A RADIUS shared secret between a municipal wireless controller and the AAA server is trivial to guess. What infrastructure hardening issue should be raised?
Select an answer to reveal the explanation.
Short Explanation
Modern AES on the air will not save you if the controller-to-RADIUS secret is 'password1.' That backend trust link still needs a strong shared secret.
Full Explanation
The RADIUS shared secret authenticates and protects messaging between the wireless authenticator/controller and the AAA server. A trivial secret threatens the integrity of Access-Accept/Reject and attribute exchange even if 802.11 air encryption appears current. The issue applies to staff Enterprise paths, does not auto-enroll EAP-TLS certificates, and is unrelated to PMF negotiation requirements.