Herramientas de usuario

Herramientas del sitio


informatica:certificaciones:lpic:lpic-2:202_tests_examen

Diferencias

Muestra las diferencias entre dos versiones de la página.

Enlace a la vista de comparación

Ambos lados, revisión anteriorRevisión previa
Próxima revisión
Revisión previa
informatica:certificaciones:lpic:lpic-2:202_tests_examen [2021/04/29 12:59] tempwininformatica:certificaciones:lpic:lpic-2:202_tests_examen [2021/06/28 00:10] (actual) tempwin
Línea 1967: Línea 1967:
   * It isn’t possible. The service definition must fit on one line.   * It isn’t possible. The service definition must fit on one line.
   * The following line must begin with white space indentation. (**Solución**)   * The following line must begin with white space indentation. (**Solución**)
 +
 +<WRAP center round info 80%>
 +Para poder continuar escribiendo la definición de un parámetro en la siguiente línea, esta nueva línea debe empezar con un espacio en blanco (ya sea una tabulación o un espacio). Decimos entonces que continúa una **línea lógica**, a diferencia de una línea normal. Ejemplo de una línea lógica:
 +
 +<code>
 +mydestination = mail.example.com, localhost.example.com, 
 + localhost
 +</code>
 +</WRAP>
 +
  
 **Select the alternative that shows the correct way to disable a user login for all users except root.** **Select the alternative that shows the correct way to disable a user login for all users except root.**
Línea 2003: Línea 2013:
  
 <WRAP center round important 60%> <WRAP center round important 60%>
-Revisar esta respuesta, no lo tengo tan claro que sea así.+Revisar esta respuesta porque se supone que fail2ban solo actualiza reglas en el firewall (iptables) para bloquear esos intentos y no hace nada en la configuración del servidor SSH.
 </WRAP> </WRAP>
  
Línea 2044: Línea 2054:
   * ''alias_rewrite_maps''   * ''alias_rewrite_maps''
  
-**Which FTP names are recognized as anonymous users in vsftp when the option anonymous_enable is set to yes in the configuration files? (Choose two.)**+**Which FTP names are recognized as anonymous users in vsftp when the option ''anonymous_enable'' is set to ''yes'' in the configuration files? (Choose two.)**
  
   * ''guest''   * ''guest''
Línea 2067: Línea 2077:
   * discard    * discard 
   * reject (**Solución**)   * reject (**Solución**)
 +
 +<WRAP center round important 60%>
 +Según el manual, la respuesta correcta sería ''fileinto'', ''discard'' y ''reject''
 +</WRAP>
  
 **Which of the following commands can be used to connect and interact with remote TCP network services? (Choose two)** **Which of the following commands can be used to connect and interact with remote TCP network services? (Choose two)**
Línea 2083: Línea 2097:
   * ''qshape'' (**Solución**)   * ''qshape'' (**Solución**)
   * ''queuequery''   * ''queuequery''
 +
 +<WRAP center round info 60%>
 +''qshape'' se incluye con la instalación de Postfix y sirve para ver el tiempo que lleva un correo en una cola determinada.
 +</WRAP>
 +
  
 **Which of the following DNS record types is used for reverse DNS queries?** **Which of the following DNS record types is used for reverse DNS queries?**
Línea 2144: Línea 2163:
   * The LDIF file accepts any type of file encoding. (**Solución**)   * The LDIF file accepts any type of file encoding. (**Solución**)
   * In the file, a blank line separates one entry from another one.    * In the file, a blank line separates one entry from another one. 
 +
 +<WRAP center round info 60%>
 +Normalmente debe estar codificado en UTF-8
 +</WRAP>
 +
  
 **Which of the following types of IPv6 address assignments does DHCPv6 support? (Choose three.)** **Which of the following types of IPv6 address assignments does DHCPv6 support? (Choose three.)**
Línea 2160: Línea 2184:
   * passwd   * passwd
   * xml   * xml
 +
 +<WRAP center round important 60%>
 +De acuerdo a la [[https://www.openldap.org/doc/admin24/slapdconf2.html|documentación de la versión 2.4 de OpenLDAP]], la respuesta correcta sería ''ldap'', ''passwd'' y ''bdb'' (aunque este último ya dejó de soportarse)
 +</WRAP>
 +
 +
  
 **Which of these sets of entries does the following command return?** **Which of these sets of entries does the following command return?**
Línea 2171: Línea 2201:
   * Entries that have a cn of marie or have a telephoneNumber beginning with 9.   * Entries that have a cn of marie or have a telephoneNumber beginning with 9.
   * Entries that have a cn of marie and a telephoneNumber that ending with 9. (**Solución**)   * Entries that have a cn of marie and a telephoneNumber that ending with 9. (**Solución**)
 +
 +<WRAP center round important 60%>
 +Creo que la respuesta no es correcta. El operador ''|'' funciona como un ''OR'' y ''!'' como una negación, así que lo que parece que se está buscando es un ''cn'' que sea ''marie'' **o** que el objeto tenga un número de teléfono que **no** empiece por 9. Por tanto, la respuesta correcta debería ser la tercera.
 +</WRAP>
 +
  
 **Which of these tools provides DNS information in the following format?** **Which of these tools provides DNS information in the following format?**
Línea 2199: Línea 2234:
   * ''name-server''   * ''name-server''
  
