireless Access Point (WAP) is not responding to the association requests being sent by the wireless client. What is a possible source of this problem?

Show Suggested Answer Hide Answer
Suggested Answer: B

A Slow HTTP POST attack is a type of denial-of-service (DoS) attack that exploits the way web servers handle HTTP requests. The attacker sends a legitimate HTTP POST header to the web server, specifying a large amount of data to be sent in the request body. However, the attacker then sends the data very slowly, keeping the connection open and occupying the server's resources. The attacker can launch multiple such connections, exceeding the server's capacity to handle concurrent requests and preventing legitimate users from accessing the web server.

The attack duration D is given by the formula D = a * b, where a is the number of connections and b is the hold-up time per connection. The attacker intends to maximize D by manipulating a and b. The server can manage m connections per second, but any connections exceeding m will overwhelm the system. Therefore, the scenario that is most likely to result in the longest duration of server unavailability is the one where a > m and b is the largest. Among the four options, this is the case for option B, where a = 100, m = 90, and b = 15. In this scenario, D = 100 * 15 = 1500 seconds, which is the longest among the four options. Option A has a larger b, but a < m, so the server can handle the connections without being overwhelmed. Option C has a > m, but a smaller b, so the attack duration is shorter. Option D has a > m, but a smaller b and a smaller difference between a and m, so the attack duration is also shorter. Reference:

What is a Slow POST Attack & How to Prevent One? (Guide)

Mitigate Slow HTTP GET/POST Vulnerabilities in the Apache HTTP Server - Acunetix

What is a Slow Post DDoS Attack? | NETSCOUT


Contribute your Thoughts:

Carol
15 days ago
Hmm, maybe the client needs to try a channel-hopping dance routine to get the WAP's attention. Or perhaps they just need to switch to a wireless network that speaks their language. 'Cause you know, gotta keep that SSID on point, am I right?
upvoted 0 times
...
Mattie
16 days ago
This one's tricky, but I'm leaning towards the SSID being the culprit. If the client can't see the network's SSID, how's it gonna connect? Gotta make sure that's dialed in.
upvoted 0 times
...
Vincenza
27 days ago
Oof, no DHCP configuration? That's a rookie mistake. How's the client supposed to get an IP address without that? Better double-check that setting.
upvoted 0 times
...
Tamesha
1 months ago
Wait, the client can see the network but can't connect? That's a head-scratcher. Could it be a MAC address issue? The WAP might not be recognizing this client's MAC.
upvoted 0 times
Carmen
7 hours ago
C) Client is configured for the wrong channel
upvoted 0 times
...
Tamala
1 days ago
B) The client cannot see the SSID of the wireless network
upvoted 0 times
...
Clemencia
8 days ago
A) The WAP does not recognize the client's MAC address
upvoted 0 times
...
Sean
26 days ago
A) The WAP does not recognize the client's MAC address
upvoted 0 times
...
...
Viola
1 months ago
Hmm, the WAP not responding to the association requests seems like a connectivity issue. I'm going to guess that the client is configured for the wrong channel. Gotta make sure that's in sync with the WAP!
upvoted 0 times
...
Rodolfo
2 months ago
But what if the client is configured for the wrong channel? That could also be causing the issue, right?
upvoted 0 times
...
Ty
2 months ago
I agree with Melda. If the WAP doesn't recognize the MAC address, it won't respond to the association requests.
upvoted 0 times
...
Melda
2 months ago
I think the possible source of the problem could be that the WAP does not recognize the client's MAC address.
upvoted 0 times
...

Save Cancel