Hands-On Ethical Hacking and Network Defense, 3e, ISBN 9781285454610
Ch. 11 Solutions-1
Chapter 11 Solutions
Review Questions
1. Which IEEE standard defines authentication and authorization in wireless networks?
2. Which EAP method requires installing digital certificates on both the server and
client?
3. Which wireless encryption standard offers the best security?
4. Name a tool that can help reduce the risk of a wardriver attacking your WLAN.
airbase-ng, honeypots
5. What protocol was added to 802.11i to address WEP’s encryption vulnerability?
6. What IEEE standard defines wireless technology?
7. What information can be gathered by wardriving? (Choose all that apply.)
8. Disabling SSID broadcasts must be configured on the computer and the AP. True or
False?
9. What TKIP enhancement addressed the WEP vulnerability of forging packets?
10. Wi-Fi Protected Access (WPA) was introduced in which IEEE 802 standard?
c. 802.11i
11. Wardriving requires expensive hardware and software. True or False?
12. What is a known weakness of wireless network SSIDs?
13. Bluetooth technology is more vulnerable to network attacks than WLANs are. True
or False?
14. Which of the following channels is available in 802.11b for attempting to prevent
overlapping? (Choose all that apply).
15. Which authentication mechanisms and standards are currently exploitable?
16. An access point provides which of the following?
17. The IEEE 802.11 standard pertains to the ___________ and ____________ layers of
18. The operating frequency range of 802.11a is 2.4 GHz. True or False?
19. Which of the following typically functions as the 802.1X authenticator, allowing or
denying a supplicant’s access to a WLAN?
20. List three tools for conducting wireless security testing.
Activities
Activity 11-1
Step 2: Answers can vary. One example is CVE-2015-2052, which describes a vulnerability in the
Dlink DIR-645 wireless router with firmware 1.04b12. Attacker can enter a long string and
execute arbitrary code.
Activity 11-2
Step 3: The throughput of 802.11ay is at least 20Gbps. The throughput of the current standards is
between 11Mbps to 600Mbps.
Case Projects
Case Project 11-1: Determining Vulnerabilities of Wireless Networks
Students’ reports should recommend that the company disable SSID broadcasts and not use the
default SSID. An attacker could easily guess the SSID “linksys.” The company should also disable
Hands-On Ethical Hacking and Network Defense, 3e, ISBN 9781285454610
Ch. 11 Solutions-3
Case Project 11-2: Maintaining Security on Wireless Systems