-**Which rdnc sub command can be used in conjunction with the name of a zone in order to make BIND reread the content of the specific zone file without reloading other zones as well?**+**Which ''rdnc'' sub command can be used in conjunction with the name of a zone in order to make BIND reread the content of the specific zone file without reloading other zones as well?**
  
   * ''lookup'' (**Solución**)   * ''lookup'' (**Solución**)
Línea 2206: Línea 2241:
   * reload    * reload 
   * reread   * reread
 +
 +<WRAP center round important 60%>
 +Las soluciones creo que son incorrectas. De hecho, no son comandos de ''rndc''. La respuesta correcta debería ser ''reload zone''.
 +</WRAP>
 +
  
 **Which attitude of an object in LDAP defines which other attributes can be set for the object? (Specify ONLY the attribute name without any values.)** **Which attitude of an object in LDAP defines which other attributes can be set for the object? (Specify ONLY the attribute name without any values.)**
Línea 2211: Línea 2251:
   * ''class''   * ''class''
  
-**Which doveadm sub-command displays a list of connections of Dovecot in the following format? (Specify ONLY the command without any parameters.)**+**Which ''doveadm'' sub-command displays a list of connections of Dovecot in the following format? (Specify ONLY the command without any parameters.)**
  
   * ''who''   * ''who''
Línea 2226: Línea 2266:
  
