Test your basic knowledge |

CCNP Wireless Security

Subjects : cisco, it-skills, ccnp
Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. What does a wired IPS do compared to the WLC IDS






2. Enhanced Neighbor list - E2E






3. Things to Enable in ACS (Global Authentication Page) for PEAP support






4. Why add an IPS if WLCs already detect attacks.






5. Steps to configure wlcs for guest wlan






6. Switchport config to enable dot1x on a port






7. Main elements of a NAC deployment






8. RADIUS UDP Ports






9. 6 criteria types for rogue classification






10. What does IBN allow you to assign






11. Switch global config to enable dot1x radius server






12. Will foreign/anchor communication work through PAT?






13. What does Fast Secure Roaming use re: Keying






14. What is 802.11w?






15. How fast is fast secure roaming






16. What is used for HREAP Roaming re: keying






17. What does Proactive Key Caching do






18. What is Conditional Web Redirect






19. What is included in a Pairwise Transient Key (PTK)






20. Reason why you can NOT use WLC RADIUS server to auth. against OpenLDAP or Win-2003 (or later)






21. Vlan pooling






22. What is the radius server override interface option under WLAN-->AAA?






23. How is IBN-QoS






24. Client Roaming Reasons






25. What CCX version is required for CCKM






26. 802.11R






27. Whats in CCXv4?






28. How to set up tacacs roles in ACS for WLC authorization






29. What is the WLAN-->Advanced--> DIagnostic Channel used for






30. Steps to auth with NAA w/ SSO






31. Why is fast secure roaming used






32. Describe AP Assisted Roaming






33. Encryption algorithm used by Certificates






34. Steps to setting up an out-of-band virtual gateway NAS setup






35. Methods for authenticating to NAC






36. Steps to posture assesment






37. What is the caveat to having redundant anchor controllers






38. Eap process/messages






39. Peap fast reconnect






40. What must be configured the same for an HREAP not to disconnect clients when failing over (or back) to a WLC






41. How is the CAPWAP tunnel between AP & WLC encrypted






42. What does FIPS-2 require for WLC to RADIUS communications






43. Briefly describe eap-tls






44. What is the IEEE Standards version of MFP






45. What kind of mgmt frames does client mfp protect






46. Briefly describe peap






47. What triggers can initiate a WLC to request a client to roam






48. What must be configured for SSO authentication to work






49. How does the Nac Appliance Agent (NAA) work cohesively with 802.1x






50. Steps to config. .1x for AP to WLC connections