Courseiva

GSEC · domain

Wireless Network Security

This GSEC domain covers securing 802.11 wireless LANs: WPA2/WPA3 authentication choices, rogue AP and evil twin detection, WIPS containment, and management-frame attacks. Questions are scenario-based, asking you to pick the control or setting that best removes a specific risk rather than merely detecting it.

14 questions2 easy6 medium6 hard

Focused practice

Practice Wireless Network Security questions

Scored sessions drawing only from this domain — pick a length below.

What this domain covers

What to know about Wireless Network Security

Be able to select the wireless control that eliminates a stated risk: WPA2-Enterprise with 802.1X for unique per-user authentication, and WIPS containment for rogue APs. The key is matching the mitigation to whether the problem is authentication, rogue devices, or management-frame abuse.

Choosing WPA2-Enterprise with 802.1X/EAP over WPA2-Personal PSK to give each user unique credentials

Configuring WIPS rogue-AP classification and automatic containment of unauthorized access points

Identifying risky AP settings such as open authentication, WEP, or WPS enabled

Recognizing 802.11 deauthentication and disassociation frame floods as denial-of-service or handshake-capture attacks

Watch out for

Common Wireless Network Security exam traps

  • ▸Assuming a strong shared PSK is sufficient; WPA2-Personal still shares one key, so it cannot provide per-employee authentication or revocation
  • ▸Confusing detection with prevention: a WIPS that only alerts does not contain a rogue AP unless containment is explicitly enabled
  • ▸Treating deauthentication floods as encryption failures when they are unauthenticated management frames used to disrupt or capture handshakes

Question index

All Wireless Network Security questions (14)

Click any question to see the full explanation, or start a practice session above.

1

A security engineer is reviewing the WLAN configuration of a small business that uses WPA2-Personal. The owner wants to raise resistance to offline dictionary attacks against the preshared key without replacing all client hardware. Which two changes best accomplish this goal? (Choose two.)

Medium
2

An administrator observes unauthorized devices connecting to an enterprise wireless network using WPA2-Personal. Which mitigation strategy best prevents credential sharing and ensures unique authentication for every employee?

Medium
3

Which THREE of the following actions are considered best practices when hardening an enterprise wireless infrastructure?

Hard
4

A hospital's wireless network uses WPA2-Enterprise with PEAP-MSCHAPv2. A security engineer discovers that an attacker can capture a client's authentication exchange and crack the password offline. Which change most directly mitigates this specific attack?

Medium
5

A financial services firm deploys 802.1X with EAP-TLS on its corporate WLAN. During an assessment, a consultant captures the 802.11 four-way handshake and observes that the attacker cannot derive the PMK because the exchange never leaves the client and RADIUS-issued credentials exposed. Which property of EAP-TLS best explains why this capture alone cannot be used to impersonate a legitimate client?

Medium
6

A hospital's wireless intrusion prevention system reports that a nearby attacker is broadcasting beacon frames that clone the SSID and BSSID of the hospital's legitimate access point at a higher signal strength, luring staff laptops to associate with the attacker's hardware. Which attack is being described, and which defense most directly addresses it?

Hard
7

A security auditor notices that wireless clients are frequently disconnected by de-authentication frames that contain a spoofed MAC address of the access point. What is the auditor witnessing?

Medium
8

An assessor is standing in a parking lot outside a warehouse and needs to map the coverage footprint and identify all BSSIDs in range, including hidden networks, using a passive approach that does not associate to any AP. Which tool and technique fit this requirement?

Hard
9

A security researcher is evaluating the susceptibility of a WPA3-Personal network to offline dictionary attacks. Which statement accurately describes the resistance provided by WPA3-SAE compared to WPA2-PSK?

Hard
10

Which TWO of the following statements are true regarding the use of WPA3 compared to WPA2?

Hard
11

A retail chain wants to let customers join a guest WLAN without sharing the corporate preshared key, while still keeping guest traffic isolated from point-of-sale systems. Which design best meets these requirements?

Easy
12

A security analyst at a financial firm is reviewing wireless traffic captured near the executive conference room. The capture shows a flood of 802.11 management frames with source addresses set to the company's legitimate AP MAC address, but the frames are not encrypted and are arriving at a high rate. Which type of attack is most likely occurring?

Medium
13

A security administrator is configuring a new wireless intrusion prevention system (WIPS) for a corporate campus. The administrator wants the WIPS to automatically contain an unauthorized access point that is broadcasting the corporate SSID. Which WIPS capability should be enabled to achieve this?

Easy
14

Refer to the exhibit. Which configuration setting poses the most significant risk to the wireless network environment?

Hard

Frequently asked questions

What does the Wireless Network Security domain cover on the GSEC exam?
Be able to select the wireless control that eliminates a stated risk: WPA2-Enterprise with 802.1X for unique per-user authentication, and WIPS containment for rogue APs. The key is matching the mitigation to whether the problem is authentication, rogue devices, or management-frame abuse.
How many questions are in this domain?
This page lists all 14 Wireless Network Security questions in the GSEC question bank. The actual exam draws from this domain proportionally to its weighting in the official exam blueprint.
What is the best way to practise this domain?
Start with a short focused session (10 questions) to identify gaps, then work through explanations. Repeat with a longer session once the weak areas feel solid.
Can I practise only Wireless Network Security questions?
Yes — the session launcher on this page filters questions to this domain only. Choose any session length for inline explanations and scoring.
giac-gsec GIAC-GSEC wireless network security Practice Questions