GSEC · domain
Wireless Network Security
This GSEC domain covers securing 802.11 wireless LANs: WPA2/WPA3 authentication choices, rogue AP and evil twin detection, WIPS containment, and management-frame attacks. Questions are scenario-based, asking you to pick the control or setting that best removes a specific risk rather than merely detecting it.
Focused practice
Practice Wireless Network Security questions
Scored sessions drawing only from this domain — pick a length below.
What this domain covers
What to know about Wireless Network Security
Be able to select the wireless control that eliminates a stated risk: WPA2-Enterprise with 802.1X for unique per-user authentication, and WIPS containment for rogue APs. The key is matching the mitigation to whether the problem is authentication, rogue devices, or management-frame abuse.
Choosing WPA2-Enterprise with 802.1X/EAP over WPA2-Personal PSK to give each user unique credentials
Configuring WIPS rogue-AP classification and automatic containment of unauthorized access points
Identifying risky AP settings such as open authentication, WEP, or WPS enabled
Recognizing 802.11 deauthentication and disassociation frame floods as denial-of-service or handshake-capture attacks
Watch out for
Common Wireless Network Security exam traps
- ▸Assuming a strong shared PSK is sufficient; WPA2-Personal still shares one key, so it cannot provide per-employee authentication or revocation
- ▸Confusing detection with prevention: a WIPS that only alerts does not contain a rogue AP unless containment is explicitly enabled
- ▸Treating deauthentication floods as encryption failures when they are unauthenticated management frames used to disrupt or capture handshakes
Question index
All Wireless Network Security questions (14)
Click any question to see the full explanation, or start a practice session above.
A security engineer is reviewing the WLAN configuration of a small business that uses WPA2-Personal. The owner wants to raise resistance to offline dictionary attacks against the preshared key without replacing all client hardware. Which two changes best accomplish this goal? (Choose two.)
Medium2An administrator observes unauthorized devices connecting to an enterprise wireless network using WPA2-Personal. Which mitigation strategy best prevents credential sharing and ensures unique authentication for every employee?
Medium3Which THREE of the following actions are considered best practices when hardening an enterprise wireless infrastructure?
Hard4A hospital's wireless network uses WPA2-Enterprise with PEAP-MSCHAPv2. A security engineer discovers that an attacker can capture a client's authentication exchange and crack the password offline. Which change most directly mitigates this specific attack?
Medium5A financial services firm deploys 802.1X with EAP-TLS on its corporate WLAN. During an assessment, a consultant captures the 802.11 four-way handshake and observes that the attacker cannot derive the PMK because the exchange never leaves the client and RADIUS-issued credentials exposed. Which property of EAP-TLS best explains why this capture alone cannot be used to impersonate a legitimate client?
Medium6A hospital's wireless intrusion prevention system reports that a nearby attacker is broadcasting beacon frames that clone the SSID and BSSID of the hospital's legitimate access point at a higher signal strength, luring staff laptops to associate with the attacker's hardware. Which attack is being described, and which defense most directly addresses it?
Hard7A security auditor notices that wireless clients are frequently disconnected by de-authentication frames that contain a spoofed MAC address of the access point. What is the auditor witnessing?
Medium8An assessor is standing in a parking lot outside a warehouse and needs to map the coverage footprint and identify all BSSIDs in range, including hidden networks, using a passive approach that does not associate to any AP. Which tool and technique fit this requirement?
Hard9A security researcher is evaluating the susceptibility of a WPA3-Personal network to offline dictionary attacks. Which statement accurately describes the resistance provided by WPA3-SAE compared to WPA2-PSK?
Hard10Which TWO of the following statements are true regarding the use of WPA3 compared to WPA2?
Hard11A retail chain wants to let customers join a guest WLAN without sharing the corporate preshared key, while still keeping guest traffic isolated from point-of-sale systems. Which design best meets these requirements?
Easy12A security analyst at a financial firm is reviewing wireless traffic captured near the executive conference room. The capture shows a flood of 802.11 management frames with source addresses set to the company's legitimate AP MAC address, but the frames are not encrypted and are arriving at a high rate. Which type of attack is most likely occurring?
Medium13A security administrator is configuring a new wireless intrusion prevention system (WIPS) for a corporate campus. The administrator wants the WIPS to automatically contain an unauthorized access point that is broadcasting the corporate SSID. Which WIPS capability should be enabled to achieve this?
Easy14Refer to the exhibit. Which configuration setting poses the most significant risk to the wireless network environment?
HardOther domains
All GSEC exam domains
Frequently asked questions
- What does the Wireless Network Security domain cover on the GSEC exam?
- Be able to select the wireless control that eliminates a stated risk: WPA2-Enterprise with 802.1X for unique per-user authentication, and WIPS containment for rogue APs. The key is matching the mitigation to whether the problem is authentication, rogue devices, or management-frame abuse.
- How many questions are in this domain?
- This page lists all 14 Wireless Network Security questions in the GSEC question bank. The actual exam draws from this domain proportionally to its weighting in the official exam blueprint.
- What is the best way to practise this domain?
- Start with a short focused session (10 questions) to identify gaps, then work through explanations. Repeat with a longer session once the weak areas feel solid.
- Can I practise only Wireless Network Security questions?
- Yes — the session launcher on this page filters questions to this domain only. Choose any session length for inline explanations and scoring.