Official Bank 0/60

CWSP Certified Wireless Security Professional Exam (CWSP-206) - CWNP Exam Questions

Last updated on June 20, 2026

97% Exam Compliance
60 Total Questions
1
Question
What EAP type supports using MS-CHAPv2, EAP-GTC or EAP-TLS for wireless client authentication?
Options
A EAP-TTLS
B LEAP
C H-REAP
D PEAP
E EAP-GTC
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

2
Question
During 802.1X/LEAP authentication, the username is passed across the wireless medium in clear text. From a security perspective, why is this significant?
Options
A 4-Way Handshake nonces are based on the username in WPA and WPA2 authentication.
B The username is an input to the LEAP challenge/response hash that is exploited, so the username must be known to conduct authentication cracking.
C The username is needed for Personal Access Credential (PAC) and X.509 certificate validation.
D The username can be looked up in a dictionary file that lists common username/password combinations.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

3
Question
The following numbered items show some of the contents of each of the four frames exchanged during the 4-way handshake.

• Encrypted GTK sent

• Confirmation of temporal key installation

• ANonce sent from authenticator to supplicant

• SNonce sent from supplicant to authenticator, MIC included
Arrange the frames in the correct sequence beginning with the start of the 4-way handshake.
Options
A 4, 3, 1, 2
B 2, 3, 4, 1
C 3, 4, 1, 2
D 1, 2, 3, 4
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

4
Question
The Aircrack-ng WLAN software tool can capture and transmit modified 802.11 frames over the wireless network. It comes pre-installed on Kali Linux and some other Linux distributions. Which one of the following would not be a suitable penetration testing action taken with this tool?
Options
A Cracking the authentication or encryption processes implemented poorly in some WLANs.
B Probing the RADIUS server and authenticator to expose the RADIUS shared secret.
C Transmitting a deauthentication frame to disconnect a user from the AP.
D Auditing the configuration and functionality of a WIPS by simulating common attack sequences.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

5
Question
XYZ Company has recently installed a controller-based WLAN and is using a RADIUS server to query authentication requests to an LDAP server. XYZ maintains user-based access policies and would like to use the RADIUS server to facilitate network authorization. What RADIUS feature could be used by XYZ to assign the proper network permissions to users during authentications?
Options
A The RADIUS server can communicate with the DHCP server to issue the appropriate IP address and VLAN assignment to users.
B RADIUS can send a DO-NOT-AUTHORIZE demand to the authenticator to prevent the STA from gaining access to specific files, but may only employ this in relation to Linux servers.
C The RADIUS server can support vendor-specific attributes in the ACCESS-ACCEPT response, which can be used for user policy assignment.
D RADIUS can reassign a client’s 802.11 association to a new SSID by referencing a username-to-SSID mapping table in the LDAP user database.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

Finish Practice?

Are you sure you want to finish? This will end your practice session.