
LPIC-3 Security
Domain 4Objective 4
328.4 Virtual Private Networks (weight: 4) LPIC-3-SECURITY Practice Questions (Page 4)
Part of the Topic 328: Network Security domain, which makes up ~27% of our current practice bank. Linux Professional Institute does not publish an official question count, but from its 90-minute exam (~35–60 total, ~9–16 in this domain), expect 2–4 from this objective — we provide 30 practice questions to prepare you well beyond it. (estimate)
30questions here
6free pages
12concepts
Questions 16–20
- 16
In an OpenVPN bridged (tap) setup, what is the purpose of bridging the tap interface with a physical Ethernet interface?
Select an answer first - 17
Two Linux gateways are configured for a site-to-site IPsec VPN using racoon and setkey. The tunnel was working, but after a network change, it stopped. The administrator runs `setkey -D` on both gateways and sees no SAs. Running `racoon -F` on the initiating gateway shows: `phase1 negotiation failed.` Which of the following is the most likely cause?
Select an answer first - 18
Which firewall rule is commonly needed on an OpenVPN server to allow VPN clients to access the internet?
Select an answer first - 19
In an IPsec server setup for a routed VPN, which kernel feature must be enabled to allow remote clients to reach the LAN?
Select an answer first - 20
What is the primary difference between OpenVPN's tun and tap modes?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Linux Professional Institute. “LPIC-3-SECURITY” is a trademark of its owner, used for identification only.