Problem Statement
What is a safe strategy for handling Wi-Fi credentials and certificates during testing?
Explanation
Use test accounts created for the engagement. Never store real user passwords in notes. For EAP-TLS, use lab certificates or a throwaway client cert with a short lifetime. If you capture any credential material as evidence, redact secrets and keep the smallest proof. Share rotation steps with the owner before you finish.
Code Solution
SolutionRead Only
Evidence log: time, SSID, EAP method, non-secret proof, rotation plan
