
LPIC-3 Security
Domain 4Objective 2
328.2 Network Intrusion Detection (weight: 4) LPIC-3-SECURITY Practice Questions (Page 2)
Part of the Topic 328: Network Security domain, which makes up ~27% of our current practice bank. Linux Professional Institute does not publish an official question count, but from its 90-minute exam (~35–60 total, ~9–16 in this domain), expect 2–4 from this objective — we provide 26 practice questions to prepare you well beyond it. (estimate)
26questions here
6free pages
8concepts
Questions 6–10
- 6
Which Snort configuration file is used to define network variables, rule paths, and output plugins?
Select an answer first - 7
Which component of OpenVAS is responsible for running the actual vulnerability scans?
Select an answer first - 8
A security engineer needs to write a custom NASL script to check if a specific file (e.g., /etc/issue) contains the string 'Ubuntu 20.04' on a remote Linux host. The scan will run with SSH credentials. Which NASL approach is appropriate?
Select an answer first - 9
A network engineer monitors a 1 Gbps link and notices that utilization is consistently at 85% during business hours. The engineer wants to determine whether this is normal or indicates a potential issue. Which additional metric would be most useful for this assessment?
Select an answer first - 10
When using iftop to monitor network traffic, what does the output primarily display?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Linux Professional Institute. “LPIC-3-SECURITY” is a trademark of its owner, used for identification only.