CompTIA A+ Core 2 (220-1202)SecurityMedium

A network administrator is configuring a new wireless access point (AP) for a small office. They want to implement the strongest possible wireless encryption standard currently available for personal use, without requiring an authentication server. Which protocol should be selected?

  1. AWPA2-Personal (PSK)
  2. BWPA3-Personal (SAE)
  3. CWPA3-Enterprise
  4. DWEP
Show answer & explanation

Correct answer: B. WPA3-Personal (SAE)

WPA3-Personal (SAE) is the strongest encryption standard for personal use, replacing WPA2-Personal with more robust key establishment (SAE) and protection against offline dictionary attacks, all without needing an authentication server.

Why the other options are wrong

  • A. WPA2-Personal (PSK) is still common but less secure than WPA3 against certain attacks.
  • C. WPA3-Enterprise requires an 802.1X authentication server (e.g., RADIUS) and is not for personal use setups.
  • D. WEP is an outdated and insecure protocol.

WPA3-Personal (SAE)

WPA3-Personal, also known as WPA3-SAE (Simultaneous Authentication of Equals), is the latest and most secure Wi-Fi Protected Access protocol for personal networks.

  • Replaces the pre-shared key (PSK) exchange with SAE for stronger key establishment.
  • Protects against offline dictionary attacks.
  • Provides opportunistic wireless encryption (OWE) for open networks, enhancing privacy.

Memory trick: WEP is weak, WPA2 is good, WPA3 is great, especially with SAE.

More Security questions