Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Linux Professional Institute logo

LPIC-3 Security

Domain 3Objective 2

327.2 Mandatory Access Control (weight: 4) LPIC-3-SECURITY Practice Questions (Page 1)

Part of the Topic 327: Access Control domain, which makes up ~19% of our current practice bank. Linux Professional Institute does not publish an official question count, but from its 90-minute exam (~35–60 total, ~7–11 in this domain), expect 2–4 from this objective — we provide 36 practice questions to prepare you well beyond it. (estimate)

36questions here
8free pages
14concepts

Questions 1–5

  1. 1foundation · easy

    Which SELinux policy type is designed to confine only specific daemons and services, leaving the rest of the system unconfined?

    Select an answer first
  2. 2application · medium

    A security auditor is reviewing a system and notes that a user can change the permissions on a file they own, even if that file is part of a system-wide security policy. The auditor wants to ensure that system-wide policies cannot be overridden by individual users. Which access control model should the auditor recommend?

    Select an answer first
  3. 3foundation · easy

    In SELinux, Type Enforcement (TE) confines processes by assigning each process and file a type label and then enforcing rules that define which types may interact. What is the primary purpose of the type label assigned to a process?

    Select an answer first
  4. 4foundation · easy

    Which command or file is used to view the mapping between Linux users and SELinux roles?

    Select an answer first
  5. 5foundation · easy

    Which command is used to set a Smack label on a file?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Linux Professional Institute. “LPIC-3-SECURITY” is a trademark of its owner, used for identification only.