CompTIA A+ Core 2 (220-1202)SecurityMedium
A network administrator is configuring a new wireless access point (AP) for a small office. They want to implement the strongest possible wireless encryption standard currently available for personal use, without requiring an authentication server. Which protocol should be selected?
- AWPA2-Personal (PSK)
- BWPA3-Personal (SAE)
- CWPA3-Enterprise
- DWEP
Show answer & explanationAnswer & explanation
Correct answer: B. WPA3-Personal (SAE)
WPA3-Personal (SAE) is the strongest encryption standard for personal use, replacing WPA2-Personal with more robust key establishment (SAE) and protection against offline dictionary attacks, all without needing an authentication server.
Why the other options are wrong
- A. WPA2-Personal (PSK) is still common but less secure than WPA3 against certain attacks.
- C. WPA3-Enterprise requires an 802.1X authentication server (e.g., RADIUS) and is not for personal use setups.
- D. WEP is an outdated and insecure protocol.
WPA3-Personal (SAE)
WPA3-Personal, also known as WPA3-SAE (Simultaneous Authentication of Equals), is the latest and most secure Wi-Fi Protected Access protocol for personal networks.
- Replaces the pre-shared key (PSK) exchange with SAE for stronger key establishment.
- Protects against offline dictionary attacks.
- Provides opportunistic wireless encryption (OWE) for open networks, enhancing privacy.
Memory trick: WEP is weak, WPA2 is good, WPA3 is great, especially with SAE.