300-425 Question 181
Select 3You are tasked with implementing Wireless Intrusion Prevention System (wIPS) functionality using Cisco DNA Center in an enterprise network. Which of the following steps are required to successfully configure wIPS to detect and mitigate rogue access points?
- A
Enable the wIPS service on the wireless controller and assign it to the appropriate APs.
- B
Configure the wIPS policy in Cisco DNA Center under the Assurance settings.
- C
Ensure that the Access Points are placed in Monitor Mode or Enhanced Local Mode (ELM).
- D
Enable rogue detection and containment features on the wireless controller.
- E
Activate wIPS sensors in Cisco DNA Center by assigning the APs to a specific wIPS sensor profile.
Show answer and explanation
Correct answers: A, C, E
Explanation
To implement wIPS using Cisco DNA Center, you need to enable the wIPS service on the wireless controller, configure the APs in the correct mode (Monitor Mode or ELM), and activate wIPS sensors by assigning APs to a specific wIPS sensor profile. These steps ensure that the APs can detect and mitigate rogue access points effectively. Rogue detection and containment, while related, are separate features and not part of the wIPS workflow in this context.
- A. Correct.
Correct: Enabling the wIPS service on the wireless controller and assigning it to the appropriate APs is a required step to activate wIPS functionality.
- B. Incorrect.
Incorrect: The wIPS policy is not configured under Assurance settings in Cisco DNA Center. Instead, wIPS settings are typically configured under the wireless configuration workflow.
- C. Correct.
Correct: Access Points need to be in Monitor Mode or Enhanced Local Mode (ELM) to effectively scan for rogue devices and provide wIPS capabilities.
- D. Incorrect.
Incorrect: Rogue detection and containment features are separate functionalities of the wireless controller and are not directly tied to wIPS configuration in Cisco DNA Center.
- E. Correct.
Correct: Activating wIPS sensors in Cisco DNA Center requires assigning APs to a wIPS sensor profile, which defines their role in intrusion prevention.