Verified of 303-200 braindumps materials and exam topics for LPI certification for IT engineers, Real Success Guaranteed with Updated 303-200 pdf dumps vce Materials. 100% PASS LPIC-3 Exam 303: Security, version 2.0 exam Today!
Also have 303-200 free dumps questions for you:
NEW QUESTION 1
What is the purpose of lP sets?
- A. They group together lP addresses that are assigned to the same network interfaces.
- B. They group together lP addresses and networks that can be referenced by the network routing table.
- C. They group together lP addresses that can be referenced by netfilter rules.
- D. They group together lP and MAC addresses used by the neighbors on the local network.
- E. They group together lP addresses and user names that can be referenced from /etc/hosts allow and /etc/hosts deny
Answer: C
NEW QUESTION 2
Which of the following expressions are valid AlDE rules? (Choose TWO correct answers.)
- A. !/var/run/.*
- B. append: /var/log/*
- C. /usr=all
- D. #/bin/
- E. /etc p+i+u+g
Answer: AE
NEW QUESTION 3
Which of the following configuration options makes Apache HTTPD require a client certificate for authentication?
- A. Limit valid-x509
- B. SSLRequestClientCert always
- C. Require valid-x509
- D. SSLVerifyClient require
- E. SSLPolicy valid-client-cert
Answer: D
NEW QUESTION 4
Which of the following commands adds users using SSSD's local service?
- A. sss_adduser
- B. sss_useradd
- C. sss_add
- D. sss-addlocaluser
- E. sss_local_adduser
Answer: B
NEW QUESTION 5
Which of the following parameters to openssl s_client specifies the host name to use for TLS Server Name lndication?
- A. -tlsname
- B. -servername
- C. -sniname
- D. -vhost
- E. -host
Answer: B
NEW QUESTION 6
Which of the following commands adds a new user usera to FreelPA?
- A. useradd usera --directory ipa --gecos *User A"
- B. idap- useradd --H ldaps://ipa-server CN=UserA --attribs "Firstname: User: Lastname: A"
- C. ipa-admin create user --account usera -_fname User --iname A
- D. ipa user-add usera --first User --last A
- E. ipa-user- add usera --name "User A"
Answer: D
NEW QUESTION 7
Which command installs and configures a new FreelPA server, including all sub-components, and creates a new FreelPA domain? (Specially ONLY the command without any path or parameters).
Solution:
https://www.freeipa.org/images/2/2b/lnstallation_and_Deployment.Guidep.pdf
Does this meet the goal?
- A. Yes
- B. Not Mastered
Answer: A
NEW QUESTION 8
Given that this device has three different keys, which of the following commands deletes only the first key?
- A. cryptsetup luksDelKey /dev/sda 1 0
- B. cryptsetup luksDelkey /dev/sda 1 1
- C. cryptsetup luksDelKey / dev /mapper/crypt- vol 1
- D. cryptsetup luksDelKey / dev /mapper/crypt- vol 0
Answer: A
NEW QUESTION 9
When OpenVPN sends a control packet to its peer, it expects an acknowledgement in 2 seconds by default. Which of the following options changes the timeout period to 5 seconds?
- A. -tls-timeout 5
- B. -tls- timeout 500
- C. -tls- timer 5
- D. -tls- timer 500
Answer: A
NEW QUESTION 10
Which of the following statements is true about chroot environments?
- A. Symbolic links to data outside the chroot path are followed, making files and directories accessible
- B. Hard links to files outside the chroot path are not followed, to increase security
- C. The chroot path needs to contain all data required by the programs running in the chroot environment
- D. Programs are not able to set a chroot path by using a function call, they have to use the command chroot
- E. When using the command chroot, the started command is running in its own namespace and cannot communicate with other processes
Answer: C
NEW QUESTION 11
Which of the following database names can be used within a Name Service Switch (NSS) configuration file? (Choose THREE correct answers).
- A. host
- B. shadow
- C. service
- D. passwd
- E. group
Answer: ACE
NEW QUESTION 12
Which of the following DNS record types can the command dnssec-signzone add to a zone? (Choose THREE correct answers.)
- A. ASlG
- B. NSEC
- C. NSEC3
- D. NSSlG
- E. RRSlG
Answer: BCE
NEW QUESTION 13
Which of the following commands makes the contents of the eCryptfs encrypted directory -/Private available to the user?
- A. ecryptfsclient
- B. ecryptfs.mount
- C. ecryptfs-mount-private
- D. decryptfs
- E. ecryptfs-manage-di rectory
Answer: C
NEW QUESTION 14
Which of the following statements are true regarding the certificate? (Choose THREE correct answers.)
- A. This certificate belongs to a certification authority.
- B. This certificate may be used to sign certificates of subordinate certification authorities.
- C. This certificate may never be used to sign any other certificates
- D. This certificate may be used to sign certificates that are not also a certification authority
- E. This certificate will not be accepted by programs that do not understand the listed extension
Answer: ABD
NEW QUESTION 15
Which command revokes ACL-based write access for groups and named users on the file afile?
- A. setfacl -x group: * : rx, user:*: rx afile
- B. setfacl -x mask: : rx afile
- C. setfacl ~m mask: : rx afile
- D. setfacl ~m group: * : rx, user:*: rx afile
Answer: C
NEW QUESTION 16
......
P.S. 2passeasy now are offering 100% pass ensure 303-200 dumps! All 303-200 exam questions have been updated with correct answers: https://www.2passeasy.com/dumps/303-200/ (60 New Questions)