Test your basic knowledge |

CCNP Wireless Security

Subjects : cisco, it-skills, ccnp
Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. What is included in a Pairwise Transient Key (PTK)






2. Will foreign/anchor communication work through PAT?






3. Briefly describe peap






4. What must be configd on ACS to enable dot1x from switch






5. Encryption types used by SNMPv3






6. Steps to setting up an out-of-band virtual gateway NAS setup






7. Steps to configure wlcs for guest wlan






8. What are mping and eping used for from the wlc cli






9. Ports to open on fw to allow foreign to anchor controller tunnel to be built






10. Authentication types used by SNMPv3






11. How is IBN-VLAN Selection implemted in ACS






12. Main elements of a NAC deployment






13. How to set up tacacs roles in ACS for WLC authorization






14. Why add an IPS if WLCs already detect attacks.






15. What must be configured for SSO authentication to work






16. What does IBN allow you to assign






17. Steps to roaming in 802.1R






18. When PKC is used






19. Briefly describe eap-tls






20. 3 modes of radius fallback






21. What is the radius server override interface option under WLAN-->AAA?






22. Whats added in CCXv5?






23. Reason why you can NOT use WLC RADIUS server to auth. against OpenLDAP or Win-2003 (or later)






24. NAC Deployment Types






25. Enhanced Neighbor list






26. Whats in CCXv4?






27. What is Conditional Web Redirect






28. How is OEAP encrypted






29. What does a wired IPS do compared to the WLC IDS






30. Why is fast secure roaming used






31. 3 categories of segmented traffic






32. What is used for HREAP Roaming re: keying






33. How is IBN implemented on a WLAN






34. What is the WLAN-->Advanced--> DIagnostic Channel used for






35. Methods for authenticating to NAC






36. 6 criteria types for rogue classification






37. Switch global config to enable dot1x radius server






38. Things to Enable in ACS (Global Authentication Page) for PEAP support






39. What is the caveat to having redundant anchor controllers






40. What CCX version is required for CCKM






41. How does the Nac Appliance Agent (NAA) work cohesively with 802.1x






42. Steps to auth with NAA w/ SSO






43. What kind of local 802.1x auth. does HREAP support






44. What is NGS & whats it used for






45. What is 802.11w?






46. Steps to installing Server Cert into ACS






47. How is encryption established between OEAP & Anchor WLC






48. What triggers can initiate a WLC to request a client to roam






49. Steps to roaming in non802.1R






50. How does CCKM simplify PMK Caching