   * ''AllowUsers''   * ''AllowUsers''
 +
 +**¿Se puede comprobar la validez de la configuración de un servidor postfix sin tener que iniciar el servicio?**
 +
 +  * Sí, con el comando ''postfix check'' (**Solución**)
 +  * Sí, con el comando ''postfix conf''
 +  * Sí, con el comando ''postfix check -let''
 +  * Sí, con el comando ''postfix check -l''
 +
 +**¿Cómo se puede validar la sintaxis de un archivo de configuración Apache sin tener que iniciar el servicio?**
 +
 +  * Ejecutando el comando apache con la opción ''-n''
 +  * Ejecutando el comando apache con la opción ''-t'' (**Solución**)
 +  * Ninguna de las anteriores
 +  * Ejecutando el comando apache con la opción ''-nti''
 +
 +**De entre todos los comandos de comprobación de resolución DNS, ¿cuál proporciona los resultados más precisos y detallados?**
 +
 +  * ''resolv.conf''
 +  * ''nice''
 +  * ''dig'' (**Solución**)
 +  * ''nslookup''
 +
 +**¿ En que puerto escucha nuestro servidor DNS?**
 +
 +  * 50 UPD
 +  * 54 UDP
 +  * 53 UDP (**Solución**)
 +  * 55 TCP
 +
 +**¿Qué archivo contiene una lista de puertos de aplicación estándar?**
 +
 +  * ''/etc/services'' (**Solución**)
 +  * ''/etc/openvpn''
 +  * ''/etc/ssh/sshd_conf''
 +  * ''/proc/sys/net/ipv4''
 +
 +**¿Qué programa OpenLDAP se ejecuta como el servidor LDAP principal, escuchando las solicitudes del cliente LDAP?**
 +
 +  * ''slapindex''
 +  * ''slapadd''
 +  * ''slurpd''
 +  * ''slapd'' (**Solución**)
 +
 +**¿El comando ''ldapsearch''?**
 +
 +  * Se utiliza para trabajar con samba
 +  * Se utiliza para trabajar con SSH
 +  * No existe este comando en linux
 +  * Comando que permite efectuar peticiones a un directorio LDAP y recuperar el resultado en formato LDIF  (**Solución**)
 +
 +**¿En cuál de los siguientes directorios encontrará normalmente los archivos de registro de Samba?**
 +
 +  * ''/var/log/samba/'' (**Solución**)
 +  * ''/var/lib/samba/''
 +  * ''/etc/smb/''
 +  * ''/etc/samba/''
 +
 +**¿ Cual es el archivo por el que resuelve nuestro dns como cliente en linux?**
 +
 +  * ''/etc/resolv-conf''
 +  * ''/etc/resolv.conf'' (**Solución**)
 +  * Ninguno de los anteriores
 +  * ''/etc/resolv,conf''
 +
 +**¿Comando para ver la arquitectura de un so de linux?**
 +
 +  * ''up''
 +  * ''ifconfig''
 +  * ''arch'' (**Solución**)
 +  * ''uptime''
 +
 +**¿Se puede comprobar la validez de un archivo de configuración Samba sin cargar el servicio?**
 +
 +  * Con el comando ''smbtest''
 +  * No
 +  * Con el comando ''exports''
 +  * Sí, con el comando ''testparm'' (**Solución**)
 +
 +**Where are the Postfix configuration files located?**
 +
 +  * ''/etc/postfix'' (**Solución**)
 +  * ''/var/spool/postfix''
 +  * ''/etc/mail''
 +  * ''/var/spool/mail''
 +  * ''/var/log''
 +
 +**Where do individual users store procmail recipes to apply to their own email messages?**
 +
 +  * ''/etc/aliases''
 +  * ''/etc/postfix''
 +  * ''$HOME/.procmailrc'' (**Solución**)
 +  * ''/users/.procmailrc''
 +  * ''/etc/procmailrc ''
 +
 +**What files does the email administrator use to store recipes to apply to all incoming email messages?**
 +
 +  * ''/etc/aliases''
 +  * ''$HOME/.procmailrc''
 +  * ''/etc/postfix'' (**Solución**)
 +  * ''/etc/procmailrc''
 +  * ''/users/.procmailrc''
 +
 +**What does the following procmail recipe do to incoming email messages?**
 +
 +  * The system moves all incoming email messages to the messages directory.
 +  * The system rejects all incoming email messages.
 +  * The system copies all incoming email messages to the messages directory. (**Solución**)
 +  * The system forwards all email messages to an alias account.
 +  * The system deletes all incoming email messages. 
 +
 +**What MDA program is commonly used to forward email messages to local mailboxes?**
 +
 +  * Sendmail
 +  * Dovecot
 +  * Procmail (**Solución**)
 +  * Courier
 +  * Postfix 
 +
 +**What configuration setting in Postfix must you change to forward all incoming email messages to procmail?**
 +
 +  * ''relayhost''
 +  * ''mailbox_command'' (**Solución**)
 +  * ''myhost''
 +  * ''mydestination''
 +
 +**Which mailbox style stores all messages for a user in a single file?**
 +
 +  * Courier
 +  * Sendmail
 +  * Exim
 +  * Mbox (**Solución**)
 +  * Maildir 
 +
 +**Which mailbox style uses separate files to store each message for each user?**
 +
 +  * Mbox
 +  * Exim
 +  * Courier
 +  * Maildir (**Solución**)
 +  * Sendmail 
 +
 +**Where are the Courier configuration files located?**
 +
 +  * ''/var/spool/postfix''
 +  * ''/etc/mail''
 +  * ''/etc/courier'' (**Solución**)
 +  * ''/var/log''
 +  * ''/var/spool/mail''
 +
 +**What Courier configuration setting determines how many remote clients can connect at the same time?**
 +
 +  * ''PORT''
 +  * ''MAXPERIP''
 +  * ''MAXDAEMONS'' (**Solución**)
 +  * ''MAILDIRPATH''
 +  * ''ADDRESS''
 +
 +**Where does Dovecot store its configuration settings? (Select two.)**
 +
 +  * ''dovecot.conf''  (**Solución**)
 +  * ''/var/spool/postfix''
 +  * ''/var/spool/mail''
 +  * ''/etc/postfix'' 
 +  * ''/etc/dovecot'' (**Solución**)
 +
 +**What is the name of the main Postfix process?**
 +
 +  * pickup
