For wireless networks that transmit cardholder data, which practice is required?

Prepare for the PCI Approved Scanning Vendor (ASV) Test. Study with flashcards, multiple choice questions, hints, and explanations. Get exam ready!

Multiple Choice

For wireless networks that transmit cardholder data, which practice is required?

Explanation:
Wireless networks that carry cardholder data must be protected with strong encryption. The proper approach is to implement IEEE 802.11i, which underpins WPA2 and provides robust AES-based encryption. WEP is outdated and insecure, and its use is prohibited for protecting cardholder data. This means ensuring the wireless traffic is encrypted with strong standards (like AES) rather than leaving it unencrypted or using weaker protocols. Bluetooth is not a substitute for Wi‑Fi in this context, and using it in place of a properly secured wireless network would not meet the requirement.

Wireless networks that carry cardholder data must be protected with strong encryption. The proper approach is to implement IEEE 802.11i, which underpins WPA2 and provides robust AES-based encryption. WEP is outdated and insecure, and its use is prohibited for protecting cardholder data. This means ensuring the wireless traffic is encrypted with strong standards (like AES) rather than leaving it unencrypted or using weaker protocols. Bluetooth is not a substitute for Wi‑Fi in this context, and using it in place of a properly secured wireless network would not meet the requirement.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy