ISC2 CISSP (Certified Information Systems Security Professional)Communication and Network SecurityMedium
A large university is upgrading its wireless network infrastructure. Due to the high density of users and the need for robust authentication against a central user directory (LDAP/Active Directory), the security team has decided to implement an enterprise-grade wireless security standard. Which standard provides the strongest authentication and encryption for this scenario?
- AWEP
- BWPA3-Enterprise
- COpen System Authentication
- DWPA2-PSK
Show answer & explanationAnswer & explanation
Correct answer: B. WPA3-Enterprise
WPA3-Enterprise is the strongest and most current standard for enterprise wireless security, offering enhanced encryption and authentication mechanisms, including support for 192-bit cryptographic strength and robust EAP methods against RADIUS/LDAP servers. WPA2-PSK is for personal use, WEP is deprecated, and Open System provides no security.
Why the other options are wrong
- A. WEP is an outdated and highly insecure standard with known vulnerabilities, unsuitable for any secure network.
- C. Open System Authentication provides no security, allowing any device to connect without a password, which is contrary to the requirement for robust authentication.
- D. WPA2-PSK (Personal) uses a pre-shared key, suitable for home networks but not for large enterprises requiring individual user authentication against a directory.
WPA3-Enterprise
The latest and most secure Wi-Fi Protected Access standard designed for enterprise environments, providing enhanced authentication and encryption.
- Uses 802.1X for authentication, typically with RADIUS/EAP.
- Supports 192-bit cryptographic strength for CNSA compliance.
- Offers stronger protection against dictionary attacks and improved key management.
Memory trick: WPA3-Enterprise: The 'Gold Standard' for serious network defense.