 +  * smtp
 +  * cleanup
 +  * qmgr
 +  * master (**Solución**)
 +
 +**What Dovecot setting specifies the authentication methods that the server supports?**
 +
 +  * ''mechanisms'' (**Solución**)
 +  * ''listen''
 +  * ''protocols''
 +  * ''mail_location''
 +  * ''login_max_connections''
 +
 +**What is the Postfix configuration file that manages when Postfix processes start and stop?**
 +
 +  * ''master.cf'' (**Solución**)
 +  * ''main.cf'' 
 +  * ''/var/log/maillog''
 +  * ''/var/spool/postfix''
 +  * ''install.cf''
 +
 +**What is the Postfix configuration file that controls mail processing?**
 +
 +  * ''/var/log/maillog''
 +  * ''/etc/sendmail.cf''
 +  * ''master.cf''
 +  * ''/etc/aliases''
 +  * ''main.cf'' (**Solución**)
 +
 +**What directory does Postfix use for storing email messages as it processes them?**
 +
 +  * ''/var/spool/postfix'' (**Solución**)
 +  * ''/etc/mail''
 +  * ''/etc/postfix''
 +  * ''/var/spool/mail''
 +
 +**What sendmail emulation command in Postfix allows you to check on the number of mes- sages waiting in the mail queue to be delivered?**
 +
 +  * ''master''
 +  * ''pickup''
 +  * ''smtp''
 +  * ''mailq'' (**Solución**)
 +  * ''newaliases''
 +
 +**Which sendmail emulation command converts the text alias entries into the binary aliases database file?**
 +
 +  * ''mailq''
 +  * ''newaliases'' (**Solución**)
 +  * ''smtp''
 +  * ''master''
 +  * ''pickup ''
 +
 +**What text file does the newaliases command read to create the aliases database?**
 +
 +  * ''/etc/postfix/main.cf''
 +  * ''/etc/postfix/install.cf''
 +  * ''/etc/aliases'' (**Solución**)
 +  * ''/etc/postfix/master.cf''
 +
 +**What log file does Postfix use to store system messages?**
 +
 +  * ''/var/log/messages''
 +  * ''/var/spool/mail''
 +  * ''/var/log/maillog'' (**Solución**)
 +  * ''/var/spool/postfix''
 +
 +**The .edu domain is considered which domain type? (Choose the best answer.)**
 +
 +  * Root domain
 +  * ICANN
 +  * Second-level domain
 +  * First-level domain
 +  * TLD (**Solución**)
 +
 +**A logging category directive determines what? (Choose the best answer.)**
 +
 +  * How to restart BIND to load logging
 +  * Where DNS messages are to be logged
 +  * The DNS channel log sizes
 +  * The DNS message types to be logged (**Solución**)
 +  * How DNS messages are filtered 
 +
 +**Which of the following are legal zone type directives? (Choose all that apply.)**
 +
 +  * root
 +  * delegation
 +  * master (**Solución**)
 +  * secondary
 +  * hint  (**Solución**)
 +
 +**Which of the following are legal zone statement classes? (Choose all that apply.)**
 +
 +  * IN (**Solución**)
 +  * DN
 +  * IS
 +  * CH (**Solución**)
 +  * HS (**Solución**)
 +
 +**Why might authoritative zone information be copied from the primary name server’s zone databases over to the secondary name server (called a zone transfer)? (Choose all that apply.)**
 +
 +  * The secondary server’s BIND daemon was stopped, and its configuration files were removed.
 +  * The rndc utility was used on the secondary server, and a manual zone data refresh was requested. (**Solución**)
 +  * The secondary server’s BIND daemon has started up. (**Solución**)
 +  * The secondary server’s zone data’s refresh time has expired. (**Solución**)
 +  * The primary server’s BIND daemon has restarted. 
 +
 +**The default zone databases are typically stored in which directories? (Choose the two best answers.)**
 +
 +  * ''/etc/bind9/'' directory
 +  * ''/etc/bind/'' directory (**Solución**)
 +  * ''/var/named/'' directory (**Solución**)
 +  * ''/etc/named/'' directory
 +  * ''/var/bind/'' directory 
 +
 +**A zone database has resource records of various types. One such record identifies the author- ity zone’s start and includes the zone’s authoritative data. Which one of the following is this resource record type? (Choose the best answer.)**
 +
 +  * SOA (**Solución**)
 +  * CNAME
 +  * A
 +  * PTR
 +  * NS 
 +
 +**Which of the following best describes a Reverse Zone? (Choose the best answer.)**
 +
 +  * A record used in zone delegation, which provides a child zone’s master name server’s IP address
 +  * A Domain Name Space portion, which delineates what a name server has authority over
 +  * The process of copying over authoritative zone information to a name server
 +  * A special zone that provides a mapping from an IP address to an FQDN (**Solución**)
 +  * A zone directive typically located in the named.conf file, which has a type hint setting 
 +
 +**Which of the following are methods for securing your DNS services? (Choose all that apply.)**
 +
 +  * Update your BIND software yearly.
 +  * Hide BIND version information. (**Solución**)
 +  * Implement a Dual Horizon server. (**Solución**)
 +  * Run only BIND services on the server. (**Solución**)
 +  * Run the BIND daemon as a non-root user.  (**Solución**)
 +
 +**When setting up a chroot jail, the new root directory is typically which directory? (Choose two answers.)**
 +
 +  * ''/chroot/named/'' (**Solución**)
 +  * ''/chroot/bind/'' (**Solución**)
 +  * ''/etc/bind/''
 +  * ''/etc/named/''
 +  * ''/var/bind/''
 +
