Exam 350-101 Topic 4 Question 24 Discussion
Actual exam question for Cisco's 350-101 exam
Question #: 24
Topic #: 4
Question #: 24
Topic #: 4
Refer to the exhibit.
A wireless controller is deployed at a branch location to facilitate guest client connectivity. A network engineer configures one WLAN using Web authentication and activates web-based method to align with company security policies. Which configuration enables client authentication for this WLAN?

A wireless controller is deployed at a branch location to facilitate guest client connectivity. A network engineer configures one WLAN using Web authentication and activates web-based method to align with company security policies. Which configuration enables client authentication for this WLAN?

Suggested Answer: A Vote an answer
The command that enables web-based client authentication on the WLAN issecurity web-auth. Cisco's Catalyst 9800 Web-Based Authentication guide shows the WLAN configuration workflow: enter WLAN configuration mode, disable WPA security for the open Layer 2 guest WLAN, then "Enable web authentication for WLAN" usingsecurity web-auth. Cisco then applies the authentication list and parameter map withsecurity web-auth authentication-list ...andsecurity web-auth parameter-map ..., which refine the WebAuth method and portal behavior after WebAuth itself is enabled.
Cisco's LDAP authentication example mirrors the exhibit exactly:wlan webauth 2 webauth, removal of WPA
/802.1X Layer 2 security,security web-auth,security web-auth authentication-list ldapauth, andsecurity web- auth parameter-map global. Option B only creates or enters the WLAN profile with WLAN ID 2 and SSID name. Options C and D disable WPA2 and 802.1X AKM; they do not authenticate clients. Reference topics:
Client Connectivity Configuration - guest WLAN authentication, WebAuth, Layer 3 security, authentication lists, parameter maps, and Catalyst 9800 WLAN security configuration.
Cisco's LDAP authentication example mirrors the exhibit exactly:wlan webauth 2 webauth, removal of WPA
/802.1X Layer 2 security,security web-auth,security web-auth authentication-list ldapauth, andsecurity web- auth parameter-map global. Option B only creates or enters the WLAN profile with WLAN ID 2 and SSID name. Options C and D disable WPA2 and 802.1X AKM; they do not authenticate clients. Reference topics:
Client Connectivity Configuration - guest WLAN authentication, WebAuth, Layer 3 security, authentication lists, parameter maps, and Catalyst 9800 WLAN security configuration.
by Georgia at Aug 27, 2026, 03:16 PM
0
0
0
10
Comments
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Report Comment
Commenting
You can sign-up / login (it's free).