Wireless Security Protocols (WPA) Flashcards
6 cards from real CCST practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 6 Wireless Security Protocols (WPA) flashcards as text
What encryption algorithm does WPA2-Personal use?
Answer: AES-CCMP
WPA2 uses AES-CCMP providing strong 128-bit encryption for wireless data frames.
What is the main weakness of WPA2-Personal that WPA3 addresses?
Answer: The PSK four-way handshake is vulnerable to offline dictionary attacks
The captured four-way handshake can be brute-forced offline. WPA3's SAE eliminates this vulnerability.
What is the purpose of 802.1X in WPA2-Enterprise?
Answer: To provide individual user authentication through a RADIUS server
802.1X authenticates each user individually via RADIUS using credentials or certificates.
What is a rogue access point and how does it threaten wireless security?
Answer: An unauthorized AP that can intercept traffic or provide attackers network access
Rogue APs are unauthorized devices that bypass network security and can intercept traffic.
What is the difference between WPA2-TKIP and WPA2-AES modes?
Answer: TKIP uses older, weaker encryption for backward compatibility; AES uses stronger AES-CCMP
TKIP provides backward compatibility with weaker RC4-based encryption; AES-CCMP is the mandatory, stronger option.
What is Protected Management Frames (PMF) and why is it important?
Answer: A mechanism encrypting management frames to prevent deauthentication attacks
PMF (IEEE 802.11w) protects management frames from spoofing, preventing deauthentication attacks.