SSCP Systems Security Certified PractitionerNetwork and Communications SecurityEasy

A network administrator is configuring a new wireless access point (WAP) for a small office. The administrator wants to prevent unauthorized devices from connecting to the network by filtering based on hardware addresses. Which of the following security features should the administrator enable?

  1. AWPA3-Personal
  2. BSSID Broadcasting
  3. CWEP Encryption
  4. DMAC Address Filtering
Show answer & explanation

Correct answer: D. MAC Address Filtering

MAC Address Filtering allows the administrator to create a list of approved MAC addresses, and only devices with those addresses will be permitted to connect. While it offers a basic layer of security, it is easily bypassed and should not be the sole security measure.

Why the other options are wrong

  • A. WPA3-Personal provides strong encryption and authentication but does not filter based on hardware addresses.
  • B. SSID Broadcasting makes the network name visible, which is the opposite of hiding it for security.
  • C. WEP Encryption is an outdated and insecure encryption protocol that is easily cracked.

MAC Address Filtering

A security technique that controls access to a network by allowing or denying devices based on their unique Media Access Control (MAC) address.

  • Uses hardware addresses for access control.
  • Provides a basic layer of security.
  • Easily bypassed by MAC spoofing.

Memory trick: MACs Block Bad Connections.

More Network and Communications Security questions