An administrator has received a recommendation against deploying WEP as a wireless encryption
protection scheme. Which of the following is MOST likely the reason?
A.
WEP’s IV is too small.
B.
WEP uses RC4 which is easily accessible and not secure.
C.
WEP uses plain text.
D.
WEP is not well supported.
Shouldn’t this be B.?
The purpose of an IV, which is transmitted as plain text, is to prevent any repetition, but a 24-bit IV is not long enough to ensure this on a busy network. The way the IV was used also opened WEP to a related key attack. For a 24-bit IV, there is a 50% probability the same IV will repeat after 5000 packets.
http://en.wikipedia.org/wiki/Wired_Equivalent_Privacy