Spring Sale Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: buysanta

Exact2Pass Menu

303-200: LPIC-3 Exam 303: Security, version 2.0

Last Update 14 hours ago Total Questions : 60

The 303-200: LPIC-3 Exam 303: Security, version 2.0 content is now fully updated, with all current exam questions added 14 hours ago. Deciding to include 303-200 practice exam questions in your study plan goes far beyond basic test preparation.

You'll find that our 303-200 exam questions frequently feature detailed scenarios and practical problem-solving exercises that directly mirror industry challenges. Engaging with these 303-200 sample sets allows you to effectively manage your time and pace yourself, giving you the ability to finish any 303-200: LPIC-3 Exam 303: Security, version 2.0 practice test comfortably within the allotted time.

Question # 1

How does TSIG authenticate name servers in order to perform secured zone transfers?

A.

Both servers mutually verify their X509 certificates.

B.

Both servers use a secret key that is shared between the servers.

C.

Both servers verify appropriate DANE records for the labels of the NS records used to delegate the transferred zone.

D.

Both servers use DNSSEC to mutually verify that they are authoritative for the transferred zone.

Question # 2

Which DNS label points to the DANE information used to secure HTTPS connections to https://www.example.com/ ?

A.

example.com

B.

dane.www.example.com

C.

soa.example com

D.

www.example.com

E.

_443_tcp.www example.com

Question # 3

Which of the following statements is true regarding eCryptfs?

A.

For every file in an eCryptfs directory there exists a corresponding file that contains the encrypted content.

B.

The content of all files in an eCryptfs directory is stored in an archive file similar to a tar file with an additional index to improve performance.

C.

After unmounting an eCryptfs directory, the directory hierarchy and the original file names are still visible, although, it is not possible to view the contents of the files.

D.

When a user changes his login password, the contents of his eCryptfs home directory has to be re-encrypted using his new login password.

E.

eCryptfs cannot be used to encrypt only directories that are the home directory of a regular Linux user.

Question # 4

What command is used to update NVTs from the OpenVAS NVT feed? (Specify ONLY the command without any path or parameters).

Question # 5

What is the purpose of the program snort-stat?

A.

It displays statistics from the running Snort process.

B.

It returns the status of all configured network devices.

C.

It reports whether the Snort process is still running and processing packets.

D.

It displays the status of all Snort processes.

E.

It reads syslog files containing Snort information and generates port scan statistics.

Question # 6

Which option of the openvpn command should be used to ensure that ephemeral keys are not written to the swap space?

A.

- -mlock

B.

- -no-swap

C.

--root-swap

D.

--keys-no-swap

Question # 7

Which of the following prefixes could be present in the output of getcifsacl? (Choose THREE correct answers.)

A.

ACL

B.

GRANT

C.

GROUP

D.

OWNER

E.

SID

Question # 8

Which command revokes ACL-based write access for groups and named users on the file afile?

A.

setfacI -x group: * : rx, user:*: rx afile

B.

setfacl -x mask: : rx afile

C.

setfacl ~m mask: : rx afile

D.

setfacl ~m group: * : rx, user:*: rx afile

Question # 9

Which of the following commands disables the automatic password expiry for the user usera?

A.

chage --maxdays none usera

B.

chage –maxdays 99 usera

C.

chage --maxdays -1 usera

D.

chage --lastday none usera

E.

chage --lastday 0 usera

Question # 10

Which of the following authentication methods was added to NFS in version 4?

A.

Kerberos authentication

B.

SSH hostkey authentication

C.

Winbind authentication

D.

SSL certificate authentication

Go to page: