100-150 Question 255
Single answerA network administrator has identified that unauthorized devices are connecting to the company’s Wi-Fi network. Which security measure should be implemented to prevent unauthorized access while allowing legitimate devices to connect?
- A
Enable MAC address filtering on the wireless access point
- B
Disable SSID broadcasting to hide the network from unauthorized users
- C
Use WPA3 encryption for the wireless network
- D
Change the default channel of the Wi-Fi network
Show answer and explanation
Correct answer: C
Explanation
Using WPA3 encryption for the wireless network is the most effective solution in this scenario because it ensures strong security for Wi-Fi connections. While MAC address filtering and disabling SSID broadcasting can provide minimal additional security, they are not robust measures against determined attackers. Changing the Wi-Fi channel does not address security issues. WPA3 encryption directly prevents unauthorized devices from connecting to the network.
- A. Incorrect.
MAC address filtering can add a layer of security, but it is not highly effective because MAC addresses can be spoofed by attackers.
- B. Incorrect.
Disabling SSID broadcasting makes the network less visible but does not prevent determined attackers from finding and connecting to the network.
- C. Correct.
WPA3 encryption is the most secure wireless protocol currently available and provides strong protection against unauthorized access, making it the best solution.
- D. Incorrect.
Changing the Wi-Fi channel can improve network performance in congested areas but does not address security concerns or prevent unauthorized access.