 +**In the BIND DNSSEC security extension, the encryption key used to digitally sign a particular zone’s resource records is called what? (Choose the best answer.)**
 +
 +  * Zone signing key (**Solución**)
 +  * DNSKEY
 +  * Key signing key
 +  * Digital signature
 +  * Chain of trust 
 +
 +**Domain Name Space is broken into different zones. Which of the following could be one of those zones? (Choose all that apply.)**
 +
 +  * A root server
 +  * A first-level domain and a portion of its subdomains (**Solución**)
 +  * The hint zone (**Solución**)
 +  * The root zone (**Solución**)
 +  * A first-level domain and all of its subdomains  (**Solución**)
 +
 +**Which utility is used to create either TSIG or DNSSEC keys? (Choose the best answer.)**
 +
 +  * dnssec-tsig-keygen
 +  * tsig-keygen
 +  * dnssec-signzone
 +  * dnssec-dsfromkey
 +  * dnssec-keygen (**Solución**)
 +
 +**Which of the following server combinations could be the minimum two name servers required for a zone? (Choose all that apply.)**
 +
 +  * Secondary server and forwarding server
 +  * Primary server and forwarding server (**Solución**)
 +  * Primary server and caching server (**Solución**)
 +  * Primary server and secondary server (**Solución**)
 +  * Secondary server and caching server 
 +
 +**A program or library routine that creates a DNS query, checks its own cache for the answer, and if it doesn’t find it there, sends the query to another name server, is called what? (Choose the best answer.)**
 +
 +  * Cache
 +  * Name server
 +  * Zone
 +  * Name resolution
 +  * Resolver  (**Solución**)
 +
 +**Which of the following software provides either full or partial DNS protocol implementation? (Choose all that apply.)**
 +
 +  * pdnsd (**Solución**)
 +  * Bundy (**Solución**)
 +  * BIND (**Solución**)
 +  * PowerDNS (**Solución**)
 +  * dnsmasq 
 +
 +**The BIND daemon is which program in the /usr/sbin/ directory? (Choose the best answer.)**
 +
 +  * bindutils
 +  * bind9
 +  * bind
 +  * named.conf
 +  * named  (**Solución**)
 +
 +**Which of the following are legitimate groupings (clauses) in the BIND’s primary configura- tion file, named.conf? (Choose all that apply.)**
 +
 +  * comments (**Solución**)
 +  * named-checkconf
 +  * options (**Solución**)
 +  * include (**Solución**)
 +  * logging  (**Solución**)
 +
 +**When setting up a local DNS caching-only server, which directives should be set and or modified in the named.conf file? (Choose all that apply.)**
 +
 +  * logging
 +  * allow-query (**Solución**)
 +  * acl (**Solución**)
 +  * recursion yes (**Solución**)
 +  * listen-on  (**Solución**)
 +
 +**Ignoring distribution differences and assuming you have the appropriate privileges, which of the following commands will stop the BIND service? (Choose all that apply.)**
 +
 +  * ''kill -s SIGTERM BIND_PID'' (**Solución**) 
 +  * ''systemctl stop named'' (**Solución**)
 +  * ''rndc stop'' (**Solución**)
 +  * ''service bind9 stop'' (**Solución**)
 +  * ''rndc flush''
 +
 +**What protocol defines how a web server responds to client requests?**
 +
 +  * TLS
 +  * SSL (**Solución**)
 +  * SSL
 +  * HTML 
 +
 +<WRAP center round important 60%>
 +Esta solución seguro que está mal
 +</WRAP>
 +
 +
 +**What directive should you use to allow system users to create their own web folders?**
 +
 +  * ''UserDir'' (**Solución**)
 +  * ''LoadModule''
 +  * ''DocumentRoot''
 +  * ''AuthUserFile''
 +
 +**In name-based virtual hosting, what directive defines the domain name used?**
 +
 +  * ''DocumentRoot''
 +  * ''<VirtualHost>''
 +  * ''ServerName'' (**Solución**)
 +  * ''NameVirtualHost''
 +
 +**In IP-based virtual hosting, what directive defines the different IP addresses for the server to listen on?**
 +
 +  * ''<VirtualHost>''
 +  * ''DocumentRoot''
 +  * ''Listen'' (**Solución**)
 +  * ''NameVirtualHost''
 +
 +**What Apache utility program allows you to create text userid/password files?**
 +
 +  * ''apache2''
 +  * ''htpasswd'' (**Solución**)
 +  * ''httpd''
 +  * ''mod_auth''
 +
 +**What directive points to the userid/password file that controls access?**
 +
 +  * ''AuthName''
 +  * ''AuthUserFile'' (**Solución**)
 +  * ''Order''
 +  * ''AuthType''
 +
 +**What dynamic web programming method allows the Apache server to utilize an external program interpreter?**
 +
 +  * CGI (**Solución**)
 +  * mod_php
 +  * mod_auth
 +  * mod_perl 
 +
 +**What directive tells the Apache server to redirect .php files to the PHP server process?**
 +
 +  * ''DirectoryIndex''
 +  * ''AddHandler'' (**Solución**)
 +  * ''LoadModule''
 +  * ''DocumentRoot'' 
 +
 +**What directive tells the Apache server the location of the SSL certificate?**
 +
 +  * ''SSLEngine''
 +  * ''SSLCertificateFile'' (**Solución**)
 +  * ''SSLCertificateKeyFile''
 +  * ''DirectoryIndex''
 +
 +**What does a web proxy server do? (Select two.)**
 +
 +  * Restricts what files a server can serve
 +  * Redirects requests from one client to multiple servers
 +  * Caches web requests from multiple clients (**Solución**)
 +  * Restricts what websites clients can access  (**Solución**)
 +
 +**What directive does Squid use to define client authentication settings?**
