After suspicious 802.1X authentication failures on the courthouse WLAN, engineers skip logs and packet review. What mitigation and verification step is missing?
Select an answer to reveal the explanation.
Short Explanation
Weird auth failures are clues, not wallpaper. Read the RADIUS and controller logs—and peek at the traffic—before you declare the courthouse Wi-Fi fine.
Full Explanation
Examining logs and network traffic is part of verifying and mitigating WLAN security events. Authentication anomalies should be investigated with AAA and infrastructure logs plus appropriate captures. Destroying evidence, disabling logging, or clearing counters without analysis undermines incident response.