300-425 Question 243
Select 3You are a network administrator managing a Cisco wireless deployment in a large enterprise. During routine monitoring in Cisco DNA Center, you notice multiple alarms reporting rogue access points. What are the appropriate actions you should take to manage these rogue access points effectively?
- A
Classify the rogue APs as malicious or friendly to determine the appropriate action.
- B
Disable the rogue APs immediately by sending a deauthentication signal to the clients connected to them.
- C
Use the location tools in Cisco DNA Center to pinpoint the physical location of the rogue APs.
- D
Add the rogue APs to the trusted list if they belong to neighboring organizations with no malicious intent.
- E
Ignore the alarms because they are likely false positives.
Show answer and explanation
Correct answers: A, C, D
Explanation
To effectively manage rogue APs, it is important to classify them based on their intent (malicious or friendly), locate them for potential further action, and add friendly APs to the trusted list when appropriate to avoid unnecessary containment measures. Disabling APs without confirmation or ignoring alarms can lead to disruptions or potential security breaches.
- A. Correct.
Classifying rogue APs as malicious or friendly is a crucial first step to decide whether further action is necessary, such as containment or adding them to a trusted list.
- B. Incorrect.
Disabling rogue APs immediately without proper classification may cause disruption for legitimate users. This is not a recommended approach unless the AP is confirmed to be malicious.
- C. Correct.
Using the location tools in Cisco DNA Center helps identify where the rogue APs are physically located, which is essential for further action, such as investigation or removal.
- D. Correct.
Adding rogue APs to a trusted list is appropriate for APs that belong to neighboring organizations or external entities that pose no threat.
- E. Incorrect.
Ignoring alarms is not recommended, as it can lead to overlooking potential security threats posed by rogue APs.