 +
 +  * ''auth_param'' (**Solución**)
 +  * ''acl''
 +  * ''mod_auth''
 +  * ''http_access''
 +
 +**What standard defines how a client formats the content contained in a web page?**
 +
 +  * TLS
 +  * HTML (**Solución**)
 +  * HTTP
 +  * SSL 
 +
 +**What section in the nginx configuration file defines the basic server settings?**
 +
 +  * ''listen''
 +  * ''server'' (**Solución**)
 +  * ''root''
 +  * ''location ''
 +
 +**What HTTP server response code indicates that the file requested by the client was not found?**
 +
 +  * 200
 +  * 404 (**Solución**)
 +  * 403
 +  * 500 
 +
 +**What utility allows you to stop the Apache web server gracefully?**
 +
 +  * ''apache2ctl'' (**Solución**)
 +  * ''httpd''
 +  * ''systemctl''
 +  * ''apache2''
 +
 +**What utility allows you to test an Apache web server configuration before actually starting the server?**
 +
 +  * ''httpd''
 +  * ''systemctl''
 +  * ''apache2ctl'' (**Solución**)
 +  * ''apache2''
 +
 +**What directive defines the location on the server that will be shared with clients?**
 +
 +  * ''ServerRoot''
 +  * ''DocumentRoot'' (**Solución**)
 +  * ''Listen''
 +  * ''DirectoryIndex''
 +
 +**What configuration feature allows you to apply directives to specific folders in the filesystem?**
 +
 +  * ''<IfDefined>''
 +  * ''<IfModule>''
 +  * ''<VirtualHost>''
 +  * ''<Directory>'' (**Solución**)
 +
 +**What configuration directive defines what information appears in the Apache log file?**
 +
 +  * ''DocumentRoot''
 +  * ''ErrorDocument''
 +  * ''ErrorLog''
 +  * ''LogFormat'' (**Solución**)
 +
 +**Which Apache log file contains information about what web page requests were made by clients?**
 +
 +  * ''httpd.conf''
 +  * ''error.log''
 +  * ''access.log'' (**Solución**)
 +  * ''apache2.conf''
 +
 +**In which of the following directories would you typically find Samba log files? (Choose the best answer.)**
 +
 +  * ''/etc/samba.d/''
 +  * ''/etc/samba/''
 +  * ''/var/log/samba/'' (**Solución**)
 +  * ''/var/lib/samba/''
 +  * ''/etc/smb/''
 +
 +**Which of the following items might assist you in troubleshooting a problem with a Samba client accessing a Samba share? (Choose all that apply.)**
 +
 +  * Turn on logging by setting the log level directive in the smb.conf file to a number higher than 0 but lower than 10. (**Solución**)
 +  * Determine if the needed Server daemons are running on the Samba server. (**Solución**)
 +  * See what shares are being offered via the ''smbclient -L'' command (with the ''-U'' option and appropriate parameter if needed) on the Samba server. (**Solución**)
 +  * Test the Samba configuration syntax with ''testparm''. (**Solución**)
 +  * Perform a few basic network diagnostics between the Samba server and client systems.  (**Solución**)
 +
 +**The NFS service that manages NFS client mount requests on the NFS server is which of the following? (Choose the best answer.)**
 +
 +  * ''mountd'' (**Solución**)
 +  * ''statd''
 +  * ''portmapper''
 +  * ''rpcbind''
 +  * ''rpc.lockd'' 
 +
 +**NFS export configuration files are typically located where? (Choose all that apply.)**
 +
 +  * ''/var/lib/nfs/''
 +  * ''/etc/exports/'' (**Solución**)
 +  * ''/etc/exports.d/''
 +  * ''/proc/fs/nfs/''
 +  * ''/etc/'' (**Solución**)
 +
 +**Which of the following are typical NFS share directory locations? (Choose all that apply.)**
 +
 +  * ''/proc/''
 +  * ''/etc/''
 +  * ''/srv/'' (**Solución**)
 +  * ''/var/'' (**Solución**)
 +  * ''/''
 +
 +**Which of the following /etc/exports directives would be important for trying to create a read-only share’s configuration record? (Choose all that apply.)**
 +
 +  * ''rw''
 +  * ''ro'' (**Solución**)
 +  * ''subtree_check''
 +  * ''sync''
 +  * ''async'' (**Solución**)
 +
 +**Which of the following NFS utilities would show NFS share information specifically? (Choose all that apply.)**
 +
 +  * ''showmount'' (**Solución**)
 +  * ''mount.nfs''
 +  * ''exportfs'' (**Solución**)
 +  * ''smbstatus''
 +  * ''rpcinfo''
 +
 +**When using the ''exportfs'' command to display NFS share information on an NFS server, which of the following operands is the most helpful? (Choose the best answer.)**
 +
 +  * ''-o''
 +  * ''-v'' (**Solución**)
 +  * ''-u''
 +  * ''-r''
 +  * ''-a''
 +
 +**Which of the following is software that you may employ to implement an FTP server? (Choose all that apply.)**
 +
 +  * pure-ftpd (**Solución**)
 +  * ftp
 +  * FileZilla
 +  * lftp
 +  * vsftpd  (**Solución**)
 +
 +**Which of the following statements are true about FTP passive mode? (Choose all that apply.)**
 +
 +  * The FTP server and FTP client are active in establishing the connections.
 +  * Only the FTP client is active in establishing the connections. (**Solución**)
 +  * A data connection and a command connection are established. (**Solución**)
 +  * The FTP server uses port 20 and port 21 in the established connections.
 +  * Only the FTP server is active in establishing the connections. 
 +
 +**Which usernames are typically used on the FTP server for handling anonymous connections? (Choose all that apply.)**
 +
