The most detailed, comprehensive coverage of CWSP-205 exam objectives
CWSP: Certified Wireless Security Professional Study Guide offers comprehensive preparation for the CWSP-205 exam. Fully updated to align with the new 2015 exam, this guide covers all exam objectives and gives you access to the Sybex interactive online learning system so you can go into the test fully confident in your skills. Coverage includes WLAN discovery, intrusion and attack, 802.11 protocol analysis, wireless intrusion prevention system implementation, Layer 2 and 3 VPN over 802.11 networks, managed endpoint security systems, and more. Content new to this edition features discussions about BYOD and guest access, as well as detailed and insightful guidance on troubleshooting. With more than double the coverage of the "official" exam guide, plus access to interactive learning tools, this book is your ultimate solution for CWSP-205 exam prep.
The CWSP is the leading vendor-neutral security certification administered for IT professionals, developed for those working with and securing wireless networks. As an advanced certification, the CWSP requires rigorous preparation -- and this book provides more coverage and expert insight than any other source.
* Learn the ins and outs of advanced network security
* Study 100 percent of CWSP-205 objectives
* Test your understanding with two complete practice exams
* Gauge your level of preparedness with a pre-test assessment
The CWSP is a springboard for more advanced certifications, and the premier qualification employers look for in the field. If you've already earned the CWTS and the CWNA, it's time to take your career to the next level. CWSP: Certified Wireless Security Professional Study Guide is your ideal companion for effective, efficient CWSP-205 preparation.
Autorentext
David D. Coleman, CWNE #4, is a WLAN security consultant, technical trainer, public speaker, and the Senior Mobility Leader for Aerohive Networks.
David A. Westcott, CWNE #7, is an independent consultant and WLAN technical trainer of over thirty years.
Bryan Harkins, CWNE #44, is a WLAN technical trainer, consultant, and the Director of Cradlepoint University.
Zusammenfassung
The most detailed, comprehensive coverage of CWSP-205 exam objectives
CWSP: Certified Wireless Security Professional Study Guide offers comprehensive preparation for the CWSP-205 exam. Fully updated to align with the new 2015 exam, this guide covers all exam objectives and gives you access to the Sybex interactive online learning system so you can go into the test fully confident in your skills. Coverage includes WLAN discovery, intrusion and attack, 802.11 protocol analysis, wireless intrusion prevention system implementation, Layer 2 and 3 VPN over 802.11 networks, managed endpoint security systems, and more. Content new to this edition features discussions about BYOD and guest access, as well as detailed and insightful guidance on troubleshooting. With more than double the coverage of the “official” exam guide, plus access to interactive learning tools, this book is your ultimate solution for CWSP-205 exam prep.
The CWSP is the leading vendor-neutral security certification administered for IT professionals, developed for those working with and securing wireless networks. As an advanced certification, the CWSP requires rigorous preparation — and this book provides more coverage and expert insight than any other source.
- Learn the ins and outs of advanced network security
- Study 100 percent of CWSP-205 objectives
- Test your understanding with two complete practice exams
- Gauge your level of preparedness with a pre-test assessment
The CWSP is a springboard for more advanced certifications, and the premier qualification employers look for in the field. If you’ve already earned the CWTS and the CWNA, it’s time to take your career to the next level. CWSP: Certified Wireless Security Professional Study Guide is your ideal companion for effective, efficient CWSP-205 preparation.
Inhalt
Foreword xxv
Introduction xxvii
Assessment Test xxxviii
Chapter 1 WLAN Security Overview 1
Standards Organizations 3
International Organization for Standardization (ISO) 3
Institute of Electrical and Electronics Engineers (IEEE) 4
Internet Engineering Task Force (IETF) 5
Wi-Fi Alliance 7
802.11 Networking Basics 12
802.11 Security Basics 14
Data Privacy 14
Authentication, Authorization, Accounting (AAA) 16
Segmentation 17
Monitoring 17
Policy 18
802.11 Security History 18
802.11i Security Amendment and WPA Certifications 18
Robust Security Network (RSN) 20
Summary 21
Exam Essentials 22
Review Questions 24
Chapter 2 Legacy 802.11 Security 29
Authentication 30
Open System Authentication 31
Shared Key Authentication 33
Wired Equivalent Privacy (WEP) Encryption 35
TKIP 40
Virtual Private Networks (VPNs) 44
Point-to-Point Tunneling Protocol (PPTP) 46
Layer 2 Tunneling Protocol (L2TP) 46
Internet Protocol Security (IPsec) 47
Secure Sockets Layer (SSL) 47
VPN Configuration Complexity 48
VPN Scalability 48
MAC Filters 49
SSID Segmentation 50
SSID Cloaking 51
Summary 54
Exam Essentials 55
Review Questions 56
Chapter 3 Encryption Ciphers and Methods 61
Encryption Basics 62
Symmetric and Asymmetric Algorithms 63
Stream and Block Ciphers 65
RC4/ARC4 66
RC5 66
DES 66
3DES 67
AES 67
WLAN Encryption Methods 68
WEP 70
WEP MPDU 70
TKIP 72
TKIP MPDU 72
CCMP 73
CCMP MPDU 76
WPA/WPA2 78
Future Encryption Methods 79
Proprietary Layer 2 Implementations 80
Summary 80
Exam Essentials 81
Review Questions 82
Chapter 4 802.1X/EAP Authentication 87
WLAN Authentication Overview 89
AAA 90
Authentication 91
Authorization 92
Accounting 93
802.1X 95
Supplicant 96
Authenticator 99
Authentication Server 102
Supplicant Credentials 106
Usernames and Passwords 106
Digital Certificates 107
Protected Access Credentials (PACs) 109
One-T - ime Passwords 109
Smart Cards and USB Tokens 110
Machine Authentication 112
802.1X/EAP and Certificates 114
Server Certificates and Root CA Certificates 115
Client Certificates 119
Shared Secret 120
Legacy Authentication Protocols 121
PAP 121
CHAP 121
MS-CHAP 121
MS-CHAPv2 121
EAP 122
Weak EAP Protocols 125
EAP-MD5 125
EAP-LEAP 126
Strong EAP Protocols 128
EAP-PEAP 130
EAP-TTLS 133
EAP-TLS 134
EAP-FAST 136
Miscellaneous EAP Protocols 141
EAP-SIM 141
EAP-AKA 141
EAP-TEAP 142
Summary 144
Exam Essentials 144
Review Questions 146
Chapter 5 802.11 Layer 2 Dynamic Encryption Key Generation 151