Wireless Security Settings Flashcards

1
Q

What is WEP?

A

Wire Equivalent Privacy

Outdated 1999 wireless security standard meant to match wire LAN security for wireless networks

employs a static encryption key system where devices on the same network use the same key to encrypt and decrypt messages.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is 64-bit WEP?

A

Consists of 40 bits of actual key data plus an extra 24 bits of initialization vector

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is 128-bit WEP?

A

Includes 104 bits of key data and an additional 24 bits of initialization vector

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Why is WEP bad?

A

Insecure because of a weak 24-bit initialization vector

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is WPA?

A

Wi-Fi Protected Access

Introduced in 2003 as a temporary improvement over WEP while the more robust IEEE 802.11i standard was in development

This improved security with TKIP which generates new 128-bit keys for each packet, eliminating WEP’s key-reuse vulnerabilities

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

When you hear about WPA, consider what?

A

Insecure because of the lack of sufficient data integrity checks in the TKIP implementation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is WPA2?

A

Wi-Fi Protected Access 2

Improved data protection and network access control by addressing weaknesses in WPA version

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is WPA3?

A

Wi-Fi Protected Access 3

Latest version using AES encryption and introducing new features like SAE, enhanced open, updated cryptographic protocols, and management protection frames

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is SAE?

A

Simultaneous Authentication of Equals

Enhances security by offering a key establishment protocol to guard against offline dictionary attacks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is OWE?

A

Enhanced Open/Opportunistic Wireless Encryption

Major advancement in wireless security, especially for networks using open authentication

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is Cryptographic Protocol?

A

Uses a newer variant of AES known as the AES GCMP

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is GCMP?

A

Galois Counter Mode Protocol

Supports 128-bit AES for personal networks and 192-bit AES for enterprise networks with WPA3

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What are Management Protection Frames?

A

Required to protect network from key recovery attacks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is the AAA Protocol?

A

RADIUS or TACACS+

pivotal in managing network security by facilitating the centralization of user authentication to ensure that only authorized individuals can access the network resources.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is RADIUS?

A

Remote Authentication Dial-In User Service Protocol (AAA Protocol)

client/server protocol offering AAA services for network users

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is TACACS+?

A

Terminal Access Controller Access-Control System Plus Protocol (AAA Protocol)

Separates the functions of AAA to allow for more granular control over processes

17
Q

What are Authentication Protocols?

A

Confirm user identity for network security and authorized access

18
Q

What is EAP?

A

Extensible Authentication Protocol

authentication framework that supports multiple authentication methods

19
Q

What is PEAP?

A

Protected Extensible Authentication Protocol

authentication protocol that encapsulates EAP within a potentially encrypted and authenticated transport layer security or TLS tunnel.

Requires dual sided certificate authentication (server/client)

20
Q

What is EAP-TTLS?

A

Extensible Authentication Protocol Tunneled Transport Layer Security

authentication protocol that extends TLS support across multiple platforms.

Requires a certificate only on the service side (server)

21
Q

What is EAP-FAST?

A

Extensible Authentication Protocol Flexible Authentication via Secure Tunneling

authentication protocol developed by Cisco Systems that allows users to re-authenticate securely when roaming within a network without having to perform full authentication every single time.