← All CWS Flashcard Decks

Wireless Security & Troubleshooting Techniques Flashcards

7 cards from real CWS practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.

Read the first 7 Wireless Security & Troubleshooting Techniques flashcards as text
  1. Which WPA3 feature provides forward secrecy, meaning past session traffic cannot be decrypted even if the PSK is later compromised?

    Answer: SAE (Simultaneous Authentication of Equals)

    SAE (Dragonfly handshake) in WPA3-Personal generates unique session keys, ensuring that compromising the PSK does not expose previously recorded sessions.

  2. A company deploys a wireless IDS (WIDS). Which behavior would MOST likely trigger a rogue AP alert?

    Answer: An AP with the corporate SSID whose BSSID (MAC) is not in the authorized AP list

    A WIDS compares detected BSSIDs against an authorized list; an unfamiliar MAC broadcasting the corporate SSID is a classic rogue AP indicator.

  3. In WPA2-Enterprise, after successful 802.1X authentication, the RADIUS server sends which message to the AP to allow client access?

    Answer: RADIUS Access-Accept

    A RADIUS Access-Accept message signals the AP (authenticator) to grant network access and may include VLAN assignment attributes.

  4. A technician suspects a microwave oven is causing interference. In which frequency band and approximate channel range would this interference appear?

    Answer: 2.4 GHz, the entire band (channels 1–14)

    Microwave ovens emit broadband noise across most of the 2.4 GHz ISM band (~2.4–2.5 GHz), affecting all channels in that band.

  5. Which command-line tool on macOS can display the currently associated SSID, BSSID, channel, and signal strength for the Wi-Fi interface?

    Answer: /System/Library/PrivateFrameworks/Apple80211.framework/Versions/Current/Resources/airport -I

    The macOS 'airport' utility reports detailed 802.11 connection information including SSID, BSSID, channel, RSSI, and security type.

  6. What is the function of an RF spectrum analyzer in wireless troubleshooting?

    Answer: It measures energy across a frequency range to detect interference sources regardless of protocol

    A spectrum analyzer visualizes raw RF energy across frequencies, identifying non-802.11 interferers like Bluetooth, ZigBee, or microwave sources that a packet sniffer would miss.

  7. Which security vulnerability does MAC address filtering FAIL to mitigate?

    Answer: MAC address spoofing by an attacker who has observed an authorized MAC

    MAC addresses are transmitted in plaintext in 802.11 frames, so an attacker can clone an authorized MAC address to bypass filtering.