Official Bank 0/60

CWSP Certified Wireless Security Professional Exam (CWSP-206) - CWNP Actual Exam Questions

Last updated on April 15, 2026

97% Exam Compliance
60 Total Questions
1
Question

For which one of the following purposes would a WIPS not be a good solution?

Options
A

Enforcing wireless network security policy.

B

Detecting and defending against eavesdropping attacks.

C

Performance monitoring and troubleshooting.

D

Security monitoring and notification.

Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

2
Question

ABC Company has recently installed a WLAN controller and configured it to support WPA2-Enterprise security. The administrator has configured a security profile on the WLAN controller for each group within the company (Marketing, Sales, and Engineering). How are authenticated users assigned to groups so that they receive the correct security profile within the WLAN controller?

Options
A

The RADIUS server sends the list of authenticated users and groups to the WLAN controller as part of a 4-Way Handshake prior to user authentication.

B

The WLAN controller polls the RADIUS server for a complete list of authenticated users and groups after each user authentication.

C

The RADIUS server sends a group name return list attribute to the WLAN controller during every successful user authentication.

D

The RADIUS server forwards the request for a group attribute to an LDAP database service, and LDAP sends the group attribute to the WLAN controller.

Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

3
Question

In the basic 4-way handshake used in secure 802.11 networks, what is the purpose of the ANonce and SNonce?

Options
A

They are added together and used as the GMK, from which the GTK is derived.

B

They are used to pad Message 1 and Message 2 so each frame contains the same number of bytes.

C

The IEEE 802.11 standard requires that all encrypted frames contain a nonce to serve as a Message Integrity Check (MIC).

D

They are input values used in the derivation of the Pairwise Transient Key.

Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

4
Question

In XYZ’s small business, two autonomous 802.11ac APs and 12 client devices are in use with WPA2- Personal. What statement about the WLAN security of this company is true?

Options
A

Intruders may obtain the passphrase with an offline dictionary attack and gain network access, but will be unable to decrypt the data traffic of other users.

B

Because WPA2-Personal uses Open System authentication followed by a 4-Way Handshake, hijacking attacks are easily performed.

C

A successful attack against all unicast traffic on the network would require a weak passphrase dictionary attack and the capture of the latest 4-Way Handshake for each client.

D

An unauthorized wireless client device cannot associate, but can eavesdrop on some data because WPA2-Personal does not encrypt multicast or broadcast traffic.

E

An unauthorized WLAN user with a protocol analyzer can decode data frames of authorized users if he captures the BSSID, client MAC address, and a user’s 4-Way Handshake.

Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

5
Question

ABC Hospital wishes to create a strong security policy as a first step in securing their 802.11 WLAN. Before creating the WLAN security policy, what should you ensure you possess?

Options
A

Management support for the process.

B

Security policy generation software.

C

End-user training manuals for the policies to be created.

D

Awareness of the exact vendor devices being installed.

Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

Finish Practice?

Are you sure you want to finish? This will end your practice session.