Lpi LPI Level 3 Exam (LPI 303: Security) 認定 117-303 試験問題:
1. You wish to revoke write access for all groups and named users on a file. Which command will make the correct ACL changes?
A) setfacl x group:*:rx,user:*:rx afile
B) setfacl x mask::rx afile
C) setfacl m mask::rx afile
D) setfacl m group:*:rx,user:*:rx afile
2. Which of the following are common techniques for securing a sendmail server? (Select THREE correct answers)
A) Disable VRFY.
B) Run sendmail in a chroot'd environment.
C) Disable USRLKUP.
D) Maintain user accounts in an LDAP directory.
E) Enable TLS.
3. In which of the following scenarios MUST an administrator use ethernet bridging instead of routing when configuring an OpenVPN site? (Select TWO correct answers)
A) Some OpenVPN clients will be installed on laptops and must be able to connect from different locations.
B) It will be necessary to use an MTU setting other than the default.
C) The IPX protocol is required.
D) NetBIOS traffic must be able to traverse the VPN without implementing a WINS server.
E) The IPv4 protocol is required.
4. Which of the following are builtin chains for the iptables nat table? (Select THREE correct answers)
A) INPUT
B) PROCESSING
C) OUTPUT
D) PREROUTING
E) POSTROUTING
5. By default, when verifying a signed file or a file with a detached signature, which keyring is used to search for public keys?
A) ~/.gnupg/trustdb.gpg
B) ~/.gnupg/pubring.gpg
C) ~/.gnupg/trustedkeys.gpg
D) ~/.gnupg/secring.gpg
質問と回答:
質問 # 1 正解: C | 質問 # 2 正解: A、B、E | 質問 # 3 正解: C、D | 質問 # 4 正解: C、D、E | 質問 # 5 正解: C |