 +  * vsftpd
 +  * anon
 +  * ftp (**Solución**)
 +  * Individual usernames
 +  * anonymous (**Solución**)
 +
 +**Which of the following Linux daemons may be used in providing Samba services? (Choose all that apply.)**
 +
 +  * nmbd (**Solución**)
 +  * cupsd (**Solución**)
 +  * cifsd
 +  * smbd (**Solución**)
 +  * winbind 
 +
 +**Which of the following directives are used in various FTP server daemons to allow anonymous uploads? (Choose all that apply.)**
 +
 +  * anon_upload_enable=YES (**Solución**)
 +  * AnonymousCantUpload no (**Solución**)
 +  * anon_mkdir_write_enable=YES (**Solución**)
 +  * anonymous_upload=YES
 +  * write_enable=YES (**Solución**)
 +
 +**To set up a Samba share, you need to modify the main Samba configuration file. Which of the following is this file? (Choose the best answer.)**
 +
 +  * ''/etc/samba.d''
 +  * ''smb.conf'' (**Solución**)
 +  * ''mount.cifs''
 +  * ''samba.conf''
 +  * ''smbcontrol''
 +
 +**Once you have modified the main Samba configuration file, what should you do next? (Choose the best answer.)**
 +
 +  * Test the Samba configuration syntax with ''smbstatus''.
 +  * Test the Samba configuration syntax with ''testparm''. (**Solución**)
 +  * Reboot the Samba server.
 +  * Create a directory or set up a printer queue to share.
 +  * Reload the configuration file into the Samba server daemon on the Samba server. 
 +
 +**For setting up Samba in a mixed environment of Windows and Linux systems, it is essential to set the ________ directive to the Windows workgroup or domain name and not an FQDN. (Choose the best answer.)**
 +
 +  * ''adgroup''
 +  * ''workgroup'' (**Solución**)
 +  * ''workgroup name''
 +  * ''domain name''
 +  * ''windows group''
 +
 +**For the Samba passdb backend directive, which of the following are legal settings? (Choose all that apply.)**
 +
 +  * ''smbpasswd'' (**Solución**)
 +  * ''ads''
 +  * ''tdbsam'' (**Solución**)
 +  * ''domain''
 +  * ''ldapsam''  (**Solución**)
 +
 +**Which section in the ''smb.conf'' file might you find a file share defined? (Choose the best answer.)**
 +
 +  * ''[profiles]''
 +  * ''[global]''
 +  * ''[printers]''
 +  * ''[myshare]'' (**Solución**)
 +  * ''[netlogins]''
 +
 +**Which of the following Samba directives can be used to set whether passwords are required to access this file share service? (Choose the best answer.)**
 +
 +  * ''public''(**Solución**)
 +  * ''guest only''
 +  * ''read only''
 +  * ''writable''
 +  * ''browseable''
 +
 +**Assuming appropriate access is granted, the ______ command allows FTP-style access to a Samba share. (Choose the best answer.)**
 +
 +  * ''smbpasswd''
 +  * ''rpcclient''
 +  * ''smbclient'' (**Solución**)
 +  * ''pdbedit''
 +  * ''ftp''
 +
 +**What does the DHCPd application use for its configuration file?**
 +
 +  * ''/etc/dhcpd.d/''
 +  * ''/etc/services''
 +  * ''isc-dhcp-server''
 +  * ''/etc/dhcp/dhcpd.conf'' (**Solución**)
 +
 +**Which PAM module provides restrictions on user passwords.**
 +
 +  * ''pam_cracklib.so'' (**Solución**)
 +  * ''pam_userdb.so''
 +  * ''pam_limits.so''
 +  * ''pam_unix.so''
 +
 +**When using a single configuration file for PAM, where is it located?**
 +
 +  * ''/etc/pamd.conf'' 
 +  * ''/etc/pam.d''
 +  * ''/etc/pam.conf'' (**Solución**)
 +  * ''/etc/pam.d/pam.conf''
 +
 +**What folder does PAM use to store multiple application configuration files?**
 +
 +  * ''/etc/pam.d'' (**Solución**)
 +  * ''/etc/pamd.conf''
 +  * ''/etc/pam.conf''
 +  * ''/etc/pam.d/pam.conf''
 +
 +**Which PAM control entry terminates the application if the authentication fails?**
 +
 +  * ''sufficient''
 +  * ''required''
 +  * ''optional''
 +  * ''requisite'' (**Solución**)
 +
 +**Which PAM feature type logs authentication attempts to a log file?**
 +
 +  * password
 +  * account
 +  * session (**Solución**)
 +  * auth 
 +
 +**What part of the LDAP database defines a template for a set of attributes that can be assigned to an object?**
 +
 +  * The schema
 +  * The object class (**Solución**)
 +  * The LDAP tree
 +  * The object ID 
 +
 +**What part of the LDAP database defines the information stored for an object?**
 +
 +  * Schema
 +  * Attributes (**Solución**)
 +  * Object class
 +  * Object ID 
 +
 +**What is the unique name assigned to each object in the LDAP database called?**
 +
 +  * Attribute
 +  * Distinguished name (**Solución**)
 +  * Object ID
 +  * Object class 
 +
 +**What OpenLDAP program runs as the main LDAP server, listening for LDAP client requests?**
 +
 +  * ''slapd'' (**Solución**)
 +  * ''slapadd''
 +  * ''slurpd''
 +  * ''slapindex''
 +
 +**What LDAP server program allows you to add new objects to the LDAP database?**
 +
 +  * ''slapadd'' (**Solución**)
 +  * ''ldapmodify''
 +  * ''slapindex''
 +  * ''ldapadd''
 +
 +**What DHCPd option setting do you use to define the default router for network clients?**
 +
 +  * broadcast-address
 +  * smtp-server
 +  * range
 +  * router  (**Solución**)
 +
 +**What LDAP client application allows you to add new objects to the LDAP database?**
 +
 +  * ''slapadd'' (**Solución**)
 +  * ''slapindex''
 +  * ''ldapadd''
