Month End Sale - 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: best70

Page: 1 / 2
Total 18 questions
Exam Code: 303-200                Update: May 10, 2025
Exam Name: 303-200: LPIC-3 Exam 303: Security, version 2.0

LPI 303-200: LPIC-3 Exam 303: Security, version 2.0 303-200 Exam Dumps: Updated Questions & Answers (May 2025)

Question # 1

Which option in an Apache HTTPD configuration file enables OCSP stapling? (Specify ONLY the option name without any values or parameters.)

Question # 2

Which of the following statements is true regarding eCryptfs?

A.

For every file in an eCryptfs directory there exists a corresponding file that contains the encrypted content.

B.

The content of all files in an eCryptfs directory is stored in an archive file similar to a tar file with an additional index to improve performance.

C.

After unmounting an eCryptfs directory, the directory hierarchy and the original file names are still visible, although, it is not possible to view the contents of the files.

D.

When a user changes his login password, the contents of his eCryptfs home directory has to be re-encrypted using his new login password.

E.

eCryptfs cannot be used to encrypt only directories that are the home directory of a regular Linux user.

Question # 3

What is the purpose of IP sets?

A.

They group together IP addresses that are assigned to the same network interfaces.

B.

They group together IP addresses and networks that can be referenced by the network routing table.

C.

They group together IP addresses that can be referenced by netfilter rules.

D.

They group together IP and MAC addresses used by the neighbors on the local network.

E.

They group together IP addresses and user names that can be referenced from /etc/hosts allow and /etc/hosts deny

Question # 4

Which of the following expressions are valid AIDE rules? (Choose TWO correct answers.)

A.

!/var/run/.*

B.

append: /var/log/*

C.

/usr=all

D.

#/bin/

E.

/etc p+i+u+g

Question # 5

Given a proper network and name resolution setup, which of the following commands establishes a trust between a FreelPA domain and an Active Directory domain?

A.

ipa trust-add --type ad addom --admin Administrator --password

B.

ipa-ad -add-trust --account ADDOM\Administrator--query-password

C.

net ad ipajoin addom -U Administrator -p

D.

trustmanager add -_domain ad: //addom --user Administrator -w

E.

ipa ad join addom -U Administrator -w

Question # 6

Which of the following commands adds users using SSSD's local service?

A.

sss_adduser

B.

sss_useradd

C.

sss_add

D.

sss-addlocaluser

E.

sss_local_adduser

Question # 7

Which of the following lines in an OpenSSL configuration adds an X 509v3 Subject Alternative Name extension for the host names example.org and www.example.org to a certificate'?

A.

subjectAltName = DNS: www example.org, DNS:example.org

B.

extension= SAN: www.example.org , SAN:example.org

C.

subjectAltName: www.example.org , subjectAltName: example.org

D.

commonName = subjectAltName= www.example.org , subjectAltName = example.org

E.

subject= CN= www.example.org , CN=example.org

Question # 8

Which of the following terms refer to existing scan techniques with nmap? (Choose TWO correct answers.)

A.

Xmas Scan

B.

Zero Scan

C.

FIN Scan

D.

IP Scan

E.

UDP SYN Scan

Question # 9

Which of the following statements are valid wireshark capture filters? {Choose TWO correct answers.)

A.

port range 10000:tcp-15000:tcp

B.

port-range tcp 10000-15000

C.

tcp portrange 10000-15000

D.

portrange 10000/tcp-15000/tcp

E.

portrange 10000-15000 and tcp

Question # 10

Which of the following commands changes the source IP address to 192.0.2.11 for all IPv4 packets which go through the network interface eth0?

A.

iptables ~t nat -A POSTROUTING ~o eth0 -j SNAT -to-source 192.0.2.11

B.

iptables ~t nat -A PREROUT1NG -\ eth0 -j SNAT -to-source 192.0.2.11

C.

iptables -t nat -A POSTROUTING H eth0 -j DNAT -to-source 192.0.2.11

D.

iptables -t mangle -A POSTROUTING -i eth0 -j SNAT -to-source 192.0.2.11

E.

iptables -t mangle -A POSTROUTING -0 eth0 -j SNAT -to-source 192.0.2.11

Page: 1 / 2
Total 18 questions

Most Popular Certification Exams

Payment

       

Contact us

dumpscollection live chat

Site Secure

mcafee secure

TESTED 22 May 2025