A county IT desk still has many staff laptops that only support WPA2-Enterprise, while a few new devices already offer WPA3. Leadership wants a modern secure SSID for city hall without jumping straight to WEP or WPA1-era settings. Which choice best matches technician guidance during the transition?
Select an answer to reveal the explanation.
Short Explanation
WPA2-Enterprise is still in the modern secure club when the fleet cannot all do WPA3 yet. Think of it as a solid deadbolt while you stage the newer locks—not a return to WEP’s cardboard latch. Skip the legacy TKIP/WPA1 nostalgia and the “hide SSID” theater.
Full Explanation
CWTS-level guidance treats WPA2-Enterprise (802.1X with modern ciphers such as CCMP/AES) as an acceptable modern secure option when WPA3 is not yet universal on clients. Transition plans keep staff on WPA2-Enterprise rather than regressing to WEP, Shared Key, WPA-Personal/TKIP, or weak substitutes like hidden SSID plus MAC filtering. WPA3-Enterprise can follow as devices and infrastructure support it.