Test your basic knowledge |

CCNP Wireless Security

Subjects : cisco, it-skills, ccnp
Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. What is used for HREAP Roaming re: keying






2. Why add an IPS if WLCs already detect attacks.






3. Directed Roam Request






4. Switch global config to enable dot1x radius server






5. What is the radius server override interface option under WLAN-->AAA?






6. What are the 4 main components of NGS re: guests






7. Encryption types used by SNMPv3






8. How fast is fast secure roaming






9. What CCX version is required for CCKM






10. Steps to setting up an out-of-band virtual gateway NAS setup






11. Things to Enable in ACS (Global Authentication Page) for PEAP support






12. 802.11R






13. Difference between MFP-1 & MFP-2






14. What part of an 802.11 Beacon contains the security mechanisms in use






15. Methods for authenticating to NAC






16. When PKC is used






17. How does infrastructure MFP work






18. Reason why you can NOT use WLC RADIUS server to auth. against OpenLDAP or Win-2003 (or later)






19. Whats included in 802.11-2012






20. How is OEAP encrypted






21. What must be configd on ACS to enable dot1x from switch






22. When submitting a CSR from ACS






23. What does a wired IPS do compared to the WLC IDS






24. How does the Nac Appliance Agent (NAA) work cohesively with 802.1x






25. Steps to auth with NAA w/ SSO






26. Ports to open on fw to allow foreign to anchor controller tunnel to be built






27. Switchport config to enable dot1x on a port






28. What kind of local 802.1x auth. does HREAP support






29. Difference between mobility list and mobility group






30. Briefly describe peap






31. When will a WLC use a Local EAP profile?






32. How is the CAPWAP tunnel between AP & WLC encrypted






33. What does FIPS-2 require for WLC to RADIUS communications






34. What is the WLAN-->Advanced--> DIagnostic Channel used for






35. What kind of mgmt frames does client mfp protect






36. How is encryption established between OEAP & Anchor WLC






37. Will foreign/anchor communication work through PAT?






38. Client Roaming Reasons






39. How does client MFP work






40. 6 criteria types for rogue classification






41. Why is fast secure roaming used






42. Steps to roaming in non802.1R






43. IAPP roaming protocol






44. Whats in CCXv4?






45. What is Ciscos gold confidence level deployment of wIPS aps in a walled environment






46. How to add IPS TLS info to WLC






47. Enhanced Neighbor list - E2E






48. Encryption algorithm used by Certificates






49. How to set up tacacs roles in ACS for WLC authorization






50. What is HREAP Local Auth limitation