An engineer must implement intrusion protection on the WLAN. The AP coverage is adequate and on-channel attacks are the primary concern. The building is historic, which makes adding APs difficult. Which AP mode and submode must be implemented?
This is on the Guide Chapter 14.
aWIPS can work but is inefficient in this case, and attack detection
may be slow. However, if you are primarily concerned about on-channel attacks (that
is, incidents where attackers attempt to spoof your APs, act as relays, or perform other
attacks while operating on the same channels as your active APs), then this mode is
perfectly sufficient.
Both B and D would enable Intrusion protection. However, D is the best answer because the question states that the building is historic and adding APs is difficult. Therefore you would not want to switch existing client serving local access points to monitor mode as this would create coverage holes not easily filled by adding coverage. D keeps the access point client serving as well as implementing intrusion protection.
https://www.cisco.com/c/en/us/td/docs/wireless/technology/wips/deployment/guide/WiPS_deployment_guide.html
On-Channel vs. Off-Channel Scanning per wIPS Mode
The figure below explains the radio’s behavior. When a radio is on its serving channel it is considered “on-channel”, when the radio is scanning other channels, it is considered “off-channel”.
An AP in local mode is mostly “on-channel”, making it difficult to detect attackers “off-channel”. A monitor mode AP is always “off-channel”, but cannot server clients, the WSM module provides a great combination of both.
This section is not available anymore. Please use the main Exam Page.300-430 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
55f2ace
1Â week agoGoldLeader
9Â months, 2Â weeks agoanagy11
10Â months agoanagy11
10Â months agoTonymopar
10Â months, 4Â weeks agoVlad_Is_Love_ua
12Â months agoBergin_a
1Â year agoCitizenx
1Â year, 12Â months agokthekillerc
2Â years, 6Â months ago