300-430 exam dumps

300-430 practice question 156 of 324

Implementing Cisco Enterprise Wireless Networks. Professional level, Cisco. Free question with the correct answer and a full explanation.

300-430 Question 156

Single answer

A wireless network administrator is deploying a guest Wi-Fi network for a corporate office. They need to ensure that users connecting to the guest network are redirected to a web page where they must accept the terms of use before gaining access to the Internet. Additionally, this redirection should work seamlessly across various client devices and browsers. Which implementation option should they choose to achieve this requirement?

  1. A

    Configure a Layer 3 web authentication using a centralized WLC captive portal.

  2. B

    Implement a Layer 2 MAC authentication bypass for guest clients.

  3. C

    Enable 802.1X authentication with Active Directory integration for guest users.

  4. D

    Deploy an external RADIUS server with WPA2-Enterprise for authentication.

Show answer and explanation

Correct answer: A

Explanation

Captive portals are commonly used for guest networks to redirect users to a web-based login or terms acceptance page. A Layer 3 web authentication solution using a centralized WLC captive portal is specifically designed for this purpose. It ensures compatibility across various client devices and browsers, making it the ideal solution for meeting the given requirements.

  • A. Correct.

    Correct: Configuring a Layer 3 web authentication using a centralized Wireless LAN Controller (WLC) captive portal is the correct approach for redirecting guest users to a web page to accept terms of use. This mechanism is widely used for guest user authentication.

  • B. Incorrect.

    Incorrect: Layer 2 MAC authentication bypass is not suitable for redirecting users to a captive portal. It is typically used to bypass authentication for devices without 802.1X capability, such as printers or IoT devices.

  • C. Incorrect.

    Incorrect: 802.1X authentication with Active Directory integration is designed for secure corporate user authentication, not for guest networks or captive portals.

  • D. Incorrect.

    Incorrect: Deploying an external RADIUS server with WPA2-Enterprise is used for secure authentication with credentials but does not address the requirement for redirecting users to a web page for terms acceptance.

Timed practice exam

Take a 300-430 practice test under exam conditions

75 questions in 120 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam