exam questions

Exam SY0-501 All Questions

View all questions & answers for the SY0-501 exam

Exam SY0-501 topic 1 question 563 discussion

Actual exam question from CompTIA's SY0-501
Question #: 563
Topic #: 1
[All SY0-501 Questions]

HOTSPOT -
A newly purchased corporate WAP needs to be configured in the MOST secure manner possible.

INSTRUCTIONS -
Please click on the below items on the network diagram and configure them accordingly:
✑ WAP
✑ DHCP Server
✑ AAA Server
✑ Wireless Controller
✑ LDAP Server
If at any time you would like to bring back the initial state of the simulation, please click the Reset All button.





Hot Area:

Show Suggested Answer Hide Answer
Suggested Answer:

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
YettiSpider
Highly Voted 4 years ago
Anyone have an idea what is going on here
upvoted 13 times
Fernando001
4 years ago
No idea
upvoted 2 times
...
Brittle
3 years, 11 months ago
I am so lost too. Don’t even have any idea
upvoted 3 times
...
...
AkilaM
Highly Voted 3 years, 11 months ago
Why RADIUS , why not WPA2-ENTERPRISE?
upvoted 11 times
...
AbdullahMohammad251
Most Recent 1 year ago
After reading different online articles, I came up with the following answer: Wireless network mode should be "mixed" to support legacy wireless devices that do no not support newer standards. The best channels to avoid adjacent channel interference are 1, 6, and 11. You can choose any of the 3 channels. Wireless SSID broadcasts should be disabled to make them less visible to inexperienced hackers. Security mode would be WPA2 enterprise which gives every user a different password to connect to the wireless network. WPA2-enterprise introduces a need to use a dedicated device to store all these different passwords. A radius server is used. It is found in our network diagram as an "AAA server" and uses port number 1812, which is the UDP port used by RADIUS servers for authentication.
upvoted 3 times
https://www.metageek.com/training/resources/why-channels-1-6-11/ https://nordvpn.com/blog/how-to-disable-ssid-broadcast/ https://nordvpn.com/blog/wep-vs-wpa-vs-wpa2-vs-wpa3/ https://www.securew2.com/blog/should-wpa2-enterprise-be-used-for-my-home-network#:~:text=With%20WPA2%2DPersonal%2C%20all%20devices,some%20additional%20hardware%20is%20necessary.
upvoted 2 times
Also this link for why should we use mixed mode? https://www.watchguard.com/help/docs/help-center/en-US/Content/en-US/Fireware/wireless/ap_about_wireless_modes_c.html
upvoted 1 times
...
...
...
itssnowyseason
3 years, 4 months ago
Based on what I've seen so far on other answers G 11 Disabled WPA2 Personal Also this answer is INCOMPLETE there is typing involved and you need to type the radius, IP, and port I personally forgot what needed to be type but I'm going with what Texrax said
upvoted 3 times
zoeyaj
3 years, 3 months ago
If you want to type Radius IP and Port, you need to pick WPA2 Enterprise or RADIUS. You just take information from AAA (which is Radius)
upvoted 2 times
...
...
jawadiq
3 years, 5 months ago
Radius and WPA2 enterprise needs 802.1x , In the question WAP only support b and g, so best secure is Mixed , Channel 11 ( best avoiding interference ) Security : WPA2 Personal
upvoted 1 times
dax61
1 year, 6 months ago
Should it be MIXED (I am not sure about this. But going with MIXED that supports both B and G) Channel 11 Disabled WPA2 Enterprise (as it is using Radius for authentication?)
upvoted 1 times
...
...
QualityRich
3 years, 7 months ago
Wire Access Point (WAP) does NOT give you the option RADIUS. The most secure for the Wireless Security is WPA2 Enterprise. That means there is a RADIUS server involved in the network. Remember! WPA2 Enterprise uses IEEE 802.1X, WPA/WPA2 Enterprise is specifically designed for use in organizations
upvoted 5 times
...
QualityRich
3 years, 7 months ago
Wire Access Point (WAP) does NOT give you the option RADIUS. The most secure for the Wireless Security is WPA2 Enterprise. That means there is a RADIUS server involved in the network. Remember! WPA2 Enterprise uses IEEE 802.1X, WPA/WPA2 Enterprise is specifically designed for use in organizations
upvoted 2 times
...
uyyutgy
3 years, 10 months ago
From my understanding , we can only confiqure the WAP here and the details supplied are very limited to give answers on the wireless mode b/g and the broadcast channels (1, 6 or 11 for least chance of overlap) but WPA2-Enterprise (as it requires a Radius Server), so my exam input will be G only (no legacy devices were stated, so it is more secure to disable B) 11....1,6,11 are all the same as we dont know if there are other WAP broadcasting nearby Disable SSID WPA2- Enterprise (because WPA-Enerprise is weaker even with RADIUS) I could be wrong, tell me what you think?
upvoted 7 times
[Removed]
2 years, 5 months ago
I would go with this one also for sure
upvoted 1 times
...
...
StickyMac231
3 years, 11 months ago
For my understanding that we need to configure AAA server. And best way to understand must certify in Net+. So you can see how WAP is set up for secure network.
upvoted 2 times
...
Brittle
3 years, 11 months ago
I am asking why choose G only when the channels are 11 ? Is it not supposed to be B only since they are 11 channels bc B uses 2.5Hz and 11mbps. I need help plz
upvoted 2 times
...
Dion79
3 years, 11 months ago
Part of the answer. https://jumpcloud.com/blog/radius-improve-wifi-security
upvoted 2 times
...
monkeyyyyy
3 years, 11 months ago
I feel both the question and the answer is incomplete. I feel the answer is incomplete. The instruction part also asks us to configure DHCP Server, AAA Server, Wireless Controller, and LDAP Server. I'm so confused.
upvoted 2 times
docholliday65
3 years, 7 months ago
so i just took 601 and this question was still in there. i feel like the dhcp and ldap are just there to mess with you, the only things i focused on was the AAA server, the wireless controller and the wap itself. did just fine, passed with a 787
upvoted 4 times
...
...
that_guy
3 years, 11 months ago
Could anyone confirm we only need to config the WAP? Instructions say that we need to configure DHCP server, AAA server, Wireless Controller and LDAP Server too but I did not see anywhere to do this except some given info?
upvoted 5 times
Texrax
3 years, 10 months ago
Yes you can only configure the WAP. Other devices only give info. Tl Answer is incomplete. You have to also enter radius IP, port and secret. No idea how the wireless settings contribute to secure setup.
upvoted 1 times
...
...
sukhpal
3 years, 11 months ago
Please explain the answer.
upvoted 1 times
...
Born_Again
3 years, 12 months ago
Wireless G supports a maximum theoretical transfer rate of 54mbps. Like Wireless B, it operates at the unregulated 2.4GHz frequency range. So it has the same interference issues that Wireless B has. ... As you can see, the main benefit of a Wireless G router over a Wireless B router is speed.
upvoted 2 times
...
Bristy
3 years, 12 months ago
https://thewiredshopper.com/wireless-b-vs-g-vs-n-vs-ac/
upvoted 1 times
...
tomars
3 years, 12 months ago
I have no idea but I think mode G is newer than mode B, disabling ssid broadcast is more 'secure', and radius is more sure than wpa enterprise. Why wireless channel 11??
upvoted 2 times
BubbaJones
3 years, 11 months ago
Less overlap with other channels.
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago