
EC-CouncilCertified Network Defender
Domain 2Objective 3
Endpoint Security Linux Systems CND Practice Questions (Page 7)
Part of the Perimeter and Endpoint Security domain, which makes up ~24% of our current practice bank.
47questions here
10free pages
9concepts
Questions 31–35
- 31
What is the primary role of Pluggable Authentication Modules (PAM) in Linux?
Select an answer first - 32
What is the primary purpose of the auditd daemon on Linux?
Select an answer first - 33
Which command is used to change the ownership of a file on Linux?
Select an answer first - 34
A security analyst suspects that a Linux endpoint was compromised. The analyst needs to determine which commands were executed by a specific user and when, and also see if any files were modified during the suspected time window. Which logging and auditing approach provides the most comprehensive evidence?
Select an answer first - 35
A Linux system has a user account 'john' who is leaving the company. The administrator needs to ensure that john's access is revoked immediately, but the files he owns must remain accessible to his manager. Which steps should be taken?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CND” is a trademark of its owner, used for identification only.