SSCP Systems Security Certified PractitionerNetwork and Communications SecurityEasy
A network administrator is configuring a new wireless access point (WAP) for a small office. The administrator wants to prevent unauthorized devices from connecting to the network by filtering based on hardware addresses. Which of the following security features should the administrator enable?
- AWPA3-Personal
- BSSID Broadcasting
- CWEP Encryption
- DMAC Address Filtering
Show answer & explanationAnswer & explanation
Correct answer: D. MAC Address Filtering
MAC Address Filtering allows the administrator to create a list of approved MAC addresses, and only devices with those addresses will be permitted to connect. While it offers a basic layer of security, it is easily bypassed and should not be the sole security measure.
Why the other options are wrong
- A. WPA3-Personal provides strong encryption and authentication but does not filter based on hardware addresses.
- B. SSID Broadcasting makes the network name visible, which is the opposite of hiding it for security.
- C. WEP Encryption is an outdated and insecure encryption protocol that is easily cracked.
MAC Address Filtering
A security technique that controls access to a network by allowing or denying devices based on their unique Media Access Control (MAC) address.
- Uses hardware addresses for access control.
- Provides a basic layer of security.
- Easily bypassed by MAC spoofing.
Memory trick: MACs Block Bad Connections.