Lpi 303-300 Exam Overview:
| Certification Vendor: | Linux Professional Institute (LPI) |
|---|---|
| Exam Name: | LPIC Exam 303: Security, Version 3.0 |
| Exam Number: | 303-300 |
| Certificate Validity Period: | 5 years |
| Passing Score: | 500/800 |
| Related Certifications: | LPIC-3 Security |
| Exam Format: | Multiple Choice, Fill in the Blank |
| Available Languages: | Japanese, English |
| Exam Price: | $200 USD |
| Exam Duration: | 90 minutes |
| Real Exam Qty: | 60 |
| Sample Questions: | Lpi 303-300 Sample Questions |
| Exam Way: | Pearson VUE Test Center or Online Proctored Exam (OnVUE) |
| Pre Condition: | An active LPIC-2 certification is required to obtain the LPIC-3 Security certification. LPIC-2 and LPIC-3 exams may be taken in any order. |
| Official Syllabus URL: | https://www.lpi.org/our-certifications/exam-303-objectives/ |
Lpi 303-300 Exam Syllabus Topics:
| Section | Weight | Objectives |
|---|---|---|
| Topic 1: Access Control | 8% | - Authentication and Authorization
|
| Topic 2: Cryptography | 8% | - Data Encryption
|
| Topic 3: Network Security | 12% | - Network Hardening
|
| Topic 4: Threats and Vulnerability Assessment | 3% | - Threat Analysis
|
| Topic 5: Host Security | 9% | - Host Hardening
|
Lpi LPIC Exam 303: Security, version 3.0 Sample Questions:
What is the purpose of the Linux Audit system?
- A. To manage installed packages
- B. To manage system log files
- C. To automate host scans
- D. To detect intrusions and system changes
Correct Answer: D 🗳️
Which of the following statements are true regarding the certificate of a Root CA? (Choose THREE correct answers.)
- A. It has an infinite lifetime and never expires.
- B. It must contain a host name as the common name.
- C. It must contain an X509v3 Authority extension.
- D. It does not include the private key of the CA.
- E. It is a self-signed certificate.
Correct Answer: C,D,E 🗳️
What is the primary purpose of Online Certificate Status Protocol (OCSP)?
- A. To allow a client to check the revocation status of a specific X.509 certificate in real time.
- B. To generate new X.509 certificates automatically.
- C. To distribute the full Certificate Revocation List to all clients.
- D. To encrypt data in transit between a client and server.
Correct Answer: A 🗳️
Explanation: Only visible for BraindumpQuiz members. You can sign-up / login (it's free).
Which of the following commands adds a new user usera to FreeIPA?
- A. idap- useradd -H Idaps://ipa-server CN=UserA --attribs "Firstname: User: Lastname: A"
- B. ipa-admin create user --account usera --fname User --iname A
- C. ipa user-add usera --first User --last A
- D. ipa-user- add usera --name "User A"
- E. useradd usera --directory ipa --gecos "User A"
Correct Answer: C 🗳️
Which of the following commands defines an audit rule that monitors read and write operations to the file/ etc/firewall/rules and associates the rule with the name firewall?
- A. auditctl --read /etc/firewall/rules --write /etc/firewall/rules --label firewall
- B. auditctl -w /etc/firewall/rules -p rw -k firewall
- C. auditctl -N firewall -r r: /etc/firewall/rules -r w: etc/firewall/rules
- D. auditctl -A -f /etc/firewall/rules -o r -o w -l firewall
- E. echo "n: firewall r:/etc/firewall/rules: w:/etc/firewall/rules:" | auditctl ~
Correct Answer: B 🗳️
We're so confident of our products that we provide no hassle product exchange.


By Burgess

