LPIC-3

Latest Update Free Version of 303-200 Exam Study Guides

Attention please! Here is the shortcut to pass your 303-200 exam! Get yourself well prepared for the LPIC-3 303-200 LPIC-3 Exam 303: Security, version 2.0 exam is really a hard job. But don’t worry! We We, provides the most update 303-200 practice tests. With We latest 303-200 dumps, you’ll pass the LPIC-3 303-200 LPIC-3 Exam 303: Security, version 2.0 exam in an easy way

Visit our site to get more 303-200 Q and As:https://www.exam2pass.com/303-200.html (60 QAs Dumps)
Question 1:

What happens when the command getfattr a file is run while the file afile has no extended attributes set?

A. getfattr prints a warning and exits with a values of 0.

B. getfattr prints a warning and exits with a value of 1.

C. No output is produced and getfattr exits with a value of 0.

D. No outputs is produced and getfattr exits with a value of 1

Correct Answer: C


Question 2:

Linux Extended File Attributes are organized in namespaces. Which of the following names correspond to existing attribute namespaces? (Choose THREE correct answers.)

A. default

B. system

C. owner

D. trusted

E. user

Correct Answer: BDE


Question 3:

Which of the following resources of a shell and its child processes can be controlled by the Bash build-in command ulimit? (Choose THREE correct answers.)

A. The maximum size of written files

B. The maximum number of open file descriptors

C. The maximum number of newly created files

D. The maximum number of environment variables

E. The maximum number of user processes

Correct Answer: ABE


Question 4:

Which of the following DNS record types can the command dnssec-signzone add to a zone? (Choose THREE correct answers.)

A. ASlG

B. NSEC

C. NSEC3

D. NSSlG

E. RRSlG

Correct Answer: BCE


Question 5:

Which of the following lines in an OpenSSL configuration adds an X 5o9v3 Subject Alternative Name extension for the host names example.org and www.example.org to a certificate\’?

A. subjectAltName = DNS: www example.org, DNS:example.org

B. extension= SAN: www.example.org, SAN:example.org

C. subjectAltName: www.example.org, subjectAltName: example.org

D. commonName = subjectAltName= www.example.org, subjectAltName = example.org

E. subject= CN= www.example.org, CN=example.org

Correct Answer: A


Question 6:

Which of the following configuration options makes Apache HTTPD require a client certificate for authentication?

A. Limit valid-x509

B. SSLRequestClientCert always

C. Require valid-x509

D. SSLVerifyClient require

E. SSLPolicy valid-client-cert

Correct Answer: D


Question 7:

Which of the following openssl commands generates a certificate signing request (CSR) using the already existing private key contained in the file privatejkeypair.pem?

A. openssl req -key private/keypair.pem -out req/csr.pem

B. openssl req – new -key private/keypair.pem -out req/csr.pem

C. openssl gencsr -key private/keypair.pem -out req.csr.pem

D. openssl gencsr -new- key private/keypair.pem -out req.csr.pem

Correct Answer:


Question 8:

What is the purpose of the program snort-stat?

A. lt displays statistics from the running Snort process.

B. lt returns the status of all configured network devices.

C. lt reports whether the Snort process is still running and processing packets.

D. lt displays the status of all Snort processes.

E. lt reads syslog files containing Snort information and generates port scan statistics.

Correct Answer: E


Question 9:

Which of the following commands changes the source lP address to 192.o.2.11 for all lPv4 packets which go through the network interface etho?

A. iptables ~t nat -A POSTROUTlNG ~o etho -j SNAT -to-source 192.0.2.11

B. iptables ~t nat -A PREROUT1NG -\ etho -j SNAT -to-source 192.0.2.11

C. iptables -t nat -A POSTROUTlNG H etho -j DNAT -to-source 192.0.2.11

D. iptables -t mangle -A POSTROUTlNG -i etho -j SNAT -to-source 192.0.2.11

E. iptables -t mangle -A POSTROUTlNG -o etho -j SNAT -to-source 192.0.2.11

Correct Answer: A


Question 10:

Which of the following terms refer to existing scan techniques with nmap? (Choose TWO correct answers.)

A. Xmas Scan

B. Zero Scan

C. FlN Scan

D. lP Scan

E. UDP SYN Scan

Correct Answer: AC


Question 11:

Which of the following statements are valid wireshark capture filters? (Choose TWO correct answers.)

A. port range 10000:tcp-15000:tcp

B. port-range tcp 10000-15000

C. tcp portrange 10000-15000

D. portrange 10000/tcp-15000/tcp

E. portrange 10000-15000 and tcp

Correct Answer: CE


Question 12:

When OpenVPN sends a control packet to its peer, it expects an acknowledgement in 2 seconds by default. Which of the following options changes the timeout period to 5 seconds?

A. -tls-timeout 5

B. -tls- timeout 500

C. -tls- timer 5

D. -tls- timer 500

Correct Answer: A


Question 13:

Which command is used to run a new shell for a user changing the SELinux context? (Specify ONLY the command without any path or parameters.)

Correct Answer: newrole


Question 14:

Which command installs and configures a new FreelPA server, including all sub-components, and creates a new FreelPA domain? (Specially ONLY the command without any path or parameters).

Correct Answer: ipa-serverinstall


Question 15:

Which command, included in BlND, generates DNSSEC keys? (Specify ONLY the command without any path or parameters.)

Correct Answer: dnsseckeygen


Visit our site to get more 303-200 Q and As:https://www.exam2pass.com/303-200.html (60 QAs Dumps)