Complete list of current Q & A>> Download Securing Cisco Wireless Enterprise Networks (300-375) – Quiz 1 / 10 Category: Securing Cisco Wireless Enterprise Networks (300-375) An engineer is configuring client MFP. What WLAN Layer 2 security must be selected to use client MFP? A. Static WEP B. CKIP C. WPA + WPA2 D. 802.1x 2 / 10 Category: Securing Cisco Wireless Enterprise Networks (300-375) After receiving an alert regarding a rogue AP, a network engineer logs into Cisco Prime and looks at the floor map where the AP that detected the rogue is located. The map is synchronized with a mobility services engine that determines the rogue device is actually inside the campus. The engineer determines the rogue to be a security threat and decides to stop it from broadcasting inside the enterprise wireless network. What is the fastest way to disable the rogue? A. Go to the location the rogue device is indicated to be and disable the power. B. Create an SSID on the WLAN controller resembling the SSID of the rogue to spoof it and disable clients from connecting to it. C. Classify the rogue as malicious in Cisco Prime. D. Update the status of the rogue in Cisco Prime to contained. 3 / 10 Category: Securing Cisco Wireless Enterprise Networks (300-375) A customer is concerned about denial of service attacks that impair the stable operation of the corporate wireless network. The customer wants to purchase mobile devices that will operate on the corporate wireless network. Which IEEE standard should the mobile devices support to address the customer concerns? A. 802.11w B. 802.11k C. 802.11r D. 802.11h 4 / 10 Category: Securing Cisco Wireless Enterprise Networks (300-375) When you configure BYOD access to the network, you face increased security risks and challenges. Which challenge is resolved by deploying digital client certificates? A. managing the increase in connected devices B. ensuring wireless LAN performance and reliability C. providing device choice and support D. enforcing company usage policies 5 / 10 Category: Securing Cisco Wireless Enterprise Networks (300-375) An engineer is configuring a BYOD deployment strategy and prefers a single SSID model. Which technology is required to accomplish this configuration? A. mobility service engine B. wireless control system C. identity service engine D. Prime Infrastructure 6 / 10 Category: Securing Cisco Wireless Enterprise Networks (300-375) WPA2 Enterprise with 802.1x is being used for clients to authenticate to a wireless network through an ACS server. For security reasons, the network engineer wants to ensure only PEAP authentication can be used. The engineer sent instructions to clients on how to configure their supplicants, but users are still in the ACS logs authenticating using E-FAST. Which option describes the most efficient way the engineer can ensure these users cannot access the network unless the correct authentication mechanism is configured? A. Enable AAA override on the SSID, gather the usernames of these users, and disable their RADIUS accounts until they make sure they correctly configured their devices. B. Enable AAA override on the SSID and configure an access policy in ACS that denies access to the list of MACs that have used EAP-FAST. C. Enable АAА override on the SSID and configure an access policy in ACS that allows access only when the EAP authentication method is PEAP. D. Enable AAA override on the SSID and configure an access policy in ACS that puts clients that authenticated using EАР-FAST into a quarantine VLAN. 7 / 10 Category: Securing Cisco Wireless Enterprise Networks (300-375) Which two considerations must a network engineer have when planning for voice over wireless roaming? (Choose two.) A. Roaming with only 802.1x authentication requires full reauthentication. B. Roaming time increases when using 802.1x + Cisco Centralized Key Management. C. Full reauthentication introduces gaps in a voice conversation. D. Roaming occurs when the phone has reached -80 dBs or below. E. Roaming occurs when the phone has seen at least four APs. 8 / 10 Category: Securing Cisco Wireless Enterprise Networks (300-375) Which two 802.11 methods can be configured to protect card holder data? (Choose two.) A. CCMP B. WEP C. SSL D. TKIP E. VPN 9 / 10 Category: Securing Cisco Wireless Enterprise Networks (300-375) An engineer is changing the authentication method of a wireless network from EAP-FAST to EAP-TLS. Which two changes are necessary? (Choose two.) A. Cisco Secure ACS is required. B. A Cisco NAC server is required. C. All authenticating clients require their own certificates. D. The authentication server now requires a certificate. E. The users require the Cisco AnyConnect client. 10 / 10 Category: Securing Cisco Wireless Enterprise Networks (300-375) Which mobility mode must a Cisco 5508 Wireless Controller be in to use the MA functionality on a Cisco Catalyst 3850 Series Switch with a Cisco 5508 Wireless Controller as an MC? A. classic mobility B. new mobility C. converged access mobility D. auto-anchor mobility Your score is 0% Restart quiz Send feedback