Secure Configuration for Wireless Network - Exam SY0-601: CompTIA Security+ (Provider: CompTIA)

Preventing SSID Broadcasting on Company Access Points

Prev Question Next Question

Question

A security administrator wants to configure a company's wireless network in a way that will prevent wireless clients from broadcasting the company's SSID.

Which of the following should be configured on the company's access points?

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D. E. F.

F.

The correct answer is F. Disable SSID broadcast.

SSID (Service Set Identifier) is the name of the wireless network that is broadcasted by wireless access points so that wireless clients can find and connect to the network. When the SSID broadcast is disabled, the wireless network becomes invisible to wireless clients, making it more difficult for attackers to discover and target the network.

Therefore, to prevent wireless clients from broadcasting the company's SSID, the security administrator should disable the SSID broadcast on the company's access points.

Now, let's go through the other answer options:

A. Enable ESSID broadcast: ESSID (Extended Service Set Identifier) is used in larger wireless networks to group multiple access points together. Enabling ESSID broadcast will not prevent wireless clients from broadcasting the company's SSID.

B. Enable protected management frames: Protected Management Frames (PMF) is a feature that provides additional security for wireless management traffic. Enabling PMF will not prevent wireless clients from broadcasting the company's SSID.

C. Enable wireless encryption: Wireless encryption, such as WPA2 or WPA3, is used to secure the wireless network by encrypting the traffic between the wireless access point and the wireless clients. Enabling wireless encryption will not prevent wireless clients from broadcasting the company's SSID.

D. Disable MAC authentication: MAC (Media Access Control) authentication is used to allow or deny access to the wireless network based on the MAC address of the wireless client. Disabling MAC authentication will not prevent wireless clients from broadcasting the company's SSID.

E. Disable WPS: WPS (Wi-Fi Protected Setup) is a feature that simplifies the process of connecting wireless devices to the network. Disabling WPS will not prevent wireless clients from broadcasting the company's SSID.

In summary, to prevent wireless clients from broadcasting the company's SSID, the security administrator should disable the SSID broadcast on the company's access points.