
LPIC-3 Security
Domain 3Objective 2
327.2 Mandatory Access Control (weight: 4) LPIC-3-SECURITY Practice Questions (Page 7)
Part of the Topic 327: Access Control domain, which makes up ~19% of our current practice bank. Linux Professional Institute does not publish an official question count, but from its 90-minute exam (~35–60 total, ~7–11 in this domain), expect 2–4 from this objective — we provide 36 practice questions to prepare you well beyond it. (estimate)
36questions here
8free pages
14concepts
Questions 31–35
- 31
A file at /var/www/html/index.html has the SELinux context 'system_u:object_r:httpd_sys_content_t:s0'. An administrator copies a new version of the file from a home directory to /var/www/html/. The new file has the context 'unconfined_u:object_r:user_home_t:s0'. Users report that the website is now returning a 403 Forbidden error. What is the most likely cause and the correct fix?
Select an answer first - 32
Which command is used to change the SELinux type of a file without modifying its user or role?
Select an answer first - 33
A Linux administrator is troubleshooting a custom daemon that fails to start on a CentOS 7 system. The system log shows 'SELinux is preventing /usr/local/bin/customd from using the execmem access on a process.' The administrator wants to identify the exact denial and the recommended fix. Which command should the administrator run first?
Select an answer first - 34
Which log file contains SELinux denial messages by default?
Select an answer first - 35
In the context of SELinux, what is the primary role of Role-Based Access Control (RBAC)?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Linux Professional Institute. “LPIC-3-SECURITY” is a trademark of its owner, used for identification only.