Finance insists the tax-system SSID use a shared WPA2-Personal passphrase 'because it is simpler than 802.1X.' 802.1X infrastructure already exists. What architecture choice is appropriate?
Select an answer to reveal the explanation.
Short Explanation
High-value SSIDs deserve per-user 802.1X, not a hallway PSK. When RADIUS is already standing there, use it. Guest portals and WEP are the wrong neighborhood for tax traffic.
Full Explanation
Authentication architecture should match asset sensitivity. Shared PSKs on high-value SSIDs create broad compromise blast radius and weak accountability when 802.1X is available. Open captive portals and deprecated WEP are inappropriate for corporate tax-system access.