
LPIC-3 Security
Domain 3Objective 2
327.2 Mandatory Access Control (weight: 4) LPIC-3-SECURITY Practice Questions (Page 1)
Part of the Topic 327: Access Control domain, which makes up ~19% of our current practice bank. Linux Professional Institute does not publish an official question count, but from its 90-minute exam (~35–60 total, ~7–11 in this domain), expect 2–4 from this objective — we provide 36 practice questions to prepare you well beyond it. (estimate)
36questions here
8free pages
14concepts
Questions 1–5
- 1
Which SELinux policy type is designed to confine only specific daemons and services, leaving the rest of the system unconfined?
Select an answer first - 2
A security auditor is reviewing a system and notes that a user can change the permissions on a file they own, even if that file is part of a system-wide security policy. The auditor wants to ensure that system-wide policies cannot be overridden by individual users. Which access control model should the auditor recommend?
Select an answer first - 3
In SELinux, Type Enforcement (TE) confines processes by assigning each process and file a type label and then enforcing rules that define which types may interact. What is the primary purpose of the type label assigned to a process?
Select an answer first - 4
Which command or file is used to view the mapping between Linux users and SELinux roles?
Select an answer first - 5
Which command is used to set a Smack label on a file?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Linux Professional Institute. “LPIC-3-SECURITY” is a trademark of its owner, used for identification only.