Test your basic knowledge |

CCNP Wireless Security

Subjects : cisco, it-skills, ccnp
Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Enhanced Neighbor list






2. Steps to installing Server Cert into ACS






3. Steps to config. .1x for AP to WLC connections






4. What is the IEEE Standards version of MFP






5. What part of an 802.11 Beacon contains the security mechanisms in use






6. Difference between MFP-1 & MFP-2






7. What is Ciscos gold confidence level deployment of wIPS aps in a walled environment






8. Switch global config to enable dot1x radius server






9. Whats included in 802.11-2012






10. Things to Enable in ACS (Global Authentication Page) for PEAP support






11. 2 different types of wIPS deployment






12. What is used for HREAP Roaming re: keying






13. How does CCKM simplify PMK Caching






14. Why is fast secure roaming used






15. When will a WLC use a Local EAP profile?






16. What is needed to use Locally Significat Certificates (LSC) when establishing tunnel from OEAP to WLC






17. What is the radius server override interface option under WLAN-->AAA?






18. Steps to setting up an out-of-band virtual gateway NAS setup






19. How is the CAPWAP tunnel between AP & WLC encrypted






20. What must be configd on ACS to enable dot1x from switch






21. Whats added in CCXv5?






22. Briefly describe eap-tls






23. Reason why you can NOT use WLC RADIUS server to auth. against OpenLDAP or Win-2003 (or later)






24. What does a wired IPS do compared to the WLC IDS






25. What are virtual domains used for in WCS






26. How does the Nac Appliance Agent (NAA) work cohesively with 802.1x






27. What must be configured the same for an HREAP not to disconnect clients when failing over (or back) to a WLC






28. IAPP roaming protocol






29. Switchport config to enable dot1x on a port






30. What is included in a Pairwise Transient Key (PTK)






31. RADIUS UDP Ports






32. What are the 4 main components of NGS re: guests






33. Steps to auth with NAA w/ SSO






34. WLC Tacacs+ roles






35. Steps to posture assesment






36. How is OEAP encrypted






37. Steps to adding an IPS






38. 3 modes of radius fallback






39. What is the caveat to having redundant anchor controllers






40. Is data encrypted over a capwap tunnel?






41. What kind of local 802.1x auth. does HREAP support






42. Why add an IPS if WLCs already detect attacks.






43. What does FIPS-2 require for WLC to RADIUS communications






44. How to add IPS TLS info to WLC






45. Steps to roaming in non802.1R






46. What does IBN allow you to assign






47. 802.11R






48. Briefly describe eap-mschapv2






49. When PKC is used






50. Protocols used in wIPS