 +  * ''ldapmodify''
 +
 +**What DHCPd configuration option setting do you use to define the pool of IP addresses to assign to network clients?**
 +
 +  * broadcast-address
 +  * range (**Solución**)
 +  * smtp-server
 +  * router 
 +
 +**What file do you use to track IP addresses currently assigned by DHCPd?**
 +
 +  * ''/var/lib/dhcp/dhcpd.conf''
 +  * ''/var/lib/dhcp/dhcpd.leases'' (**Solución**)
 +  * ''/etc/dhcp/dhcpd.leases''
 +  * ''/etc/dhcp/dhcpd.conf''
 +
 +**What DHCPd configuration setting defines the MAC address of a device so that you can assign it a static IP address?**
 +
 +  * range
 +  * host-name
 +  * fixed-address
 +  * hardware (**Solución**)
 +
 +**What DHCP configuration feature bundles settings assigned to a specific client?**
 +
 +  * fixed-address
 +  * host (**Solución**)
 +  * range
 +  * group 
 +
 +**What DHCP option number defines the subnet mask assigned to a client?**
 +
 +  * 6
 +  * 3
 +  * 1 (**Solución**)
 +  * 5 
 +
 +**Which PAM module supports using the standard /etc/passwd and /etc/shadow files for authentication?**
 +
 +  * pam_ldap.so
 +  * pam_userdb.so
 +  * pam_sss.so
 +  * pam_unix.so  (**Solución**)
 +
 +**Which PAM module supports using a network directory to authenticate users?**
 +
 +  * ''pam_ldap.so'' (**Solución**)
 +  * ''pam_unix.so''
 +  * ''pam_userdb.so''
 +  * ''pam_access.so''
 +
 +**Which application is a network intrusion detection system (NIDS)?**
 +
 +  * Snort (**Solución**)
 +  * OpenVPN
 +  * OpenVAS
 +  * OpenSSH 
 +
 +**Which Snort mode dumps packets to the display for viewing?**
 +
 +  * Sniffer mode (**Solución**)
 +  * NIDS mode
 +  * Command-line mode
 +  * Logging mode 
 +
 +**What does the HOME_NET variable define in the Snort configuration?**
 +
 +  * The local addresses to monitor (**Solución**)
 +  * The remote addresses to monitor
 +  * The address of the local host
 +  * The default configuration folder 
 +
 +**What do you call a vulnerability that allows an attacker to gain access to a system?**
 +
 +  * Open port
 +  * Open application
 +  * Unsecure communication
 +  * Attack vector (**Solución**)
 +
 +**Which rule address format tells Snort only to look for packets going from the 10.0.0.1 address to the 10.0.0.2 address?**
 +
 +  * 10.0.0.1 %%->%% 10.0.0.2 (**Solución**)
 +  * 10.0.0.2 %%->%% 10.0.0.1
 +  * 10.0.0.1 %%<>%% 10.0.0.2
 +  * 10.0.0.1 %%<-%% 10.0.0.2 
 +
 +**How many private network address ranges does IPv4 support?**
 +
 +  * Four
 +  * Two
 +  * None
 +  * Three (**Solución**)
 +
 +**What value do IPv6 link local addresses start with?**
 +
 +  * fe80 (**Solución**)
 +  * ff02
 +  * ff05
 +  * aabb 
 +
 +**What system allows you to connect clients on a private network address to outside servers?**
 +
 +  * SSH
 +  * Telnet
 +  * IDS
 +  * NAT  (**Solución**)
 +
 +**What Linux command do you use to create firewall rules on the system?**
 +
 +  * ''netstat''
 +  * ''nc''
 +  * ''nmap''
 +  * ''iptables'' (**Solución**)
 +
 +**Which iptables option adds a new rule to a chain?**
 +
 +  * ''-L''
 +  * ''-A'' (**Solución**)
 +  * ''-F''
 +  * ''-j''
 +
 +**Which iptables policy is used to send a return packet back to the source indicating that the packet was dropped?**
 +
 +  * ACCEPT
 +  * LOG
 +  * REJECT (**Solución**)
 +  * DROP 
 +
 +**What file contains a list of standard application ports?**
 +
 +  * ''/etc/services'' (**Solución**)
 +  * ''/etc/openvpn''
 +  * ''/proc/sys/net/ipv4''
 +  * ''/etc/ssh/sshd_conf''
 +
 +**Which iptables option defines the default policy for a chain?**
 +
 +  * ''-j''
 +  * ''-F''
 +  * ''-P'' (**Solución**)
 +  * ''-L''
 +
 +**How can you use the telnet command to detect an open port?**
 +
 +  * ''telnet address port'' (**Solución**)
 +  * ''telnet address:port''
 +  * ''telnet port address''
 +  * The telnet command only connects to port 23. 
 +
 +**Which command can display a list of TCP ports that are listening for incoming connections on a local server?**
 +
 +  * ''ssh''
 +  * ''netstat'' (**Solución**)
 +  * ''iptables''
 +  * ''telnet''
 +
 +**Which option of the netcat command allows it to scan multiple ports?**
 +
 +  * ''-6''
 +  * ''-z'' (**Solución**)
 +  * ''-l''
 +  * ''-v''
 +
 +**Which nmap option specifies that it should determine the fingerprint of the remote system?**
 +
 +  * ''-sU''
 +  * ''-p''
 +  * ''-sT''
 +  * ''-A'' (**Solución**)
 +
 +**What OpenVAS feature allows it to simulate different vulnerability attacks on the system it scans?**
 +
 +  * Software Repository
 +  * Network Vulnerability Tests (NVT) (**Solución**)
 +  * Web interface
 +  * National Vulnerability Database (NVD) 
 +
 +**What type of software can warn you of an active attack on your system?**
 +
 +  * Port scanner
 +  * Virtual private network (VPN)
 +  * Network Vulnerability Test (NVT)
 +  * Intrusion detection system (IDS)  (**Solución**)
 +
 +**What file contains the fail2ban rules?**
 +
 +  * ''pwdfail''
 +  * ''fail2ban.conf'' (**Solución**)
 +  * ''jail.conf''
 +  * ''error.log''
 +
 +
 +
informatica/certificaciones/lpic/lpic-2/202_tests_examen.1619693946.txt.gz · Última modificación: por tempwin