| トピック | 出題範囲 |
|---|
| トピック 1 | - Managing Pluggable Authentication Modules (PAM):This section evaluates the ability to configure PAM to manage authentication mechanisms and control access to the system.
|
| トピック 2 | - Advanced Storage Administration: Candidates will be tested on their ability to manage storage by configuring access control lists (ACLs), setting up encrypted block devices, and writing udev rules to manage hardware devices.
|
| トピック 3 | - Control Groups (Cgroups): This section focuses on configuring Cgroups to control access to system resources, and using systemd to manage slice units and scope units for efficient system resource management.
|
| トピック 4 | - Managing Storage Devices: Here, the focus is on configuring and managing Logical Volume Manager (LVM) components, as well as handling MD drivers and software RAID devices, which are essential for robust storage solutions.
|
| トピック 5 | - Managing File Sharing: This section assesses skills in setting up and managing NFS servers and clients, automating file systems, and configuring the vsftpd service for file sharing.
|
| トピック 6 | - Managing Linux Security: This portion focuses on creating and maintaining a chroot jail for enhanced security and configuring firewall tools such as firewalls and nftables to manage packet filtering effectively.
|
| トピック 7 | - Using OpenSSH: This section examines the ability to configure and use OpenSSH for secure remote communications. It covers essential commands like ssh, scp, sftp, and ssh-keygen, along with techniques like secure tunneling and X11 forwarding.
|
| トピック 8 | - Container Services: This portion tests knowledge of containerization, specifically configuring Podman and understanding Kubernetes to deploy and manage containers and pods.
|
| トピック 9 | - Security Enhanced Linux (SELinux): Candidates will need to demonstrate an understanding of SELinux, including configuring its modes, policies, file labeling, and user roles to secure Linux systems.
|
| トピック 10 | - Managing the Network Configuration: Candidates are expected to describe network configuration files and use tools like NetworkManager, along with command-line utilities such as ip and nmcli, to efficiently manage and troubleshoot network settings.
|
| トピック 11 | - Managing Filesystems and Swap: This portion evaluates the ability to work with disk partitions and manage Linux filesystems such as ext, xfs, and btrfs. Additionally, candidates will demonstrate competence in configuring and maintaining swap space.
|
| トピック 12 | - Advanced Networking: This portion examines the understanding and configuration of advanced networking features such as Network Bonding and VLANs, which are essential for complex network environments.
|
| トピック 13 | - Linux Auditing System: The final section focuses on configuring Linux’s auditing system using auditctl, where candidates will set up audit rules to monitor and ensure system security and compliance.
|