
LPIC-3 Security
Domain 3Objective 2
327.2 Mandatory Access Control (weight: 4) LPIC-3-SECURITY Practice Questions (Page 3)
Part of the Topic 327: Access Control domain, which makes up ~19% of our current practice bank. Linux Professional Institute does not publish an official question count, but from its 90-minute exam (~35–60 total, ~7–11 in this domain), expect 2–4 from this objective — we provide 36 practice questions to prepare you well beyond it. (estimate)
36questions here
8free pages
14concepts
Questions 11–15
- 11
A system administrator is troubleshooting a service that is being denied by SELinux. The administrator has confirmed the denial in the audit log and wants to understand why the denial is happening. The administrator runs audit2why on the denial. What information does audit2why provide?
Select an answer first - 12
Which command is used to switch the current SELinux mode between enforcing and permissive without rebooting?
Select an answer first - 13
A company wants to implement an access control model where permissions are assigned to job functions rather than to individual users. A user's access is determined by their role in the organization, and roles are managed centrally. Which access control model best fits this requirement?
Select an answer first - 14
Which SELinux policy type implements Multi-Level Security (MLS) and is typically used in government or military environments?
Select an answer first - 15
In AppArmor, what is the difference between enforce mode and complain mode?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Linux Professional Institute. “LPIC-3-SECURITY” is a trademark of its owner, used for identification only.