Objective 2.3220-1202

2.3 Compare and contrast wireless security protocols and authentication methods.

Objective 2.3 sits in Security, which carries 28% of the A+ Core 2 exam. The questions below are original, written from the official objective title above, and each explanation cites the CompTIA page it rests on.

Objective title verbatim from the official objectives. CompTIA exam page

A worked example

Shown solved, with the whole explanation open: this is what every question here carries.

2-3SecurityModerate

A small office access point must also serve several older laptops that cannot do WPA3, and the administrator wants the newest protocol used wherever a client supports it. Which security setting fits?

WPA2/WPA3 TransitionalCorrect · your answerCorrect. This is the mode named for exactly this generation gap.
WPA PersonalWPA Personal appears on the list of weak settings to avoid; it predates the AES cipher and triggers a warning on Apple devices.
WPA3 PersonalWPA3 Personal alone is the pick when every client can already speak it. Here some cannot, and they would be locked out.
WPA/WPA2 mixed modeMixing WPA with WPA2 is listed among the deprecated combinations, so it buys compatibility at the cost of a weak cipher.

Correct.

Concept

An access point advertises one security setting per band, and every client has to negotiate it. When a fleet spans several hardware generations, the choice is between forcing one standard on everyone and letting each radio use the best it can handle.

Why A

The mixed setting hands WPA3 Personal to devices that support it and lets the rest fall back to WPA2 Personal with AES, so the older laptops still join without pinning the whole network to the older protocol.

#wireless-security#wpa3#wpa2

Now you: objective 2.3 questions

No account needed. The explanation opens when you answer.

Sample question 1 of 3

2-3SecurityModerate

A branch office keeps unknown devices off its WLAN with an allowed list of client hardware addresses. What is the main weakness of that control?

Sample question 2 of 3

2-3SecurityModerate

An administrator must run the wireless network in WPA3-Enterprise 192-bit mode. Which EAP method may client supplicants use?

Sample question 3 of 3

2-3SecurityHard

Wireless clients must authenticate with a username and password, and no client certificates are available. Windows will not run the password method on a wireless link by itself. What must carry it?

Full A+ Core 2 question bank coming

We’re writing the complete bank from the official objectives right now. Leave your email and we’ll tell you when it ships, nothing else, ever.

Read the sources

These are the official pages the questions above cite. Reading them is studying the objective from the primary source, which is what the explanations point you toward anyway.

More objectives in Security